DPWAT-ISMS-POL-016 v1.0

Segregation of Duties & Dual Control Policy

Document ID: DPWAT-ISMS-POL-016
Version: 1.0
Owner: ISMS Manager / CISO (RMSI) — Timo Andreas Bejan
Approved by: Administrator (ADM) — Anna Boros
Effective date: 2025-10-15
Next review: 2027-02-01 (or on major change)

1. Purpose

Reduce the risk of errors, misuse of privilege, fraud, and unauthorized changes by separating conflicting duties where feasible, and applying compensating controls where separation is not feasible (due to company size or customer constraints).

2. Scope

This policy applies to all personnel performing DP WAT work (employees and contractors) and to DP WAT-managed systems and customer systems where DP WAT has access.

3. Principles

4. Common conflicting duties (examples)

DP WAT considers these duties to be potentially conflicting (non-exhaustive):

5. Minimum controls (how we implement SoD)

5.1 Access and privileged roles

5.2 Changes, releases, and production-impacting actions

5.3 Reviews and audits

6. Customer-managed environments

DP WAT personnel may have privileged access (including root-equivalent) to customer-managed production environments as required for service delivery. For these environments:

7. Exceptions and risk acceptance

Where SoD cannot be achieved (e.g., DP WAT static website where both commit and deploy rights exist for the same persons), the exception is:

  1. Documented in the risk register (02.02-risk-register)
  2. Mitigated via compensating controls (logging, retrospective review, MFA)
  3. Reviewed during internal audit and management review

See also: 03.13-policy-exceptions-and-risk-acceptance