SlideShare a Scribd company logo
1 of 15
Governance, Risk & Compliance SAP Live and Local Webcast Tour ‘08 5 June, 2008 [email_address]
Fragmentation Managing with confidence is difficult in an increasingly complex world Board of  Directors Finance Legal Sales Contracts HR Controller IT Policy Mgmt. Audit &  Compliance Treasury Australia U.S.A Japan U.K. France China Germany India Compliance Compliance Compliance Compliance Compliance Governance Compliance Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Risk Mgmt. Governance Security Proj. Mgmt. Doc. Mgmt. Contracts Planning Customers ERP Production Billing ASX Principle 7 CLERP 9 Credit Risk Human Capital Risk Segregation of duties SOX ROHS WEEE Project Risk Compliance Risk Mgmt. Governance
Integrated GRC Forward looking organizations are seeking a unified approach to GRC Australia U.S. A. Japan U.K. France China Germany India Compliance Compliance Compliance Compliance Compliance Governance Compliance Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Risk Mgmt. Governance Compliance Risk Mgmt. Governance Security Proj. Mgmt. Doc. Mgmt. Contracts Planning Customers ERP Production Billing Board of  Directors Finance Legal Sales Contracts HR Controller IT Policy Mgmt. Audit &  Compliance Treasury ASX Principle 7 CLERP 9 Credit Risk Human Capital Risk SOX ROHS WEEE Project Risk Segregation Of Duties
SAP Solutions for GRC A unified solution for GRC management ,[object Object],[object Object],[object Object],Business Process Platform Cross-Industry  GRC Risk Management Risk Management Business Applications Compliance  & Controls Industry-Specific GRC GRC Repository Environment Access Control Global Trade Process Control Life Sciences High Tech Chemicals Oil & Gas Banking Business Process
SAP GRC Access Control Sustainable prevention of segregation of duties violations  Cross-enterprise library of best practice segregation of duties rules  Compliant User Provisioning Prevent SoD violations at  run time Superuser Privilege Management Close #1 audit issue with temporary emergency access Periodic Access Review and Audit   Focus on remaining challenges during recurring audits (Stay in Control) (Stay Clean) Risk analysis, remediation and prevention services Enterprise Role Management Enforce SoD compliance at design time Risk Identification and Remediation Rapid, cost-effective and comprehensive initial clean-up (Get Clean) Minimal  Time To Compliance Continuous  Access Management Effective  Management Oversight  and Audit
Risk Analysis, Remediation and Prevention Services Delivers 24/7, real-time compliance by stopping security and controls violations before they occur Alerts Framework Reporting Reporting Real-time Simulation Mitigation Management Remediation Management Critical Transaction Monitoring Real-time SoD Risk Analysis Cross-Application Integration Risk Identification Elimination Prevention Mandatory Prevention Access Risks Services Cross-Enterprise Rules Architect Cross-Enterprise Rules Database Rules Access Risks Library ,[object Object],“ SAP GRC Access Control, with its comprehensive preconfigured rule set, reflected deep expertise within SAP that would have taken us a very long time to replicate.” Synopsys Inc.
Risk Analysis and Remediation  Getting clean Reporting Risk Elimination Risk Identification Prevention End-to-End Automation Initial Risk Analysis and Remediation ,[object Object],“ The clean-up process has brought a tremendous degree of discipline to the way we think about and manage user access and authorizations.” Synopsys Inc.
Enterprise Role Definition Enables enterprise role definition and maintenance in a single location   Centralized Role Management Across applications Enterprise Rules Audit log SAP GRC Access Control ,[object Object],[object Object],[object Object],[object Object],28% time savings in role management Customer Survey, 3/2006 Compliant enterprise roles Role … Role Role Role Role Role Role Role Role Role
SAP GRC Access Control Superuser Access Management Key Functionality Alert Framework Date Restrictions ID Administration Audit Logs Security Notification Reporting Reporting The only compliance-focused emergency access solution Compliant Superuser Access Privileged Access Firecall ID  SD Firecall ID  MM Firecall ID FICO Firecall ID . . . New Session New Session New Session New Session Superuser ,[object Object],[object Object],[object Object],[object Object],Log-in Restrictions Single User per ID Specific Authorization Access Log Log Log Log
SAP GRC Access Control Compliant Provisioning Enables Compliant End-to-End Provisioning “ hire to retire” Current Approach—Inefficient, Not Compliant email email spreadsheets, paper forms spreadsheets, paper forms Access Request Manager Approval Role Owner IT Security Manual Provisioning
GRC Access Control Compliant Provisioning Compliant Provisioning with Dynamic Workflow Path Workflow—based on request type and user attributes Escalation Workflow Exception Workflow 100% Automated HR Event Employee Hired/Retired Via e-mail 1 “Click” Preventive Simulation 100% Automated ,[object Object],[object Object],[object Object],[object Object],“ We reduced provisioning from 2 weeks to 2 days”  –  Web Seminar Rockwell Collins, 3/2005 Request Generated Automated Provisioning Mgr Approval Risk Analysis … … …
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],GRC Access Controls
Our offer to you ,[object Object],[object Object],[object Object]
Questions?
Thank you [email_address]

