Ranga Bodla Governance, Risk & Compliance Solution Marketing

Similar documents
Detect. Resolve. Prevent. Assure.

Achieve Continuous Compliance via Business Service Management (BSM)

<Insert Picture Here> Hardware And Software Engineered To Work Together

Leadership Insights: Productivitiy and Innovation. Folia Grace, VP Application Product Marketing November, 2011

Leadership Insights: Productivitiy and Innovation. Karsten Roigk, Vice President Applications Strategy & Sales Support Budapest, November 2011

Leadership Insights: Productivitiy and Innovation

Smart strategies for difficult times - Oracle roadmap to management excellence

Compliance in Multiple Regulatory Settings. a Holistic Approach

DRAFT. Fusion ERP Cloud Service October Oracle Fusion ERP Cloud Service. Magdalene Ritter

Oracle Business Intelligence Applications. Kostiantyn Stupak

How to leverage Fusion Financials (New Implementation vs. Coexistence)

A Financial Executive s Guide to Internal Controls & Fraud Prevention in the Cloud

41880 Introduction to Hyperion Financial Management. Mike Malwitz Director Product Strategy Oracle Enterprise Performance Management

Oracle Fusion Applications Overview

The Next Level of Controls Automation: How you can fully automate controls testing in financial systems by combining MetricStream and IRC

Cisco Tidal Intelligent Automation for SAP

Take Identity and Access Management to the Next Level Securely. Matthew Pecorelli

Rapidly Reduce Segregation of Duty Violations in Oracle EBS R12 Responsibilities Session ID#: 15042

1 Copyright 2012, Oracle and/or its affiliates. All rights reserved.

Agenda. Manage the Risk of Inefficiency and Occupational Fraud in Day-to-Day Business Processes

The New, Extended Oracle Business Intelligence - A System for Enterprise Performance Management. Gavin Dupre Director, BI Sales Consulting EMEA

Maxim Chuprunov. Auditing and. GRC Automation. in SAP. ^ Springer

Secure Your ERP Environment with Automated Controls Naomi Iseri,Sr. GRC Solution Consultant

Procurement and Spend Analytics

Infor Risk & Compliance Monitor and control risk across your business

Continuous Controls Monitoring for Transactions: The Next Frontier for GRC Automation

Taking a Global, Value Added Approach to Compliance: Designing, Automating and Implementing an Integrated Controls Management Process

2008 Oracle Corporation

Implementing a Service Management Architecture

2008 Oracle Corporation

Service Centric IT Integration. Chris Flynn Service Level Manager BMC Software, Inc

Business Service Management IT Service Management Solution Juraj Polak IBM Tivoli Software

Compliance Management Solutions from Novell Insert Presenter's Name (16pt)

Governance, Risk, and Compliance

AGENDA USING CONTINUOUS CONTROLS MONITORING TO MAXIMIZE P2P CONTROLS & RISK PREVENTION. Welcome! 60-second FISCAL Overview. Change in Purchase-to-Pay

Tony Wessels Vice President, Marketing Coupa

Start your SAP Optimization Effort Yesterday: A 10-minute guide to the SAP Optimization process for an Enterprise

IT Strategic Plan Portland Community College 2017 Office of the CIO

SAP BusinessObjects Innovation and Standardization: The Yin and Yang of BI

IT Strategic Plan Portland Community College 2017 Office of the CIO

Internal Controls Optimization

JD Edwards EnterpriseOne Financial Management Overview

At the Heart of Connected Manufacturing

Beyond ERP Transformation

SAP Road Map for Governance, Risk, and Compliance Solutions

SAP HANA Stephan Elster April SAP AG. All rights reserved. 1

Leverage T echnology: Turn Risk into Opportunity

Oracle OpenWorld 2018

Michael Diet Director, Intensum Luxembourg

Software as a Service: Oracle s perspective

Infosys: Treating Governance and Compliance Strategically with SAP Access Control

TRANSFORMING INSURANCE

Drive Innovation in Capital Markets, Simplify Trading, and Reduce Cost

Financial Performance Management for Midsize Companies. Chris Evers ecapital Advisors Jean Nitchals ecapital Advisors

Distributed Order Orchestration Overview. Oracle Team

Digitalizing Procurement for Midsize Companies: The First Step in Doing More with Less

SAP BusinessObjects The Power of Business Intelligence to Transform the Way the World Works

Alberto M. Becerra Microsoft Dynamics 365

Master Data Governance & SAP Information Steward Integration. Jens Sauer, SAP Switzerland September 25 th, 2013

III BSc (CS) [ ] SEMESTER - VI ELECTIVE:ENTERPRISE RESOURCE PLANNING - 607U5 Multiple Choice Questions.

