SlideShare ist ein Scribd-Unternehmen logo
1 von 2
Downloaden Sie, um offline zu lesen
Suffering from ERP Incident Management Fatigue?
Segregation of Duty violations, Misconfigured setups,
Unauthorized Master Data Changes, Suspicious
Transactions, and Sensitive Data Vulnerabilities are
common risks that can lead to Fraud, Waste and
Regulatory Penalties.
Invigorate your business with SPA Treatment
Assess risk with access to leading Risk Advisors and
ERP Experts. Mitigate risk with rapid deployment ERP
Controls from our Smart Controls Cloud. Rapidly
Remediate control violations with ERP Security and
Control cloud services available to SPA members.
SPA is available to clients running: Oracle EBS, PeopleSoft, JD Edward, Oracle GRC Manager 7.8, Oracle GRC Controls Suite (AACG, CCG, PCG, TCG), Enterprise GRC
Manager, Oracle Internal Controls Manager (ICM), LogicalApps, Applimation Inegra. Additional applications and services may be added with Diamond SPA
membership for extra fees.
1.866.5.Fulcrum
www.fulcrumway.com
Risk Treatment SPA Silver Gold Platinum Diamond
Management Controls Concierge
Service hours Per Request 40 hrs./qtr. 80 hrs./qtr. 160 hrs./qtr.
Insight – Whitepapers, Educational Webinars Yes Yes Yes Yes
Training Sessions 4 hr. session/year 8 hr. sessions/yr. 16 hr. sessions/yr. 32 hr. sessions/yr.
Management Risk Assessment Option Annually Annually Semi-Annually
Controls Software Management Per Request Quarterly-QA +Critical Patch +Upgrade
Monitor User Access Option Quarterly Monthly Continuous
Monitor User Roles Option Quarterly Monthly Continuous
Monitor Master Data Option Option Continuous Continuous
Monitor Configurations Option Annually Quarterly Continuous
Monitor Transactions Option Annually Quarterly Continuous
Monitor Database Access Option Option Quarterly Continuous
Smart Controls Workbench™
DataProbe - Risk Discovery and Control Design Single User Five User Ten User Fifty User
Access Controls 50 100 100 100
Transaction Controls Option 5 10 20
Configuration Controls Option 5 50 50
Master Data Controls Option Option 3 5
Worklfow Controls Option Option Option 5
Service Levels
Response Time 5 business days 8 Hrs. 4 Hrs. 2 Hrs.
Service Window 8AM – 5PM 8AM – 5PM 6AM – 6PM 24x5
Supplemental Work Market Rate 10% discount 15% discount 20% discount
ERP Security and Controls Management
Service Preference Agreement (SPA) for Risk Treatment
Mangement Controls
Conceirge
Leading experts with Audit and Compliance experience at public companies. Accreted Professionals with CPA, CIA and CISA
Credentials. GRC experts with a combined experience at more than 200 enterprise clients in the past 10 years. Authored the first
book on Oracle GRC. Experts also include certified IT analysts, system administrators and DBAs.
Service Hours
Total hours available per period to perform Control Concierge services excluding training sessions. SPA Client Service
Manager is responsible for all work actions and effectively“owns”all aspects of SPA service delivery. The CSM works with the
client to schedule work based on requirements. To ensure that all issues are addressed, issues are tracked and monitored in the
Customer Portal – FulcrumACTS. Any member of the team can log an issue in FulcrumACTS. The SPA CSM will track and report
on all issues. Issues will be classified by priority, criticality, and resolution period. The SPA CSM and Client SPA Contact review
status of all issues on a periodic basis.
Insight – Whitepapers,
Peer Round tables
Learn from our real world experience with assisting clients across all major industries, company sizes and geographic regions.
Training
FulcrumWay experts deliver live two hour Web-based training courses on a wide variety of Governance, Risk and Compliance
management topics and systems. These essential training resources can help Internal Auditors, IT Managers, Financial
Managers, Business Control Owners and other professionals get up to speed on the latest knowledge and GRC best practices.
Management Risk