More Related Content

What's hot

SAP Security & GRC Framework
SAP Security & GRC FrameworkSAP Security & GRC Framework
SAP Security & GRC Framework
Harish Sharma
 
SAP GRC AC 10.1 - ARM Workflows
SAP GRC AC 10.1 - ARM WorkflowsSAP GRC AC 10.1 - ARM Workflows
SAP GRC AC 10.1 - ARM Workflows
Rohan Andrews
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties Solutions
Ahmed Abdul Hamed
 

What's hot (20)

Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
 
SAP Security & GRC Framework
SAP Security & GRC FrameworkSAP Security & GRC Framework
SAP Security & GRC Framework
 
SAP GRC AC 10.1 - ARM Workflows
SAP GRC AC 10.1 - ARM WorkflowsSAP GRC AC 10.1 - ARM Workflows
SAP GRC AC 10.1 - ARM Workflows
 
Anil kumar sap security & GRC
Anil kumar sap security & GRCAnil kumar sap security & GRC
Anil kumar sap security & GRC
 
Rethinking Segregation of Duties: Where Is Your Business Most Exposed?
Rethinking Segregation of Duties: Where Is Your Business Most Exposed?Rethinking Segregation of Duties: Where Is Your Business Most Exposed?
Rethinking Segregation of Duties: Where Is Your Business Most Exposed?
 
SAP Risk Management
SAP Risk ManagementSAP Risk Management
SAP Risk Management
 
Governance Risk and Compliance for SAP
Governance Risk and Compliance for SAPGovernance Risk and Compliance for SAP
Governance Risk and Compliance for SAP
 
Sap grc-access-control-solution
Sap grc-access-control-solutionSap grc-access-control-solution
Sap grc-access-control-solution
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
 
GRC access control access risk management guide
GRC access control   access risk management guideGRC access control   access risk management guide
GRC access control access risk management guide
 
Fiori and S/4 authorizations: What are the biggest challenges, and where do t...
Fiori and S/4 authorizations: What are the biggest challenges, and where do t...Fiori and S/4 authorizations: What are the biggest challenges, and where do t...
Fiori and S/4 authorizations: What are the biggest challenges, and where do t...
 
SAP SECURITY GRC
SAP SECURITY GRCSAP SECURITY GRC
SAP SECURITY GRC
 
Enterprise Security Architecture: From access to audit
Enterprise Security Architecture: From access to auditEnterprise Security Architecture: From access to audit
Enterprise Security Architecture: From access to audit
 
Enterprise Security Architecture
Enterprise Security ArchitectureEnterprise Security Architecture
Enterprise Security Architecture
 
Sap Security Workshop
Sap Security WorkshopSap Security Workshop
Sap Security Workshop
 
What is sap security
What is sap securityWhat is sap security
What is sap security
 
What is GRC – Governance, Risk and Compliance
What is GRC – Governance, Risk and Compliance What is GRC – Governance, Risk and Compliance
What is GRC – Governance, Risk and Compliance
 
HR Security in SAP: Securing Data Beyond HCM Authorizations
HR Security in SAP: Securing Data Beyond HCM AuthorizationsHR Security in SAP: Securing Data Beyond HCM Authorizations
HR Security in SAP: Securing Data Beyond HCM Authorizations
 
Introduction to SAP Security
Introduction to SAP SecurityIntroduction to SAP Security
Introduction to SAP Security
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties Solutions
 

Viewers also liked

Top 9 bi interview questions answers
Top 9 bi interview questions answersTop 9 bi interview questions answers
Top 9 bi interview questions answers
hudsons168
 
SAP Security important Questions
SAP Security important QuestionsSAP Security important Questions
SAP Security important Questions
Ragu M
 
sap security interview_questions
sap security interview_questionssap security interview_questions
sap security interview_questions
sumitmsn2
 

Viewers also liked (6)

SAP BI Implementation
SAP BI ImplementationSAP BI Implementation
SAP BI Implementation
 
Sap bw bi
Sap bw biSap bw bi
Sap bw bi
 
Top 9 bi interview questions answers
Top 9 bi interview questions answersTop 9 bi interview questions answers
Top 9 bi interview questions answers
 
