Case study – Chemical industry
Client
- Chemical industry
- 17 companies in the group
- Ok. Around 1,700 users of the smartGRC system
- SAP systems: ECC, BW, PI, CRM and HCM
Challenge
- Automation of the process of assigning authorizations to users in SAP systems.
- High audit requirements in terms of segregation of duties.
- The need to implement a preventive SOD risk analysis at the application stage.
- A new concept of roles.
- Tool support for roles in the Menu-Org convention.
- No role guidelines, no role owners and no permissions.
Effect
- Building the Segregation of Duties matrix for permissions.
- Forcing an analysis of applications for granting the SOD matrix.
- Shortening the time to assign rights to several hours.
- Central roles repository (modules: fi, SD, PP, PM, QM, MM, WM, LE-TRA, HR and Re.
- Implementation of modules: smartSoD, smartWorkflow, smartArchitect.
- Integration with REMEDY.
Characteristics of the project
- Agile methodology for product delivery.
- 4 months to prepare prototype application, UAT tests and training.
- 5 persons in the GRC team.
- 4 persons involved on the client’s side.
- Get to know the customer – order a reference appointment.
- Get to know the implementation costs – ask for a discussion with a GRC.