Assessment
Risk assessment includes Enterprise and IT assessment of risk based on FulcrumWay Risk Advisory Controls Catalog.
Enterprise assessment includes a survey of selected employees, a weighted risk rating and a control certification such
as SOX 302. The IT assessment includes segregation of duty, master data and change controls testing based on data
provide by the client through scripts and data extraction tools such as DataProbeTM
.
Controls Software
Management
Perform technical maintenance and system administration tasks based on the SPA service level to ensure that the controls
monitoring software and reports generate accurate and timely incidents for management actions.
Monitor Users,
Roles, Master Data,
Configurations,
Transactions, DB
Monitor segregation of duty (SOD) and access policy violations by user and application roles. Monitor changes to sensitive
attributes in master data objects such as supplier bank accounts, customer credit limits, etc. Monitor application configuration
settings that impact financial reporting and operations. Monitor suspicious transactions such as split PO, duplicate payments
to suppliers. Monitor users with access to database
Smart Controls
Workbench
Discover weak controls and unmitigated risks using Dataprobe, a Windows based application risk analytics tool. Add new
“smart”controls where the standard application controls are ineffective. For example, monitor all changes to the 3-way match
setting in Payables, or Journal Entries reversed over a threshold amount. Download control templates from FulcrumWay Smart
Cloud and enable business control managers to easily adjust them in controls workbench to fit their risk tolerance levels
Response Time
SPA clients use the FulcrumACTS (FACTs) system for issue management and tracking that immediately notifies the assigned
support analyst of the issue, with follow-ups scheduled according to the designated service level outlined in the agreement.
Service Window Service window is the time duration when the analysts are available to review and respond to client issues and tasks.
Supplemental Work
Supplemental work will be performed upon request for our SPA clients. A FulcrumWay Application Analyst will submit a
work order for the supplemental work that will outline the tasks and estimated time effort. Upon approval of the work order
by the client’s Application Manager, FulcrumWay will initiate the work effort in accordance with the business requirements.
Supplemental work will be billed at the following hourly rates subject to SPA level discounts.
Advanced Controls
Lab Access
FulcrumWay hosts and maintains ERP Applications, GRC Software, Controls Catalog and Risk Management Tools for our clients
to test drive each solution. Access to these services and software enable SPA clients to confirm the business case and the most
optimal approach for meeting the business needs before investing internal resources to implement the selected solution(s).
Industry Events Discount
Receive discounts on travel costs and registration fees to GRC, Audit, and IT events including: OAUG Client Dinner, Open World
GRC Round Table, IIA, ISACA, Gartner, Compliance Week, and others.
Annual Fees
Annual Fee is due upon signed agreement. Client has the option to change the services during the contract period. Client can
upgrade the SPA level by paying the difference. However, the fee is non-refundable if client downgrades the SPA. FulcrumWay
reserves the right to change its pricing from time to time, provided that no such change will be effective until at least thirty
(30) days after FulcrumWay has given the Customer written notice of such change.
One Time Setup Fee
The setup fee includes onsite review of client processes, controls, systems and audit issues to determine the scope of Service
Level Agreement (SLA). Clients that sign-up for the SPA services within 60 days of the initial deployment/engagement can
avoid the Setup Fee.
Description of Service Options