SAP Security important Questions
SAP Security important QuestionsSAP Security important Questions
SAP Security important Questions
 
GRC_2016_US_Brochure
GRC_2016_US_BrochureGRC_2016_US_Brochure
GRC_2016_US_Brochure
 
sap security interview_questions
sap security interview_questionssap security interview_questions
sap security interview_questions
 

Similar to SAP grc

CML Group GRCaaS Dashboard
CML Group GRCaaS Dashboard CML Group GRCaaS Dashboard
CML Group GRCaaS Dashboard
Jim Robins
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?
mbmobile
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
Nidhi Gupta
 
Power your businesswith risk informed decisions
Power your businesswith risk informed decisionsPower your businesswith risk informed decisions
Power your businesswith risk informed decisions
Alireza Ghahrood
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management Solution
Rishabh Software
 
Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013
Bindu Rathore
 

Similar to SAP grc (20)

FulcrumWay GRC Solutions
FulcrumWay GRC SolutionsFulcrumWay GRC Solutions
FulcrumWay GRC Solutions
 
In sync10 grc_suite
In sync10 grc_suiteIn sync10 grc_suite
In sync10 grc_suite
 
CML Group GRCaaS Dashboard
CML Group GRCaaS Dashboard CML Group GRCaaS Dashboard
CML Group GRCaaS Dashboard
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?
 
GRC IMPRIVA
GRC IMPRIVAGRC IMPRIVA
GRC IMPRIVA
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 
ERP Security as a Service 2017
ERP Security as a Service 2017ERP Security as a Service 2017
ERP Security as a Service 2017
 
SAP GRC PROCESS CONTROL OVERVIEW AND APPROCH
SAP GRC PROCESS CONTROL OVERVIEW AND APPROCHSAP GRC PROCESS CONTROL OVERVIEW AND APPROCH
SAP GRC PROCESS CONTROL OVERVIEW AND APPROCH
 
ASSE Safety 2016: Ed Sattar Speaks about Operational Risk and Regulatory Chan...
ASSE Safety 2016: Ed Sattar Speaks about Operational Risk and Regulatory Chan...ASSE Safety 2016: Ed Sattar Speaks about Operational Risk and Regulatory Chan...
ASSE Safety 2016: Ed Sattar Speaks about Operational Risk and Regulatory Chan...
 
Fix nix, inc
Fix nix, incFix nix, inc
Fix nix, inc
 
Power your businesswith risk informed decisions
Power your businesswith risk informed decisionsPower your businesswith risk informed decisions
Power your businesswith risk informed decisions
 
SAP’s Utilities Roadmap Overview, The Evolution of Regulatory Compliance and ...
SAP’s Utilities Roadmap Overview, The Evolution of Regulatory Compliance and ...SAP’s Utilities Roadmap Overview, The Evolution of Regulatory Compliance and ...
SAP’s Utilities Roadmap Overview, The Evolution of Regulatory Compliance and ...
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management Solution
 
An Introduction to econsys
An Introduction to econsysAn Introduction to econsys
An Introduction to econsys
 
Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013
 
Advantages of an integrated governance, risk and compliance environment
Advantages of an integrated governance, risk and compliance environmentAdvantages of an integrated governance, risk and compliance environment
Advantages of an integrated governance, risk and compliance environment
 
Effektiv riskhantering - teori vs praktik - IBM Smarter Business 2011
Effektiv riskhantering - teori vs praktik - IBM Smarter Business 2011Effektiv riskhantering - teori vs praktik - IBM Smarter Business 2011
Effektiv riskhantering - teori vs praktik - IBM Smarter Business 2011
 

Recently uploaded

The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptx
heathfieldcps1
 
Seal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptxSeal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptx
negromaestrong
 
Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
ciinovamais
 

Recently uploaded (20)

The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptx
 
Class 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdfClass 11th Physics NEET formula sheet pdf
Class 11th Physics NEET formula sheet pdf
 
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17  How to Extend Models Using Mixin ClassesMixin Classes in Odoo 17  How to Extend Models Using Mixin Classes
Mixin Classes in Odoo 17 How to Extend Models Using Mixin Classes
 
Micro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdfMicro-Scholarship, What it is, How can it help me.pdf
Micro-Scholarship, What it is, How can it help me.pdf
 
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptxINDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
 
Sociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning ExhibitSociology 101 Demonstration of Learning Exhibit
Sociology 101 Demonstration of Learning Exhibit
 
ICT role in 21st century education and it's challenges.
ICT role in 21st century education and it's challenges.ICT role in 21st century education and it's challenges.
ICT role in 21st century education and it's challenges.
 
ICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptxICT Role in 21st Century Education & its Challenges.pptx
ICT Role in 21st Century Education & its Challenges.pptx
 
Application orientated numerical on hev.ppt
Application orientated numerical on hev.pptApplication orientated numerical on hev.ppt
Application orientated numerical on hev.ppt
 
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-IIFood Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
Food Chain and Food Web (Ecosystem) EVS, B. Pharmacy 1st Year, Sem-II
 
PROCESS RECORDING FORMAT.docx
PROCESS      RECORDING        FORMAT.docxPROCESS      RECORDING        FORMAT.docx
PROCESS RECORDING FORMAT.docx
 
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptxBasic Civil Engineering first year Notes- Chapter 4 Building.pptx
Basic Civil Engineering first year Notes- Chapter 4 Building.pptx
 
How to Give a Domain for a Field in Odoo 17
How to Give a Domain for a Field in Odoo 17How to Give a Domain for a Field in Odoo 17
How to Give a Domain for a Field in Odoo 17
 
General Principles of Intellectual Property: Concepts of Intellectual Proper...
General Principles of Intellectual Property: Concepts of Intellectual  Proper...General Principles of Intellectual Property: Concepts of Intellectual  Proper...
General Principles of Intellectual Property: Concepts of Intellectual Proper...
 
ComPTIA Overview | Comptia Security+ Book SY0-701
ComPTIA Overview | Comptia Security+ Book SY0-701ComPTIA Overview | Comptia Security+ Book SY0-701
ComPTIA Overview | Comptia Security+ Book SY0-701
 
Introduction to Nonprofit Accounting: The Basics
Introduction to Nonprofit Accounting: The BasicsIntroduction to Nonprofit Accounting: The Basics
Introduction to Nonprofit Accounting: The Basics
 
Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024
 
Seal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptxSeal of Good Local Governance (SGLG) 2024Final.pptx
Seal of Good Local Governance (SGLG) 2024Final.pptx
 
Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
 
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
Ecological Succession. ( ECOSYSTEM, B. Pharmacy, 1st Year, Sem-II, Environmen...
 

SAP grc

  • 1. Governance, Risk & Compliance SAP Live and Local Webcast Tour ‘08 5 June, 2008 [email_address]
  • 2. Fragmentation Managing with confidence is difficult in an increasingly complex world Board of Directors Finance Legal Sales Contracts HR Controller IT Policy Mgmt. Audit & Compliance Treasury Australia U.S.A Japan U.K. France China Germany India Compliance Compliance Compliance Compliance Compliance Governance Compliance Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Risk Mgmt. Governance Security Proj. Mgmt. Doc. Mgmt. Contracts Planning Customers ERP Production Billing ASX Principle 7 CLERP 9 Credit Risk Human Capital Risk Segregation of duties SOX ROHS WEEE Project Risk Compliance Risk Mgmt. Governance
  • 3. Integrated GRC Forward looking organizations are seeking a unified approach to GRC Australia U.S. A. Japan U.K. France China Germany India Compliance Compliance Compliance Compliance Compliance Governance Compliance Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Governance Risk Mgmt. Risk Mgmt. Risk Mgmt. Governance Compliance Risk Mgmt. Governance Security Proj. Mgmt. Doc. Mgmt. Contracts Planning Customers ERP Production Billing Board of Directors Finance Legal Sales Contracts HR Controller IT Policy Mgmt. Audit & Compliance Treasury ASX Principle 7 CLERP 9 Credit Risk Human Capital Risk SOX ROHS WEEE Project Risk Segregation Of Duties
  • 4.
  • 5. SAP GRC Access Control Sustainable prevention of segregation of duties violations Cross-enterprise library of best practice segregation of duties rules Compliant User Provisioning Prevent SoD violations at run time Superuser Privilege Management Close #1 audit issue with temporary emergency access Periodic Access Review and Audit Focus on remaining challenges during recurring audits (Stay in Control) (Stay Clean) Risk analysis, remediation and prevention services Enterprise Role Management Enforce SoD compliance at design time Risk Identification and Remediation Rapid, cost-effective and comprehensive initial clean-up (Get Clean) Minimal Time To Compliance Continuous Access Management Effective Management Oversight and Audit
  • 6.
  • 7.
  • 8.
  • 9.
  • 10. SAP GRC Access Control Compliant Provisioning Enables Compliant End-to-End Provisioning “ hire to retire” Current Approach—Inefficient, Not Compliant email email spreadsheets, paper forms spreadsheets, paper forms Access Request Manager Approval Role Owner IT Security Manual Provisioning
  • 11.
  • 12.
  • 13.