【正文】
an be more easily gained through internal or external works, strict authorisation and identification procedures, safe and sound architecture of the straightthrough processes, and adequate audit trails should be emphasised. Common practices used to establish and maintain segregation of duties within an ebanking environment include the following: Transaction processes and systems should be designed to ensure that no single employee/outsourced service provider could enter, authorise and plete a transaction. Segregation should be maintained between those initiating static data (including web page content) and those responsible for verifying its integrity. banking systems should be tested to ensure that segregation of duties cannot be bypassed. administrating ebanking systems. Principle 7: Banks should ensure that proper authorisation controls and access privileges are in place for ebanking systems, databases and applications. In order to maintain segregation of duties, banks need to strictly control authorisation and access privileges. Failure to provide adequate authorisation control could allow individuals to alter their authority, circumvent segregation and gain access to ebanking systems ,databases or applications to which they are not privileged. In ebanking systems, the autho