Weitere ähnliche Inhalte

Was ist angesagt?

34514_Process_Control_e-book_interactive
34514_Process_Control_e-book_interactive34514_Process_Control_e-book_interactive
34514_Process_Control_e-book_interactiveROMI Associates
 
Office of Finance
Office of FinanceOffice of Finance
Office of FinanceFlexera
 
081712 isaca-atl-auditing sap-grc
081712 isaca-atl-auditing sap-grc081712 isaca-atl-auditing sap-grc
081712 isaca-atl-auditing sap-grchkodali
 
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1Anup Lakra
 
Advanced Authorization for SAP Global Deployments Part III of III
Advanced Authorization for SAP Global Deployments Part III of IIIAdvanced Authorization for SAP Global Deployments Part III of III
Advanced Authorization for SAP Global Deployments Part III of IIINextLabs, Inc.
 
ISACA Complied Arabic English Glossary for use in Governance applications and...
ISACA Complied Arabic English Glossary for use in Governance applications and...ISACA Complied Arabic English Glossary for use in Governance applications and...
ISACA Complied Arabic English Glossary for use in Governance applications and...Tamer Shoukry
 
Enterprise Risk Management Software
Enterprise Risk Management SoftwareEnterprise Risk Management Software
Enterprise Risk Management SoftwareMike Taylor
 
Take Care | Complete hotel back office
Take Care | Complete hotel back officeTake Care | Complete hotel back office
Take Care | Complete hotel back officeAtsc Group
 
AMB300: Lessons Learned from ITAM Customers
AMB300: Lessons Learned from ITAM CustomersAMB300: Lessons Learned from ITAM Customers
AMB300: Lessons Learned from ITAM CustomersIvanti
 
Prolifics Managed Services Offering
Prolifics Managed Services OfferingProlifics Managed Services Offering
Prolifics Managed Services Offeringvenkata burra
 
Sap audit programs_and_ic_qs
Sap audit programs_and_ic_qsSap audit programs_and_ic_qs
Sap audit programs_and_ic_qsPhong Ho
 
ITAM Tools Day, November 2015 - Concorde
ITAM Tools Day, November 2015 - ConcordeITAM Tools Day, November 2015 - Concorde
ITAM Tools Day, November 2015 - ConcordeMartin Thompson
 
Intelliob TimeMate: Time & Attendance
Intelliob TimeMate: Time & AttendanceIntelliob TimeMate: Time & Attendance
Intelliob TimeMate: Time & AttendanceIntelliob Technologies
 
AMB410: ITxM: The ITAM, ITSM, and Security Crossroads
AMB410: ITxM: The ITAM, ITSM, and Security CrossroadsAMB410: ITxM: The ITAM, ITSM, and Security Crossroads
AMB410: ITxM: The ITAM, ITSM, and Security CrossroadsIvanti
 
FlexNet Manager Platform Implementation Service
FlexNet Manager Platform Implementation ServiceFlexNet Manager Platform Implementation Service
FlexNet Manager Platform Implementation ServiceFlexera
 
On Going Web
On Going WebOn Going Web
On Going Webmigodalin
 
Managed It Services
Managed It ServicesManaged It Services
Managed It ServicesGss America
 

Was ist angesagt? (20)

34514_Process_Control_e-book_interactive
34514_Process_Control_e-book_interactive34514_Process_Control_e-book_interactive
34514_Process_Control_e-book_interactive
 
Office of Finance
Office of FinanceOffice of Finance
Office of Finance
 
081712 isaca-atl-auditing sap-grc
081712 isaca-atl-auditing sap-grc081712 isaca-atl-auditing sap-grc
081712 isaca-atl-auditing sap-grc
 
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1
Webinar: Simplify, Gain Insight, Strengthen with SAP GRC 10.1
 
SAP License Audit Tips
SAP License Audit TipsSAP License Audit Tips
SAP License Audit Tips
 
Advanced Authorization for SAP Global Deployments Part III of III
Advanced Authorization for SAP Global Deployments Part III of IIIAdvanced Authorization for SAP Global Deployments Part III of III
Advanced Authorization for SAP Global Deployments Part III of III
 
ISACA Complied Arabic English Glossary for use in Governance applications and...
ISACA Complied Arabic English Glossary for use in Governance applications and...ISACA Complied Arabic English Glossary for use in Governance applications and...
ISACA Complied Arabic English Glossary for use in Governance applications and...
 