Enhancing. PeopleSoft Applications With Oracle Fusion Middleware

Easy Flow-Based Reporting

LEADERSHIP INSIGHTS: PRODUCTIVITY AND INNOVATION

Banking Portfolio 2016 V.11

Transforming Procurement with Oracle Business Intelligence Cloud Services (BICS)

Oracle Fundtech Sierra Atlantic. Seamless STP TM. End-to-End Corporate-to-Bank STP Payments

An Introduction to Oracle Business Intelligence (BI) Platform NYOUG Sep 21, Shyam Varan Nath Oracle Corporation

Oracle Cloud Application Technology platform

1 Building an Identity Management Business Case. 2 Agenda. 3 Business Challenges

Bose and SAP NetWeaver. Andy Nemtzow Director Corporate Enterprise Systems 3/15/05

PeopleSoft Enterprise and Oracle Fusion MiddleWare. Adam J. Laine Innowave Technology

Why Oracle GRC with every E-Business Suite Upgrade

Leverage T echnology: July 19 th, 2013 Adil Khan. Move Your Business Forward. Copyright. Fulcrum Information Technology, Inc.

Application Lifecycle Management for SAP Powered by IBM Rational

Oracle Buys Primavera Creates First, Comprehensive Enterprise Project Portfolio Management Solution for Project-intensive Industries

NetSuite Software Case Studies. Copyright 2017, Oracle and/or its affiliates. All rights reserved.

Operational Excellence with an Integrated Supply Chain

An Enterprise Resource Planning Solution for Mill Products Companies

Customer COE Hybrid Solutions Cloud (SaaS) / OnPremise Challenges Michael Zöller, SAP SE, Mission Control Center (MCC) EMEA Cloud Deployment Support

Continuous Auditing / Continuous Monitoring to Manage Risk and Performance

PEOPLESOFT ENTERPRISE UPK PRE-BUILT CONTENT FOR: FINANCIALS, ESA AND EPM 9.0

Proactively Managing ERP Risks. January 7, 2010

Contents. OneAccess Value. SAP Security best Practices. Process Workflow. Functional / Demo

Partnering for Success: Oracle s Strategy

A Modern Cloud is Complete By Design

SAP NetWeaver Service Select for Master Data Management. Tuesday October 26 th 2004

Prepare for a more efficient SAP implementation: Take data issues off the critical path

D N A o f t e c h n o l o g y i n b u s i n e s s i s c o n f i d e n c e

ORACLE CLOUD FOR FINANCE

The Path to S/4HANA: Transition Scenarios and Best Practices

Introduction for Oracle NetSuite

LIST OF SAP SOLUTIONS

Oracle Business Intelligence Applications Global Price List Component Pricing March 10, 2017

Oracle Real-Time Decisions (RTD) Ecommerce Interaction Management Use Case

Actual4Test. Actual4test - actual test exam dumps-pass for IT exams

Upgrade Strategies for Small and Midsize Businesses

1 Building an Identity Management Business Case. 2 Agenda. 3 Business Challenges

SAP Strategy. RYU, SEYUL / SAP Korea

ORACLE FUSION FINANCIALS CLOUD SERVICE

Snow optimizer for SAP software

Transcription:

Effective Cross-Enterprise Governance, Risk and Compliance: How SAP helps customers achieve a unified approach to GRC Ranga Bodla Governance, Risk & Compliance Solution Marketing

Speakers Ranga Bodla, Sr. Director, Governance, Risk and Compliance SAP Ranga.bodla@sap.com 650.796.8252 Jerry Helton, Sr. Director, Greenlight Technologies Jerry.helton@greenlightcorp.net 407.405.6869 SAP 2008 / Page 2

