cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

IDM Business Role GRC Risk analysis at Role Level

joseromero
Explorer
0 Likes
758

Hi experts,

We are integrating SAP IDM with GRC,

Do you now if in the GRC 12 is capable of doing risk analysis at IDM Business Role level with the IDM8.0 version ? If so, does the mitigation at IDM Business Role level, would be reflected at user level?

As per my understanding the Standard IDM GRC integration only performs risk analysis at user level, is that right?

Regards,

Jose

View Entire Topic
former_member431321
Participant
0 Likes

Hi Jose Luis Romeo,

As I understand, in general GRC AC_ IDM integration scenario, the Business Role is created in GRC AC.

And when you create any Business Role in GRC AC, the SoD Risk analysis must run.

If there is any SOD risk in Business Role, you should remediate(remove some single or composite role from the Business Role)

or mitigate(setup alternative monitoring method like send notification to someone) the Business Role.

Like same way, any composite role or single role should not have any SOD risk inside.

I hope this help.

dongsu