2008 May 28 9:48 AM
Dear All,
I am trying to do a project proposal for my company and was wondering if any one of you could share your experience in writing such a document. Any examples would be greatly appreciated. Thanks.
Dear All,
I am trying to do a project proposal for my company and was wondering if any one of you could share your experience in writing such a document. Any examples would be greatly appreciated. Thanks.
2008 May 28 12:21 PM
Hi Meng,
In GRC suite, you have different things. Can you tell me which one you are planning to implement?
Like GRC Access Control is one part which has RoleExpert, ComplianceCalibrator, AccessEnforcer and FireFighter
Regards,
Faisal
2008 May 28 4:01 PM
Hi Faisal,
thanks for the question. As a start, it will be Access Control.
Regards
Charles
2008 Jun 17 8:50 AM
Hi Meng,
Please look at your company requirement.which should, be implemented.
e.g if you have users asking tcodes every now and then , then you can give implement firefighter and give them FFID in case of emergencies.
hope this helps
2008 Jun 17 9:11 AM
Thanks for your input. Yes the FireFighter (Superuser Privilege Management) will be one of the submodules of Access Control which will be in scope inview of the effort required to do this activity manually.
2008 Jun 24 10:18 PM
Hi Meng,
I think you need to clarify a few things here. Access Control is the name that SAP has given to the Virsa suite of products that they have rolled into the GRC suite. Regardless, the question is, where does the customer environment stand? Is it already compliant?
If no compliance related analysis has been done on the current environment, and you don't know that the environment is, in fact, SOD free, then implementing Compliance Calibrator first would make sense. Subsequently, Firefighter would come into play, and once the SOD issues have been properly addressed, then Access Enforcer and Role Expert can come into play.
I hope this gives you some ideas.
Thanks,
Santosh Krishnan
2008 Jun 25 6:26 AM
This document [GRC Access Control - Access Risk Management Guide|https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/80c094de-90aa-2910-02b8-e31a6f5ff0c2] contains helpful advice when starting a segregation-of-duties GRC project.
2008 Jun 26 2:19 AM
Hi Alex,
yes, your link provides very useful information. It helps to give me an idea what to expect during the requirements planning phase meetings. But I think could also be used for implementation as well.
Thanks !
2008 Jul 30 2:15 PM
Alex
I am not able to access the GRC - Risk guide that you had set as a hyperlink.
Can you send this again. It will be beneficial for us.
Thanks
Kee
2024 Dec 09 9:07 AM
This link is not accessible can you please share the document or a new link?
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |