{"id":6447,"date":"2023-08-22T17:07:37","date_gmt":"2023-08-22T21:07:37","guid":{"rendered":"http:/its/wp-json/wp/v2/pages/6447///its/wp-json/wp/v2/pages/6447//149.4.100.129/its/wp-json/wp/v2/pages/6447//its/its/wp-json/wp/v2/pages/6447//?page_id=6447"},"modified":"2026-02-17T01:25:41","modified_gmt":"2026-02-17T06:25:41","slug":"application-security-liaison-workflow","status":"publish","type":"page","link":"https:/its/wp-json/wp/v2/pages/6447///its/wp-json/wp/v2/pages/6447//www.qc.cuny.edu/its/wp-json/wp/v2/pages/6447//its/its/wp-json/wp/v2/pages/6447//application-security-liaison-workflow/its/wp-json/wp/v2/pages/6447//","title":{"rendered":"Application Security Liaison Workflow for ºì¶¹ÊÓÆµ"},"content":{"rendered":"
[et_pb_section fb_built=”1″ _builder_version=”4.22.1″ _module_preset=”default” custom_padding=”||2px|||” global_colors_info=”{}”][et_pb_row column_structure=”3_4,1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”3_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_heading title=”Application Security Liaison Workflow” _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][/its/wp-json/wp/v2/pages/6447//et_pb_heading][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font_size=”16px” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n
Access security is a part of our everyday work. The Application Security Liaison (ASL) team is a part of the Information Technology Services (ITS) division at ºì¶¹ÊÓÆµ. Access is granted by provisioning role(s) to a person. The unique identifier that is used to provide access is your EMPLID. Access may require campus-level approval, central approval, or a combination of those. Role provisioning can be performed by the campus ASL team if the role is not restricted and by the Central ASL team if the role is restricted (indicated on the form). Central approvals and role provisioning require a ServiceNow ticket. All security forms can be found on the following CUNY website: CUNYfirst (PeopleSoft) Security./its/wp-json/wp/v2/pages/6447/n A Business Process Owner (BPO) is a person that will be able to answer questions about the required roles needed to complete a form. The BPO is responsible for acquiring all approvals before submission to the ASL team and starts the access request process. In the case where Central Office approval is required, the BPO will coordinate to attain approval. Each form will require managerial approval and the correct approver for the roles needed. Users will not be able to request access for themselves. The BPO will be able to assist you in making sure the proper approvals are received. In reference to approvals, please note the following: Approvals in Absence of Written Signature: In the absence of written signatures, approval guidelines for requesting CUNYfirst-related access have been updated. The current process accepts email approval from Campus and Central Access Approvers from a CUNY email address. It is now also acceptable for a Manager/its/wp-json/wp/v2/pages/6447//Supervisor to authorize an employee/its/wp-json/wp/v2/pages/6447/u2019s access request via email./its/wp-json/wp/v2/pages/6447/n The timeframe for approvals is based on the workload of the BPO and corresponding approvers. Approvals are reviewed during regular auditing periods, as such, access forms must be reviewed carefully before approval is provided. Each BPO can be contacted for an urgent access request to expedite processing. Fully approved access requests will have role provisioned within 5 business days of receipt by the ASL team./its/wp-json/wp/v2/pages/6447/n In addition, employees can now accept the CUNYfirst Confidentiality Statement via Employee Self-Service instead of requiring an employee/its/wp-json/wp/v2/pages/6447/u2019s signature. After accepting the Statement, a 10-character Agreement Code will be generated that can be added to any CUNYfirst Access Request form and will be accepted in lieu of a signature. For detailed information, please review: Guidelines In Absence of Written Signatures./its/wp-json/wp/v2/pages/6447/n The workflow for security forms begins after the person hired has been processed via the ePAF (electronic Personnel Action Form) process. If the hire is from another CUNY institution and they have not been properly off-boarded, the former institution/its/wp-json/wp/v2/pages/6447/u2019s ASL team must remove access before access at ºì¶¹ÊÓÆµ can be applied. The Security form workflow is as follows:/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_blurb title=”Information Technology Services” _builder_version=”4.27.4″ _module_preset=”default” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n Office Hours: [/its/wp-json/wp/v2/pages/6447//et_pb_blurb][/its/wp-json/wp/v2/pages/6447//et_pb_column][/its/wp-json/wp/v2/pages/6447//et_pb_row][/its/wp-json/wp/v2/pages/6447//et_pb_section][et_pb_section fb_built=”1″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_row column_structure=”1_4,1_4,1_4,1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”1_4″ admin_label=”Column” _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.27.4″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_margin=”14px||22px||false|false” custom_padding=”12px||12px||true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_margin=”17px||38px||false|false” custom_padding=”11px||11px|0px|true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 2. Requester fields are filled (name, EMPLID, etc.)