GRC300. SAP BusinessObjects Access Control Implementation and Configuration COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

Similar documents
GRC300. SAP Access Control Implementation and Configuration COURSE OUTLINE. Course Version: 16 Course Duration: 5 Day(s)

PLM310 Maintenance and Service Processing: Preventive

EWM130. Production Integration with SAP EWM COURSE OUTLINE. Course Version: 16 Course Duration: 2 Day(s)

GTS200. Configuring SAP Global Trade Services COURSE OUTLINE. Course Version: 15 Course Duration: 3 Day(s)

BOE310. SAP BusinessObjects Business Intelligence Platform: Administration and Security COURSE OUTLINE. Course Version: 16 Course Duration: 2 Day(s)

PLM315 Customizing Maintenance Processing

ADM325. Software Logistics for SAP S/4HANA and SAP Business Suite COURSE OUTLINE. Course Version: 18 Course Duration: 5 Day(s)

DS50. Managing Data Quality with SAP Information Steward COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

S4F05. Asset Accounting in SAP S/4HANA: Customizing and Conversion COURSE OUTLINE. Course Version: 05 Course Duration: 2 Day(s)

S4F23. Product Cost Planning in SAP S/4HANA COURSE OUTLINE. Course Version: 06 Course Duration: 3 Day(s)

BPC420. SAP Business Planning and Consolidation, Version for SAP NetWeaver: Standard Administration and Planning Configuration COURSE OUTLINE

BOE330. SAP BusinessObjects Business Intelligence Platform: Designing and Deploying a Solution COURSE OUTLINE

PLM412. Quality Planning and Inspection COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

PLM560. SAP Product Lifecycle Costing COURSE OUTLINE. Course Version: 02 Course Duration: 2 Day(s)

HR110. Business Processes in HCM Payroll COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

S4F28. Profit Center Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 06 Course Duration: 2 Day(s)

BIT300 Integration Technology ALE

S4210. Basic Data for Manufacturing and Product Management COURSE OUTLINE. Course Version: 06 Course Duration: 5 Day(s)

PLM210. Master Data Configuration in SAP Project System COURSE OUTLINE. Course Version: 16 Course Duration: 2 Day(s)

THR94. SAP SuccessFactors Employee Central Time Off COURSE OUTLINE. Course Version: 64 Course Duration: 3 Day(s)

S4525. Consumption-Based Planning and Forecasting in SAP S/4HANA COURSE OUTLINE. Course Version: 09 Course Duration:

S4F01 Financial Accounting in SAP S/4HANA for SAP ERP FI Professionals

S4F01. Financial Accounting in SAP S/ 4HANA COURSE OUTLINE. Course Version: 03 Course Duration: 2 Day(s)

S4F29 Profitability Analysis in SAP S/4HANA

S4F00. Overview of Financials in SAP S/4HANA COURSE OUTLINE. Course Version: 08 Course Duration: 2 Day(s)

S4H00 SAP S/4HANA Overview

S4H00 S/4HANA Overview

C4C14 SAP Service Cloud

FS240 Shared Processes for Loans and Deposits Management in Banking Services from SAP 9.0

S4F01 Financial Accounting in SAP S/4HANA for SAP ERP FI Professionals

S4F03. Conversion of Accounting to SAP S/4HANA COURSE OUTLINE. Course Version: 08 Course Duration: 2 Day(s)

S4H01. Introduction to SAP S/4HANA COURSE OUTLINE. Course Version: 03 Course Duration: 2 Day(s)

ADM328. SAP S/4HANA Conversion and SAP System Upgrade COURSE OUTLINE. Course Version: 18 Course Duration: 5 Day(s)

TM410. Charge Calculation Advanced & Internal Settlement in SAP Transportation Management COURSE OUTLINE. Course Version: 16 Course Duration: 2 Day(s)

FS250. Bank Analyzer Overview in Banking Services from SAP 9.0 COURSE OUTLINE. Course Version: 15 Course Duration: 1 Day(s)

S4615. SAP S/4HANA Sales - Invoice Processing COURSE OUTLINE. Course Version: 08 Course Duration: Minutes

PLM101 Overview PLMWebUI

S4F40 Cash Management in SAP S/4HANA

S4F02. Management Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 05 Course Duration: 3 Day(s)

S4130. Business Processes in S/4HANA Asset Management COURSE OUTLINE. Course Version: 05 Course Duration: 5 Day(s)

S4F20. Business Processes in Management Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 05 Course Duration: 5 Day(s)

S4F51. Customizing Treasury and Risk Management in SAP S/4HANA COURSE OUTLINE. Course Version: 09 Course Duration:

S4DEV. Hands-on Introduction to Application Programming on SAP S/4HANA COURSE OUTLINE. Course Version: 10 Course Duration: 3 Day(s)

UX102. Introduction to SAP User Experience UIs for Application Consultants COURSE OUTLINE. Course Version: 03 Course Duration: 2 Day(s)

BPC420. SAP Business Planning and Consolidation 11.0 version for SAP BW/4HANA: Administration and Planning Configuration COURSE OUTLINE

FS242. Deposits Management in Banking Services from SAP 9.0 COURSE OUTLINE. Course Version: 15 Course Duration: 4 Day(s)

TM120. Optimizer Planning and Execution in SAP Transportation Management COURSE OUTLINE. Course Version: 16 Course Duration: 5 Day(s)

SM255. Change Request Management with SAP Solution Manager Configuration COURSE OUTLINE. Course Version: 18 Course Duration: 5 Day(s)

S4F12. Basics of Customizing for Financial Accounting: GL, AP, AR in SAP S/ 4HANA COURSE OUTLINE. Course Version: 03 Course Duration: 5 Day(s)

S4F80 SAP BPC Optimized for SAP S/4HANA

S4225. SAP S/4HANA Production Orders COURSE OUTLINE. Course Version: 09 Course Duration: 5 Day(s)

FS253. Bank Analyzer Infrastructure in Banking Services from SAP 8.0 COURSE OUTLINE. Course Version: 10 Course Duration: 3 Day(s)

S4SD1. SAP S/4HANA Sales - Functions & Innovations COURSE OUTLINE. Course Version: 05 Course Duration: 1 Day(s)

S4F22. Cost Center and Internal Order Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 05 Course Duration: 5 Day(s)

SM72D. SAP Solution Manager 7.2 Delta Training COURSE OUTLINE. Course Version: 17 Course Duration: 3 Day(s)

C4C12 SAP Hybris Sales Cloud

S4F41. Implementing Cash Management in SAP S/4HANA COURSE OUTLINE. Course Version: 06 Course Duration: 5 Day(s)

ACT200 Agile Project Delivery

ACT200 Agile Project Delivery

S4500. Business Processes in SAP S/4HANA Sourcing & Procurement COURSE OUTLINE. Course Version: 09 Course Duration:

BIT665 SAP Information Lifecycle Management (SAP ILM)

S4200 Business Processes in SAP S/4HANA Manufacturing

S4F80 SAP BPC Optimized for SAP S/4HANA

UX102. Introduction to SAP User Experience UIs for Application Consultants COURSE OUTLINE. Course Version: 02 Course Duration: 2 Day(s)

S4220 Production Planning in SAP S/4HANA

C4C10. SAP Hybris Cloud for Customer Administration COURSE OUTLINE. Course Version: 20 Course Duration: 3 Day(s)

ADM100 AS ABAP Administration I

E2E600. Implementation Projects with SAP Solution Manager 7.2 COURSE OUTLINE. Course Version: 18 Course Duration: 5 Day(s)

CLD900. SAP Cloud Platform, Integration Service, Overview COURSE OUTLINE. Course Version: 16 Course Duration: 3 Day(s)

AC245 SAP Convergent Invoicing

S4MA1. SAP S/4HANA Manufacturing - Functions & Innovations COURSE OUTLINE. Course Version: 09 Course Duration:

S4F22. Cost Center and Internal Order Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 08 Course Duration: 5 Day(s)

GTS100 SAP Global Trade Services

S4H01 SAP Business Suite to SAP S/4HANA Delta

SAPX03. SAP Fiori Implementation, Administration and Configuration COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

BOAN10. SAP BusinessObjects Analysis For Microsoft Office COURSE OUTLINE. Course Version: 17 Course Duration: 2 Day(s)

S4H100. SAP S/4HANA Implementation Scenarios COURSE OUTLINE. Course Version: 05 Course Duration: 3 Day(s)

IBP200. SAP Integrated Business Planning - Platform Features and Customizing COURSE OUTLINE. Course Version: 16 Course Duration: 5 Day(s)

PLM200. Business Processes in Project Management COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