Agenda Objective overview of how to successfully prioritize, manage and analyze multi-platform compliance initiatives with real life case studies. Attendees will develop an understanding of leading best practices to help organizations stay compliant and manage enterprise risk Attendees will also get an overview of various solutions to achieve a unified view of enterprise compliance

GRC often crosses across the enterprise SOX JSOX FDA ROHS WEEE Revenue recognition Credit risk OSHA MSHA Kyoto U.S. Germany Japan U.K. France China Canada India Governance Risk mgmt. Compliance Governance Compliance Risk mgmt. Governance Compliance Compliance Compliance Risk mgmt. Risk Mgmt. mgmt. Governance Risk mgmt. Risk mgmt. Board of directors Finance Legal Sales Contracts HR Controller IT Policy mgmt. Audit and compliance Treasury HCM Financials Manufacturing Sourcing Supply chain Sales Marketing Service Billing SAP 2008, /4

The IT Management Nightmare CMO CSO VP Customer Service VP R&D VP Mfg / COO VP Supply Chain / COO VP Procurement VP HR CIO CFO SOX NERC Customs Privacy Anti-spam Security Privacy ISO Clean Water REACH Waste / Superfund (SARA) FDA Clean Air RCRA FERC FAA OSHA FMLA ERISA ISO/IEC 27001 AS8015-2005 HIPAA GLBA PCI DSS Basel-II OMB A-123 Labor, Environmental, Health, Industry Specific Financial SAP 2008 / Page 5 All areas of the organization are affected by Regulatory Requirements IT is forced to come up with approaches for all of these driving the cost of compliance Proof of Compliance is required Business Processes are the connector across silo organizations

Typical Approach to Addressing GRC GRC is layered on top of and/or separate from the core business processes PORTAL WORK FLOW BUSINESS INTELLIGENCE ARCHIVE BUSINESS INTELLIGENCE WORK FLOW PORTAL BUSINESS INTELLIGENCE WORK FLOW ARCHIVE USER MANAGEMENT BUSINESS INTELLIGENCE USER MANAGEMENT ARCHIVE WORK FLOW People Middleware SAP 2009 / Page 6

Unified Approach Optimizes Performance Embedding GRC in the Process PORTAL WORK FLOW BUSINESS INTELLIGENCE ARCHIVE BUSINESS INTELLIGENCE WORK FLOW GRC Management By Exception: Proactive & Preventative PORTAL BUSINESS INTELLIGENCE WORK FLOW ARCHIVE USER MANAGEMENT BUSINESS INTELLIGENCE USER MANAGEMENT ARCHIVE WORK FLOW People Middleware SAP 2009 / Page 7

Effective GRC must go across the enterprise Compliance Across Heterogeneous Applications and Systems SAP Cross-Application Support Hire-to-Retire Reconcile-to-Report Procure-to-Pay Order-to-Cash Cross-Functional Production-to-Delivery PeopleSoft Cross-Application

SAP BusinessObjects Solutions for GRC Maximize Strategic and Operational Performance Increase visibility across risk and compliance initiatives Standardize on a common language for risk and compliance Align controls with strategic objectives Monitor performance against requirements Reduce cost Design and implement automated controls to support any framework Move to automated testing of controls Manage the effectiveness of controls at any time, across any system Governance Controls & Compliance Risk Management Manage risk across the enterprise Unify management of strategic, financial, operational and compliance risks Identify and manage risks before they impact the business Proactively monitor risk across end-to-end business processes SAP 2008 / Page 9

Leverage GRC Across SAP and Non-SAP GRC Security Models False Positives ResQ Ad-hoc Reports Controls Content Change Controls Mitigating Controls Business Suite ORCL PSFT JDE HYP Siebel Baan Legacy Real time Integration across all Enterprise Systems

Greenlight Technologies Trusted co-development partner providing leading GRC control automation solutions since 2004 Over 70 Enterprise customers GRC-Middleware solution Industry s most comprehensive automated controls portfolio Oracle, Peoplesoft, Hyperion, JDE, Ariba, I-many and Legacy systems Real-Time, cross platform continuous compliance SAP Relationship Certified SAP software partner Solutions powered by NetWeaver