Enterprise Risk Management Software
Enterprise Risk Management SoftwareEnterprise Risk Management Software
Enterprise Risk Management Software
 
Take Care | Complete hotel back office
Take Care | Complete hotel back officeTake Care | Complete hotel back office
Take Care | Complete hotel back office
 
AMB300: Lessons Learned from ITAM Customers
AMB300: Lessons Learned from ITAM CustomersAMB300: Lessons Learned from ITAM Customers
AMB300: Lessons Learned from ITAM Customers
 
Prolifics Managed Services Offering
Prolifics Managed Services OfferingProlifics Managed Services Offering
Prolifics Managed Services Offering
 
Sap audit programs_and_ic_qs
Sap audit programs_and_ic_qsSap audit programs_and_ic_qs
Sap audit programs_and_ic_qs
 
ITAM Tools Day, November 2015 - Concorde
ITAM Tools Day, November 2015 - ConcordeITAM Tools Day, November 2015 - Concorde
ITAM Tools Day, November 2015 - Concorde
 
Intelliob TimeMate: Time & Attendance
Intelliob TimeMate: Time & AttendanceIntelliob TimeMate: Time & Attendance
Intelliob TimeMate: Time & Attendance
 
AMB410: ITxM: The ITAM, ITSM, and Security Crossroads
AMB410: ITxM: The ITAM, ITSM, and Security CrossroadsAMB410: ITxM: The ITAM, ITSM, and Security Crossroads
AMB410: ITxM: The ITAM, ITSM, and Security Crossroads
 
Oow2014 nk 2
Oow2014 nk 2Oow2014 nk 2
Oow2014 nk 2
 
FlexNet Manager Platform Implementation Service
FlexNet Manager Platform Implementation ServiceFlexNet Manager Platform Implementation Service
FlexNet Manager Platform Implementation Service
 
On Going Web
On Going WebOn Going Web
On Going Web
 
Managed It Services
Managed It ServicesManaged It Services
Managed It Services
 
eFACiLiTY Time and Attendance System
eFACiLiTY Time and Attendance SystemeFACiLiTY Time and Attendance System
eFACiLiTY Time and Attendance System
 

Ähnlich wie ERP Security as a Service 2017

FulcrumWay GRC Solutions
FulcrumWay GRC SolutionsFulcrumWay GRC Solutions
FulcrumWay GRC SolutionsMantala
 
Regulatory Compliance Software
Regulatory Compliance SoftwareRegulatory Compliance Software
Regulatory Compliance SoftwareSoftwaresolutions2
 
An Introduction to econsys
An Introduction to econsysAn Introduction to econsys
An Introduction to econsysAndrew Redfern
 
Around the World in 100 Days a Global Deployment Case Study
Around the World in 100 Days a Global Deployment Case StudyAround the World in 100 Days a Global Deployment Case Study
Around the World in 100 Days a Global Deployment Case Studydreamforce2006
 
Applying Robotic Process Automation in Banking: Innovations in Finance and Risk
Applying Robotic Process Automation in Banking: Innovations in Finance and RiskApplying Robotic Process Automation in Banking: Innovations in Finance and Risk
Applying Robotic Process Automation in Banking: Innovations in Finance and Riskaccenture
 
Best Practices for Integrating with Your ERP
Best Practices for Integrating with Your ERPBest Practices for Integrating with Your ERP
Best Practices for Integrating with Your ERPdreamforce2006
 
Free quality management system software
Free quality management system softwareFree quality management system software
Free quality management system softwareselinasimpson361
 
Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013Bindu Rathore
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?mbmobile
 
AutoRek - Automated Reconciliation and Exception Management
AutoRek - Automated Reconciliation and Exception ManagementAutoRek - Automated Reconciliation and Exception Management
AutoRek - Automated Reconciliation and Exception ManagementJim Muir
 
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Software India
 
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...Integrated Computer Systems, Inc.
 