UX100 SAP Fiori - Foundation

S4F10. Business Processes in Financial Accounting in SAP S/4HANA COURSE OUTLINE. Course Version: 08 Course Duration: 5 Day(s)

C4C12 SAP Sales Cloud

C4C12 SAP Sales Cloud

S4100. Business Processes in SAP S/4HANA Product Development COURSE OUTLINE. Course Version: 05 Course Duration: 5 Day(s)

AC233. SAP Hybris Billing: Sales & Order Management in SAP CRM COURSE OUTLINE. Course Version: 15 Course Duration: 4 Day(s)

TERP10. SAP ERP Integration of Business Processes COURSE OUTLINE. Course Version: 17 Course Duration: 10 Day(s)

TM140. SAP Transportation Management for LSP COURSE OUTLINE. Course Version: 16 Course Duration: 5 Day

BOCL01 SAP BusinessObjects Cloud

EWM110. Basic Customizing SAP Extended Warehouse Management COURSE OUTLINE. Course Version: 17 Course Duration:

PLM400 Quality Management

S4PR1 SAP S/4HANA Sourcing & Procurement - Functions & Innovations

S4EA1. SAP S/4HANA Asset Management - Functions and Innovations COURSE OUTLINE. Course Version: 05 Course Duration: 1 Day(s)

S4600 Business Processes in SAP S/4HANA Sales

S4600 Business Processes in SAP S/4HANA Sales

ADM920 SAP Identity Management

PAII10 SAP Predictive Analytics

S4PR1 SAP S/4HANA Sourcing & Procurement - Functions & Innovations

SAC01 SAP Analytics Cloud

S4F90 SAP Business Planning and Consolidation: Embedded Consolidation

E2E220. SAP Test Management Overview COURSE OUTLINE. Course Version: 17 Course Duration: 3 Day(s)

Transcription:

GRC300 SAP BusinessObjects Access Control 10.0 - Implementation and Configuration. COURSE OUTLINE Course Version: 15 Course Duration: 5 Day(s)

SAP Copyrights and Trademarks 2017 SAP SE or an SAP affiliate company. All rights reserved. No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP SE or an SAP affiliate company. SAP and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP SE (or an SAP affiliate company) in Germany and other countries. Please see http://global12.sap.com/corporate-en/legal/ copyright/index.epx for additional trademark information and notices. Some software products marketed by SAP SE and its distributors contain proprietary software components of other software vendors. National product specifications may vary. These materials are provided by SAP SE or an SAP affiliate company for informational purposes only, without representation or warranty of any kind, and SAP SE or its affiliated companies shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP SE or SAP affiliate company products and services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as constituting an additional warranty. In particular, SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this document or any related presentation, or to develop or release any functionality mentioned therein. This document, or any related presentation, and SAP SE s or its affiliated companies strategy and possible future developments, products, and/or platform directions and functionality are all subject to change and may be changed by SAP SE or its affiliated companies at any time for any reason without notice. The information in this document is not a commitment, promise, or legal obligation to deliver any material, code, or functionality. All forward-looking statements are subject to various risks and uncertainties that could cause actual results to differ materially from expectations. Readers are cautioned not to place undue reliance on these forward-looking statements, which speak only as of their dates, and they should not be relied upon in making purchasing decisions.

Typographic Conventions American English is the standard used in this handbook. The following typographic conventions are also used. This information is displayed in the instructor s presentation Demonstration Procedure Warning or Caution Hint Related or Additional Information Facilitated Discussion User interface control Example text Window title Example text Copyright. All rights reserved. iii

iv Copyright. All rights reserved.

Contents vii Course Overview 1 Unit 1: Introduction to SAP Access Control 1 Lesson: Discussing Business Challenges and Solutions 1 Lesson: Using SAP Access Control 3 Unit 2: Architecture, Security, and Authorizations 3 Lesson: Describing the System Architecture 3 Lesson: Describing Security and Authorizations 5 Unit 3: Authorization Risks and the SoD Management Process 5 Lesson: Identifying Authorization Risks 5 Lesson: Managing Risk by Segregating Duties 7 Unit 4: Shared Configuration Settings 7 Lesson: Configuring Shared GRC Settings 7 Lesson: Configuring Shared Access Control Settings 9 Unit 5: Access Control Repository 9 Lesson: Synchronizing Objects into the Repository 9 Lesson: Scheduling and Viewing Background Jobs 11 Unit 6: Business Rule Framework 11 Lesson: Creating Rules in the Business Rule Framework (BRF) 11 Lesson: Defining Business Rules 13 Unit 7: MSMP Workflow 13 Lesson: Describing Multi-Stage Multi-Path (MSMP) Workflow 13 Lesson: Maintaining MSMP Workflow: Part One 13 Lesson: Maintaining MSMP Workflow: Part Two 15 Unit 8: Analyze and Manage Risk 15 Lesson: Maintaining Shared Master Data 15 Lesson: Configuring and Maintaining the Rule Set 15 Lesson: Using and Configuring Audit Trail Tracking 15 Lesson: Using the Risk Analysis Framework 15 Lesson: Remediating Risks 16 Lesson: Mitigating Risks 16 Lesson: Mass Mitigating Copyright. All rights reserved. v