SAP-Greenlight Partnership Greenlight is global provider for real time, cross platform connectors for SAP GRC Access Control Connectors RTAs Automated GRC Controls Legacy Systems Market Specific Application Specific RTA Design Studio Over 25 Connectors Oracle, PSFT, JDE Hyperion, Siebel, Ariba, Lawson, And multiple third party applications HIPAA FDA FCPA NERC Basel II Order to Cash Procure to Pay GR to production Master Data Transaction Controls Inventory Warehouse and QA Hire to Retire ResQ SOD Risk Analysis Compliant User Provisioning Business Transaction Controls Super User Management

Solution Approach Consolidation and monitoring of enterprise access risk across non SAP systems all from a SINGLE SAP GRC platform Leverage SAP GRC and Greenlight connectors integration to have unified, preventive, automated compliance management for financial andday to day operational controls Real time architecture enables alerts and preventive access controls STOP the violations before they occur Rollout Plan Security setups assessment, role/task based security definitions, user groups etc. SOD risk identification and analysis (ex. Financial, Charge-back, Contracts, FDA risks for Pharma) Residual risk analysis Risk mitigation process, business users empowerment Utilize RTA Design Studio to deploy SOD and Compliant User Provisioning connector for any/all future systems

RTA Design Studio Greenlight introduces a New, Innovative, Patent Pending Technology

SAP & Greenlight Case Study # 1 NEEDS: Significant non SAP landscape Oracle, Hyperion, Legacy systems Automate SOD risk analysis, compliant provisioning and superuser access to non SAP systems Saving of time and resource costs >1700 roles in non SAP (Oracle) makes manual analysis impossible 19,000 users across 7 SAP landscapes including R/3, APO, HR, and SEM RESULTS: Implemented Greenlight Real Time Agent (RTA) solutions for SOD risk analysis, compliant provisioning External auditor helped validate rule set Clean Access process, Moved from detective to preventive Expanding the coverage to Legacy systems and ResQ (superuser-oracle)

SAP & Greenlight Case Study # 2 NEEDS: Significant non SAP landscape Oracle, JDE, Bookmaster and 20+ Legacy systems Integrate SAP GRC with non SAP systems for SOD risk analysis and superuser access for Oracle Automate legacy manual batch extraction for SAP GRC Reliable Audits, Saving of time and resource costs >1400 roles in system (Oracle) RESULTS: Implemented Greenlight RTA solutions for SOD risk analysis for Oracle Clean SOD risk analysis, results validated next phase includes ResQ (Oracle- Superuser) and Greenlight Design Studio for Legacy systems RTAs Automated batch extraction 15,000 users within Oracle

Proven Customer Savings in Cross Platform integration Delivering Significant Reductions in Cost and Labor Reduction in time spent on external/internal audit Reduction in internal/ external audit costs 28% 35% Reduction in time spent managing authorization risk Reduction in costs on managing user authorization risk 36% 44% Reduction in audit report findings for security Reduction in time cleaning up audit report findings for security 41% 39% 0% 5% 10% 15% 20% 25% 30% 35% 40% 45% Average Value Reported

Value Proposition of Integrated GRC Consistent and Real time visibility of enterprise risk and compliance throughout the enterprise to achieve preventive compliance SOD Risk analysis, compliant provisioning across the enterprise systems from SAP GRC Real time, preventive, Cross-System compliance Optimized and efficient audits SIGNIFICANT savings of costs and time Expanded audit scope and transparency for all the business processes and systems within the company Immediate ROI, Reliable and Consistent compliance Leverage existing IT investment - No additional Hardware

Getting Started: GreenLight Remote Risk Assessment No Cost, No Risk, Partner-Enabled GRC Sales Opportunity Demonstrate the value of cross-platform GRC using the customer s own data Real Time Cross Platform SAP GRC and SOD risks (GreenLight s Access Control demo environment) Supported by both SAP and GreenLight technical resources Jerry Helton Senior Director, Markets Development 270 South Main Street Flemington NJ 08822 Tel: 908-782-5700 x 122 Cell: 407-405-6869 Jerry.helton@greenlightcorp.net

Questions

Contact Info Ranga Bodla, Sr. Director, Governance, Risk and Compliance SAP Ranga.bodla@sap.com 650.796.8252 Jerry Helton, Sr. Director, Greenlight Technologies Jerry.helton@greenlightcorp.net 407.405.6869 SAP 2008 / Page 21