/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” header_text_align=”center” text_orientation=”center” custom_margin=”11px|6px|21px|6px|false|false” custom_padding=”13px||8px||false|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 3. Requester approval and managerial approval are filled in on the form/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_margin=”14px|5px|17px|5px|false|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 4. Form is submitted to Business Process Owner (BPO) via Email unless otherwise indicated/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][/its/wp-json/wp/v2/pages/6447//et_pb_row][et_pb_row column_structure=”1_4,1_4,1_4,1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” background_color=”#E71939″ text_orientation=”center” custom_margin=”0px|0px|0px|0px|false|false” custom_padding=”6px|6px|6px|6px|true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 5. BPO will assist requester and manager with modifying role requests and attaining approvals for a completed form/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_padding=”17px|6px|17px|6px|true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 6. BPO’s will escalate forms that need Central approval to their central coordinates via email/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_margin=”8px||15px||false|false” custom_padding=”4px|6px|4px|6px|true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 7. A completed security form will be submitted by the BPO to the campus ASL via a FreshService Ticket/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_margin=”8px||37px||false|false” custom_padding=”15px||15px||true|false” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 8. Campus ASL will provision assignable roles, SACR, and/its/wp-json/wp/v2/pages/6447//or Permission/its/wp-json/wp/v2/pages/6447//Row List information/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][/its/wp-json/wp/v2/pages/6447//et_pb_row][et_pb_row column_structure=”1_4,1_4,1_4,1_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_padding=”13px|10px|13px|10px|true|true” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 9. Once central approvals (if needed) are attained campus ASL will escalate ticket to CIS for processing/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”#E71939″ global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” text_font=”|600|||||||” text_text_color=”#FFFFFF” text_orientation=”center” custom_padding=”13px|10px|13px|10px|true|true” global_colors_info=”{}”]/its/wp-json/wp/v2/pages/6447/n 10. Campus ASL will notify BPO and users via FreshService ticket when roles are provisioned/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][et_pb_column type=”1_4″ _builder_version=”4.22.1″ _module_preset=”default” background_color=”RGBA(255,255,255,0)” global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][/its/wp-json/wp/v2/pages/6447//et_pb_row][et_pb_row _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_text _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”]The following link is the CUNY Guidelines for Requesting CUNYfirst Application Security Access.[/its/wp-json/wp/v2/pages/6447//et_pb_text][/its/wp-json/wp/v2/pages/6447//et_pb_column][/its/wp-json/wp/v2/pages/6447//et_pb_row][et_pb_row admin_label=”Row” _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”4_4″ admin_label=”Column” _builder_version=”4.22.1″ _module_preset=”default” global_colors_info=”{}”][et_pb_accordion admin_label=”Accordion” _builder_version=”4.27.4″ _module_preset=”default” hover_enabled=”0″ global_colors_info=”{}” sticky_enabled=”0″][et_pb_accordion_item title=”Your Applications Security Liaison (ASL) Team” open=”on” _builder_version=”4.27.4″ _module_preset=”default” hover_enabled=”0″ global_colors_info=”{}” sticky_enabled=”0″]/its/wp-json/wp/v2/pages/6447/n The ASL team is here to assist requesters and BPO’s to get forms filled out properly and with the proper level of access needed. Here they are:/its/wp-json/wp/v2/pages/6447/n /its/wp-json/wp/v2/pages/6447/n Jason Kong (He/its/wp-json/wp/v2/pages/6447//him/its/wp-json/wp/v2/pages/6447//his) is the campus ASL and is here to assist with your access needs. He is an big fan of anime and loves to work on the newest tech. He can be reached via the ticketing system (QC ITS Support)/its/wp-json/wp/v2/pages/6447/n [/its/wp-json/wp/v2/pages/6447//et_pb_accordion_item][et_pb_accordion_item title=”ºì¶¹ÊÓÆµ Business Process Owners” _builder_version=”4.27.4″ _module_preset=”default” global_colors_info=”{}” open=”off”]/its/wp-json/wp/v2/pages/6447/n ºì¶¹ÊÓÆµ Business Process Owners (BPO’s) can be reached by sending an email or by submitting a ticket. A ticket will automatically be generated in the Fresh Service system and users will be alerted. BPO’s will communicate via email or ticket to answer any questions you may have about the permissions and fields on the form(s)./its/wp-json/wp/v2/pages/6447/n
Mon-Thur, 9:00 AM /its/wp-json/wp/v2/pages/6447/u2013 4:00 pm
Fri, Closed
Kiely Hall Room 226
Phone: 718-997-4444
Fax: 718-997-5678
Email:/its/wp-json/wp/v2/pages/6447/u00a0support@qc.cuny.edu
Submit a ticket via/its/wp-json/wp/v2/pages/6447/u00a0Fresh Service/its/wp-json/wp/v2/pages/6447/n/its/wp-json/wp/v2/pages/6447/n
/its/wp-json/wp/v2/pages/6447/n