<?xml version='1.0' encoding='iso-8859-1' ?><rss version="2.0"><channel><title>JD Edwards World</title><link>http://www.checklist20.com/bestpractices.html</link><description>Oracle's JD Edwards World delivers the same advanced functionality available to larger enterprises, not a stripped down version of a larger solution.Only JD Edwards World offers greater than 99 percent software quality and 99.7 percent system availabilityJD Edwards World gives customers affordable up front price with no hidden costs over time</description><item><title>Verify that an originator of a purchase order should not be the approver</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=372&amp;tn=Verify that an originator of a purchase order should not be the approver</link><description>To avoid the risk of fraudulent activity both duties should be separated. ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=372&amp;tn=Verify that an originator of a purchase order should not be the approver'>View More</a>]]></description></item><item><title>Confirm that the Output Queue parameter is set properly.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=419&amp;tn=Confirm that the Output Queue parameter is set properly.</link><description>

The output
queue reduces the risk of printing confidential reports to unsecured printers.

&amp;nbsp;Think about
critical payroll data you don't want to be exposed. Instead of printing to the
default queue (QPRINT) like everybody else, print  ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=419&amp;tn=Confirm that the Output Queue parameter is set properly.'>View More</a>]]></description></item><item><title>Confirm that the Initial Menu option is used.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=418&amp;tn=Confirm that the Initial Menu option is used.</link><description>

The initial
menu option can be used to reduce unauthorized access.

&amp;nbsp;It doesn't
look like as security feature but it is one. Think about if you would like to
lock down a user or group of users to a execute certain programs only.

 ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=418&amp;tn=Confirm that the Initial Menu option is used.'>View More</a>]]></description></item><item><title>Confirm that Fast Path entries are limited.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=417&amp;tn=Confirm that Fast Path entries are limited.</link><description>

Fast Path is&amp;nbsp;similar to shortcuts. They allow you to
access menus or execute programs depends on the assigned action. Users appreciate
fast path&amp;nbsp; but if your menus are not
properly secured it increases the risk of unauthorized acc ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=417&amp;tn=Confirm that Fast Path entries are limited.'>View More</a>]]></description></item><item><title>Confirm that Command Line entries are limited.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=416&amp;tn=Confirm that Command Line entries are limited.</link><description>

The Command Line entry option will give you access to submit
operating system commands and should be restricted. Only administrators should
have access to the command line entry.

&amp;nbsp;&amp;nbsp;blank&amp;nbsp;&amp;nbsp; = Indicates the user has comm ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=416&amp;tn=Confirm that Command Line entries are limited.'>View More</a>]]></description></item><item><title>Verify that Menu Travel has been limited.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=415&amp;tn=Verify that Menu Travel has been limited.</link><description>

Menu travel allows you to access a menu directly without
going thru the menu system. Users appreciate menu travel but if your menus are not
properly secured it increases the risk of unauthorized access- ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=415&amp;tn=Verify that Menu Travel has been limited.'>View More</a>]]></description></item><item><title>Confirm that Future Mask (F) security has been enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=413&amp;tn=Confirm that Future Mask (F) security has been enabled.</link><description>

Without
proper settings unauthorized users are able to access data very easily. Future
mask security is another key element to secure and reduce unauthorized access.

&amp;nbsp;onsult with
you administrator how security has been setup. Be awa ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=413&amp;tn=Confirm that Future Mask (F) security has been enabled.'>View More</a>]]></description></item><item><title>Confirm that Departmental  Mask (DP) security has been enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=412&amp;tn=Confirm that Departmental  Mask (DP) security has been enabled.</link><description>

Without
proper settings unauthorized users are able to access data very easily. Departmental
mask security is another key element to secure and reduce unauthorized access.