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & ImplementationsThousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & ImplementationsOracle
 
Tips & Tricks for Building Advanced Workflow
Tips & Tricks for Building Advanced WorkflowTips & Tricks for Building Advanced Workflow
Tips & Tricks for Building Advanced Workflowdreamforce2006
 
Best Practices for the Service Cloud
Best Practices for the Service CloudBest Practices for the Service Cloud
Best Practices for the Service CloudRoss Bauer
 

Ähnlich wie ERP Security as a Service 2017 (20)

SAP GRC
SAP GRC SAP GRC
SAP GRC
 
Kiran_CV
Kiran_CVKiran_CV
Kiran_CV
 
FulcrumWay GRC Solutions
FulcrumWay GRC SolutionsFulcrumWay GRC Solutions
FulcrumWay GRC Solutions
 
Regulatory Compliance Software
Regulatory Compliance SoftwareRegulatory Compliance Software
Regulatory Compliance Software
 
An Introduction to econsys
An Introduction to econsysAn Introduction to econsys
An Introduction to econsys
 
RSPL Brochure
RSPL BrochureRSPL Brochure
RSPL Brochure
 
Vivek cv
Vivek cvVivek cv
Vivek cv
 
Around the World in 100 Days a Global Deployment Case Study
Around the World in 100 Days a Global Deployment Case StudyAround the World in 100 Days a Global Deployment Case Study
Around the World in 100 Days a Global Deployment Case Study
 
Applying Robotic Process Automation in Banking: Innovations in Finance and Risk
Applying Robotic Process Automation in Banking: Innovations in Finance and RiskApplying Robotic Process Automation in Banking: Innovations in Finance and Risk
Applying Robotic Process Automation in Banking: Innovations in Finance and Risk
 
Best Practices for Integrating with Your ERP
Best Practices for Integrating with Your ERPBest Practices for Integrating with Your ERP
Best Practices for Integrating with Your ERP
 
Free quality management system software
Free quality management system softwareFree quality management system software
Free quality management system software
 
Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013Ascent overview deck_sep_25_2013
Ascent overview deck_sep_25_2013
 
How much does it cost to be Secure?
How much does it cost to be Secure?How much does it cost to be Secure?
How much does it cost to be Secure?
 
AutoRek - Automated Reconciliation and Exception Management
AutoRek - Automated Reconciliation and Exception ManagementAutoRek - Automated Reconciliation and Exception Management
AutoRek - Automated Reconciliation and Exception Management
 
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
IBM Solutions Connect 2013 - Increase Efficiency by Automating IT Asset & Ser...
 
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...
Autotask: Using IT Service Management Software to Improve 8 Key Business Proc...
 
TQMSOptima QMS Software
TQMSOptima QMS SoftwareTQMSOptima QMS Software
TQMSOptima QMS Software
 
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & ImplementationsThousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
 
Tips & Tricks for Building Advanced Workflow
Tips & Tricks for Building Advanced WorkflowTips & Tricks for Building Advanced Workflow
Tips & Tricks for Building Advanced Workflow
 
Best Practices for the Service Cloud
Best Practices for the Service CloudBest Practices for the Service Cloud
Best Practices for the Service Cloud
 

Mehr von Jane Jones

SafePaaS SoD Scanner 2018
SafePaaS SoD Scanner 2018SafePaaS SoD Scanner 2018
SafePaaS SoD Scanner 2018Jane Jones
 
AccessPaaS by SafePaaS
AccessPaaS by SafePaaSAccessPaaS by SafePaaS
AccessPaaS by SafePaaSJane Jones
 
AuditPaas by SafePaaS
AuditPaas by SafePaaSAuditPaas by SafePaaS
AuditPaas by SafePaaSJane Jones
 
SafepaaS AuditPaaS
SafepaaS AuditPaaSSafepaaS AuditPaaS
SafepaaS AuditPaaSJane Jones
 
SafePaaS AuditPaaS
SafePaaS AuditPaaS SafePaaS AuditPaaS
SafePaaS AuditPaaS Jane Jones
 
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle AppsSroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle AppsJane Jones
 

Mehr von Jane Jones (7)

SafePaaS SoD Scanner 2018
SafePaaS SoD Scanner 2018SafePaaS SoD Scanner 2018
SafePaaS SoD Scanner 2018
 
