This lesson covers policies. One of the most important policies a company can have in place is the policy of separation of duties. Make sure duties are separated and that no individual has too many rights, no one is too powerful. For example, instead of one network administrator, companies can have a network administration team and all the members of that team have specific roles within it. Another important policy to implement is separation of access, making sure every worker has the means just to achieve their duties. This lesson also discusses collusion; which is different parties coming together to commit a fraud to the company.

