Business Process: Are the high level process areas where you want to report risk analysis. Examples of business process are Finance, Sales and Distribution, Production Planning, Human Resources Etc

Function:  Is grouping of one or more actions which are related to each other. Example functional area grouping could be vendor Master Maintain, Material master Maintain etc.  These functions will have all the transactions relevant to vendor master and transaction relevant to material master.

Risk: Is identified as material, physical loss, fraud, disruption or production loss which could occur due to and individuals who could take advantage of the situation.  The risk are generated due to conflicting function. Example risk could be “ Maintain Fictitious G/L Account and hide activity Via postings

Action: is an activity performed in the system in order to accomplish a specific function.  Example of a action could be Create Vendor master, Create Customer master, approve payments etc

Permissions:   Authorizations that allows the users to perform the particular activity in the system. Example Mass Update Material Master

System:  Refers to the system in which the analysis will be performed.  The system could be SAP ECC, SAP SRM SAP CRM etc

OneAccess-UserManager also helps you manage the complex documenting, testing, process control, and sign-off requirements mandated by Sarbanes-Oxley sections 302, 404, and 409

Selva Kumar

Vice President- SAP Practice

OneAccess-UserManager for SAP

SAP Certified-Powered by Netweaver

http://www.softsquare.biz/oneaccess/

selva@softsquare.biz

Phone: 1 877 717 5487

Automate and Meditate

VN:F [1.9.13_1145]
Rating: 2.5/5 (2 votes cast)
SAP GRC Risk Analysis and Remediation- Key terms, 2.5 out of 5 based on 2 ratings