AccessPaaS by SafePaaS
AccessPaaS by SafePaaSAccessPaaS by SafePaaS
AccessPaaS by SafePaaS
 
AuditPaas by SafePaaS
AuditPaas by SafePaaSAuditPaas by SafePaaS
AuditPaas by SafePaaS
 
SafepaaS AuditPaaS
SafepaaS AuditPaaSSafepaaS AuditPaaS
SafepaaS AuditPaaS
 
SafePaaS AuditPaaS
SafePaaS AuditPaaS SafePaaS AuditPaaS
SafePaaS AuditPaaS
 
I access (1)
I access (1)I access (1)
I access (1)
 
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle AppsSroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
 

Kürzlich hochgeladen

TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistandanishmna97
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Bhuvaneswari Subramani
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxRemote DBA Services
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...DianaGray10
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsNanddeep Nachan
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfOrbitshub
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Orbitshub
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 

Kürzlich hochgeladen (20)

TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 

ERP Security as a Service 2017

  • 1. Suffering from ERP Incident Management Fatigue? Segregation of Duty violations, Misconfigured setups, Unauthorized Master Data Changes, Suspicious Transactions, and Sensitive Data Vulnerabilities are common risks that can lead to Fraud, Waste and Regulatory Penalties. Invigorate your business with SPA Treatment Assess risk with access to leading Risk Advisors and ERP Experts. Mitigate risk with rapid deployment ERP Controls from our Smart Controls Cloud. Rapidly Remediate control violations with ERP Security and Control cloud services available to SPA members. SPA is available to clients running: Oracle EBS, PeopleSoft, JD Edward, Oracle GRC Manager 7.8, Oracle GRC Controls Suite (AACG, CCG, PCG, TCG), Enterprise GRC Manager, Oracle Internal Controls Manager (ICM), LogicalApps, Applimation Inegra. Additional applications and services may be added with Diamond SPA membership for extra fees. 1.866.5.Fulcrum www.fulcrumway.com Risk Treatment SPA Silver Gold Platinum Diamond Management Controls Concierge Service hours Per Request 40 hrs./qtr. 80 hrs./qtr. 160 hrs./qtr. Insight – Whitepapers, Educational Webinars Yes Yes Yes Yes Training Sessions 4 hr. session/year 8 hr. sessions/yr. 16 hr. sessions/yr. 32 hr. sessions/yr. Management Risk Assessment Option Annually Annually Semi-Annually Controls Software Management Per Request Quarterly-QA +Critical Patch +Upgrade Monitor User Access Option Quarterly Monthly Continuous Monitor User Roles Option Quarterly Monthly Continuous Monitor Master Data Option Option Continuous Continuous Monitor Configurations Option Annually Quarterly Continuous Monitor Transactions Option Annually Quarterly Continuous Monitor Database Access Option Option Quarterly Continuous Smart Controls Workbench™ DataProbe - Risk Discovery and Control Design Single User Five User Ten User Fifty User Access Controls 50 100 100 100 Transaction Controls Option 5 10 20 Configuration Controls Option 5 50 50 Master Data Controls Option Option 3 5 Worklfow Controls Option Option Option 5 Service Levels Response Time 5 business days 8 Hrs. 4 Hrs. 2 Hrs. Service Window 8AM – 5PM 8AM – 5PM 6AM – 6PM 24x5 Supplemental Work Market Rate 10% discount 15% discount 20% discount ERP Security and Controls Management Service Preference Agreement (SPA) for Risk Treatment
  • 2. Mangement Controls Conceirge Leading experts with Audit and Compliance experience at public companies. Accreted Professionals with CPA, CIA and CISA Credentials. GRC experts with a combined experience at more than 200 enterprise clients in the past 10 years. Authored the first book on Oracle GRC. Experts also include certified IT analysts, system administrators and DBAs. Service Hours Total hours available per period to perform Control Concierge services excluding training sessions. SPA Client Service Manager is responsible for all work actions and effectively“owns”all aspects of SPA service delivery. The CSM works with the client to schedule work based on requirements. To ensure that all issues are addressed, issues are tracked and monitored in the Customer Portal – FulcrumACTS. Any member of the team can log an issue in FulcrumACTS. The SPA CSM will track and report on all issues. Issues will be classified by priority, criticality, and resolution period. The SPA CSM and Client SPA Contact review status of all issues on a