# sod

Source: https://startwithidentity.com/glossary/sod/
Last updated: 2026-08-29
License: content by Start with Identity. Cite the source URL.

---

Ensuring no single user can complete a sensitive process unilaterally, for example, both creating and approving a vendor payment. SoD policies are encoded into IGA tools and tested during access certification.

Segregation of duties is where governance gets specific enough to be useful: the policy names two entitlements that must not coexist on one person, and the system enforces it at request time rather than discovering the violation at audit. The hard part is authoring the ruleset, since it requires business process knowledge that lives with finance and operations rather than with IT.

See also: [access certification](https://startwithidentity.com/glossary/access-certification/), [what is IGA](https://startwithidentity.com/guides/fundamentals/what-is-iga/), [entitlement](https://startwithidentity.com/glossary/entitlement/), [IGA vendors](https://startwithidentity.com/vendors/iga/)
