Rosemary Kim , Timothy Hedley , Jagdish Gangolly , S.S. Ravi
{"title":"Segregation of duties in accounting systems: A framework","authors":"Rosemary Kim , Timothy Hedley , Jagdish Gangolly , S.S. Ravi","doi":"10.1016/j.accinf.2025.100725","DOIUrl":null,"url":null,"abstract":"<div><div>Developing systems to enforce segregation of duties in accounting information systems is a complex task in high-transaction-volume environments. We develop a framework for alleviating the drawbacks of many SoD systems: absence of skills and tasks in SoD data models, lack of interfaces with business processes, and weak detection of non-compliance during business execution. Assuming the goal of SoD is to have no tasks unassigned to employees, no task assigned to an employee that does not have the skills to perform it, and compliance with all SoD rules, the paper develops polynomial time algorithms for the verification of SoD compliance of task and role assignments to employees in a sales order processing example with three SoD rules to illustrate the concepts in the paper. We also discuss the relationship of our model with the work on computational auditing and suggest how the two together can provide a unified view of SoD.</div></div>","PeriodicalId":47170,"journal":{"name":"International Journal of Accounting Information Systems","volume":"56 ","pages":"Article 100725"},"PeriodicalIF":4.1000,"publicationDate":"2025-02-15","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Accounting Information Systems","FirstCategoryId":"91","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S1467089525000016","RegionNum":3,"RegionCategory":"管理学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"BUSINESS","Score":null,"Total":0}
引用次数: 0
Abstract
Developing systems to enforce segregation of duties in accounting information systems is a complex task in high-transaction-volume environments. We develop a framework for alleviating the drawbacks of many SoD systems: absence of skills and tasks in SoD data models, lack of interfaces with business processes, and weak detection of non-compliance during business execution. Assuming the goal of SoD is to have no tasks unassigned to employees, no task assigned to an employee that does not have the skills to perform it, and compliance with all SoD rules, the paper develops polynomial time algorithms for the verification of SoD compliance of task and role assignments to employees in a sales order processing example with three SoD rules to illustrate the concepts in the paper. We also discuss the relationship of our model with the work on computational auditing and suggest how the two together can provide a unified view of SoD.
期刊介绍:
The International Journal of Accounting Information Systems will publish thoughtful, well developed articles that examine the rapidly evolving relationship between accounting and information technology. Articles may range from empirical to analytical, from practice-based to the development of new techniques, but must be related to problems facing the integration of accounting and information technology. The journal will address (but will not limit itself to) the following specific issues: control and auditability of information systems; management of information technology; artificial intelligence research in accounting; development issues in accounting and information systems; human factors issues related to information technology; development of theories related to information technology; methodological issues in information technology research; information systems validation; human–computer interaction research in accounting information systems. The journal welcomes and encourages articles from both practitioners and academicians.