periodic basis. Insight – Whitepapers, Peer Round tables Learn from our real world experience with assisting clients across all major industries, company sizes and geographic regions. Training FulcrumWay experts deliver live two hour Web-based training courses on a wide variety of Governance, Risk and Compliance management topics and systems. These essential training resources can help Internal Auditors, IT Managers, Financial Managers, Business Control Owners and other professionals get up to speed on the latest knowledge and GRC best practices. Management Risk Assessment Risk assessment includes Enterprise and IT assessment of risk based on FulcrumWay Risk Advisory Controls Catalog. Enterprise assessment includes a survey of selected employees, a weighted risk rating and a control certification such as SOX 302. The IT assessment includes segregation of duty, master data and change controls testing based on data provide by the client through scripts and data extraction tools such as DataProbeTM . Controls Software Management Perform technical maintenance and system administration tasks based on the SPA service level to ensure that the controls monitoring software and reports generate accurate and timely incidents for management actions. Monitor Users, Roles, Master Data, Configurations, Transactions, DB Monitor segregation of duty (SOD) and access policy violations by user and application roles. Monitor changes to sensitive attributes in master data objects such as supplier bank accounts, customer credit limits, etc. Monitor application configuration settings that impact financial reporting and operations. Monitor suspicious transactions such as split PO, duplicate payments to suppliers. Monitor users with access to database Smart Controls Workbench Discover weak controls and unmitigated risks using Dataprobe, a Windows based application risk analytics tool. Add new “smart”controls where the standard application controls are ineffective. For example, monitor all changes to the 3-way match setting in Payables, or Journal Entries reversed over a threshold amount. Download control templates from FulcrumWay Smart Cloud and enable business control managers to easily adjust them in controls workbench to fit their risk tolerance levels Response Time SPA clients use the FulcrumACTS (FACTs) system for issue management and tracking that immediately notifies the assigned support analyst of the issue, with follow-ups scheduled according to the designated service level outlined in the agreement. Service Window Service window is the time duration when the analysts are available to review and respond to client issues and tasks. Supplemental Work Supplemental work will be performed upon request for our SPA clients. A FulcrumWay Application Analyst will submit a work order for the supplemental work that will outline the tasks and estimated time effort. Upon approval of the work order by the client’s Application Manager, FulcrumWay will initiate the work effort in accordance with the business requirements. Supplemental work will be billed at the following hourly rates subject to SPA level discounts. Advanced Controls Lab Access FulcrumWay hosts and maintains ERP Applications, GRC Software, Controls Catalog and Risk Management Tools for our clients to test drive each solution. Access to these services and software enable SPA clients to confirm the business case and the most optimal approach for meeting the business needs before investing internal resources to implement the selected solution(s). Industry Events Discount Receive discounts on travel costs and registration fees to GRC, Audit, and IT events including: OAUG Client Dinner, Open World GRC Round Table, IIA, ISACA, Gartner, Compliance Week, and others. Annual Fees Annual Fee is due upon signed agreement. Client has the option to change the services during the contract period. Client can upgrade the SPA level by paying the difference. However, the fee is non-refundable if client downgrades the SPA. FulcrumWay reserves the right to change its pricing from time to time, provided that no such change will be effective until at least thirty (30) days after FulcrumWay has given the Customer written notice of such change. One Time Setup Fee The setup fee includes onsite review of client processes, controls, systems and audit issues to determine the scope of Service Level Agreement (SLA). Clients that sign-up for the SPA services within 60 days of the initial deployment/engagement can avoid the Setup Fee. Description of Service Options