The Scenario
A SA fintech with 80 employees has been creating user accounts manually with no checklist. New starters miss systems they need, leavers retain access for weeks, and internal moves leave permissions sprawling. The IT manager asks you to standardise the process.
The Brief
Produce a complete joiner, mover, and leaver process pack. Each scenario must list every system to update, who is accountable, the SLA, and the audit evidence captured.
Deliverables
- A joiner checklist covering: AD account, email, group memberships, MFA enrolment, laptop assignment, software licences, and induction tasks
- A mover checklist covering: revoking old group memberships, granting new ones, rotating shared mailbox access, and asset reallocation
- A leaver checklist covering: account disable timing, mailbox forwarding, OneDrive content handling, MFA token revocation, and asset return
- A short policy paragraph stating the SLA for each scenario and the audit evidence retained for compliance
Submission Guidance
Most security incidents in SA SMEs stem from leaver accounts that were never disabled. Senior auditors look for clear timing rules: a leaver account should be disabled (not deleted) within 24 hours, with a defined retention period before deletion.
Submit Your Work
Your submission is graded against the rubric on the right. If you pass, you get a public Badge URL you can share on LinkedIn. There is no draft save, so work offline first and paste your finished response here.