Consult with
you administrator how security has been setup. Be aw ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=412&amp;tn=Confirm that Departmental  Mask (DP) security has been enabled.'>View More</a>]]></description></item><item><title>Confirm that Knowledge Mask (K) security has been enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=411&amp;tn=Confirm that Knowledge Mask (K) security has been enabled.</link><description>

Without
proper settings unauthorized users are able to access data very easily. Knowledge
mask security is another key element to secure and reduce unauthorized access.



Consult with
you administrator how security has been setup. Be a ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=411&amp;tn=Confirm that Knowledge Mask (K) security has been enabled.'>View More</a>]]></description></item><item><title>Confirm the Job Mask (J) security has been enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=410&amp;tn=Confirm the Job Mask (J) security has been enabled.</link><description>

Without
proper settings unauthorized users are able to access data very easily.

Job mask
security is another key element to secure and reduce unauthorized access.

Consult with
you administrator how security has been setup.

Be aware ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=410&amp;tn=Confirm the Job Mask (J) security has been enabled.'>View More</a>]]></description></item><item><title>Review that Authorization Mask (A) security has been enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=409&amp;tn=Review that Authorization Mask (A) security has been enabled.</link><description>

Without
proper settings unauthorized users are able to access data very easily.

Authorization
security is a key element to secure and reduce unauthorized access.

Consult with
you administrator how security has been setup.

Be aware  ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=409&amp;tn=Review that Authorization Mask (A) security has been enabled.'>View More</a>]]></description></item><item><title>Confirm that inquiries of the address book is limited.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=407&amp;tn=Confirm that inquiries of the address book is limited.</link><description>Inquiries of the address
book should be limited to as needed only. Exposure and unauthorized access will
be reduced. ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=407&amp;tn=Confirm that inquiries of the address book is limited.'>View More</a>]]></description></item><item><title>Confirm that Business Unit Security is enabled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=401&amp;tn=Confirm that Business Unit Security is enabled.</link><description>

Business Unit
security prevents unauthorized access to data and therefore should be enabled
and closely monitored. Nevertheless, some users require access to all business
units.

 ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=401&amp;tn=Confirm that Business Unit Security is enabled.'>View More</a>]]></description></item><item><title>Confirm that the New Employee Setup Process is secured.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=397&amp;tn=Confirm that the New Employee Setup Process is secured.</link><description>

Adding new
employees to the system must be controlled. Only authorized users should have
access to add new employees. Program J0801 is the main program for adding new
employees. 

 ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=397&amp;tn=Confirm that the New Employee Setup Process is secured.'>View More</a>]]></description></item><item><title>Confirm that payroll files are separated from other production files.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=396&amp;tn=Confirm that payroll files are separated from other production files.</link><description>

Separating
the payroll files from other productions files introduces another layer of
security and reduces the risk of unauthorized access. If the payroll files
are not separated, the control has not been established ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=396&amp;tn=Confirm that payroll files are separated from other production files.'>View More</a>]]></description></item><item><title>Confirm that an approver doesn't have access to change, delete or add purchase orders.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=395&amp;tn=Confirm that an approver doesn't have access to change, delete or add purchase orders.</link><description>

To avoid the
risk of manipulation after a purchase order has been entered, an approver
should not have access to the purchase order except viewing. 

Action Code
Security secures users with Add, Change and Delete access for purchase order ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=395&amp;tn=Confirm that an approver doesn't have access to change, delete or add purchase orders.'>View More</a>]]></description></item><item><title>Ensure that Approval Delegation is closely controlled.</title><link>http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=358&amp;tn=Ensure that Approval Delegation is closely controlled.</link><description>

The
delegation process is fairly simple, but generates issues:
Is
the new approver also an originator?Has
somebody initiated the delegation process without proper authorization?Has
somebody initiated the delegation process and rolled it b ... &amp;nbsp;<![CDATA[<a href='http://www.checklist20.com/bestpractices.html#cid=167&amp;cn=JD Edwards World&amp;tid=358&amp;tn=Ensure that Approval Delegation is closely controlled.'>View More</a>]]></description></item></channel></rss>
