Skip to content

19 - HaloPSA

NOTE: To be completed by Stratus Cyber Team

Configuration Items

  1. Setup SSO if possible

  2. Issue Tickets w/ IsPOAM field

  3. Scheduled Ticket -- Annual Internal Risk Assessment and Security Control Assessment

  4. Scheduled Ticket -- Annual Incident Response Table-top

  5. Scheduled Ticket -- Annual update of SSP

  6. Scheduled Ticket -- Annual Audit Log Event Review

Create User Access Workflow

  1. Workflow should cover new user access, user access change/transfer, user access removal/termination, non-privileged or privileged account, what components they will have access to

  2. If onboarding, a workflow step should be Screen Individual

  3. Create a Report which details active/approved users, their function, and the "security functions" or components they have access to

Validate Change Management

  1. Validate change management ticketing is in place

  2. Change request tickets must include Security Impact Analysis