Row — clean employee Row/cell — toxic pair held Cell — single (non-toxic) grant System core / probe lane

Insider Sabotage: SoD Access Matrix

A defensive, analytical view of how organizations contain insider sabotage. Ten sensitive system permissions form five request/approval pairs — hold both halves of any pair and a single account can act unilaterally and erase the evidence. This 2D simulator renders a live employee × permission access matrix over a randomly-provisioned workforce, computes a segregation-of-duties risk score, plots the distribution of toxic-pair holders, and lets you toggle policy enforcement to watch risk collapse to zero as the required attack shifts from one insider acting alone to two independently-privileged accounts colluding. "Simulate Insider Attempt" animates a probe from the highest-risk row toward the system core so you can see whether a real sabotage attempt would succeed or stall on a missing approval.