17 Unit 9: Emergency Access Management 17 Lesson: Managing Emergency Access 17 Lesson: Planning for Emergency Access 17 Lesson: Monitoring Emergency Access 19 Unit 10: Design and Manage Roles 19 Lesson: Configuring Role Management 19 Lesson: Configuring Role Methodology 19 Lesson: Planning for Technical Role Definition 19 Lesson: Planning for Business Role Definition 19 Lesson: Consolidating Roles through Role Mining 20 Lesson: Mass Managing Roles 21 Unit 11: Provision and Manage Users 21 Lesson: Defining User Provisioning 21 Lesson: Designing End User Personalization Forms 21 Lesson: Planning for User Access 21 Lesson: Requesting User Access Approval 23 Unit 12: Periodic Access Review Process 23 Lesson: Planning Periodic Review 23 Lesson: Monitoring Periodic Review 25 Unit 13: Reports and Custom Fields 25 Lesson: Working with the Reporting Framework 27 Unit 14: SAP Access Control Implementation 27 Lesson: Working with the Access Control Implementation Process 27 Lesson: Designing the Access Control Solution 27 Lesson: Planning Upgrade and Migration 27 Lesson: Configuring Access Control 27 Lesson: Implementing the Solution 27 Lesson: Optimizing and Enhancing the Solution vi Copyright. All rights reserved.

Course Overview TARGET AUDIENCE This course is intended for the following audiences: Data Consultant Development Consultant Industry / Business Analyst Consultant Support Consultant Technology Consultant Project Stakeholder System Administrator IT Support Super / Key / Power User Copyright. All rights reserved. vii

viii Copyright. All rights reserved.

UNIT 1 Introduction to SAP Access Control Lesson 1: Discussing Business Challenges and Solutions Describe business challenges and process integrations Discuss solution harmonization concepts Lesson 2: Using SAP Access Control Navigate the user interface and describe work center functionality Copyright. All rights reserved. 1

Unit 1: Introduction to SAP Access Control 2 Copyright. All rights reserved.

UNIT 2 Architecture, Security, and Authorizations Lesson 1: Describing the System Architecture Describe the SAP GRC architecture and landscape Describe the SAP Access Control 10.0 Architecture Lesson 2: Describing Security and Authorizations Describe object-level security, authorization requirements and delivered roles Copyright. All rights reserved. 3

Unit 2: Architecture, Security, and Authorizations 4 Copyright. All rights reserved.

UNIT 3 Authorization Risks and the SoD Management Process Lesson 1: Identifying Authorization Risks Identify authorization risks in the Purchase-to-Pay process Identify the risk of a person adjusting and approving payroll Lesson 2: Managing Risk by Segregating Duties Describe the main SoD Risk Management process and the roles that are involved to identify and resolve SoD issues Identify and classify risks during Phase One of the SoD Risk Management Process Describe SoD Risk Management Process Phase One, Step Two tasks: Rule building components and the delivered rule set Describe the steps for Phase Two of the SoD Risk Management process: Analysis, Remediation, and Mitigation Describe the tasks of Phase Three of the SoD Risk Management process to maintain ongoing compliance Copyright. All rights reserved. 5

Unit 3: Authorization Risks and the SoD Management Process 6 Copyright. All rights reserved.

UNIT 4 Shared Configuration Settings Lesson 1: Configuring Shared GRC Settings Configure the Integration Framework Lesson 2: Configuring Shared Access Control Settings Configure shared SAP Access Control settings Identify Business Configuration (BC) Sets Copyright. All rights reserved. 7

Unit 4: Shared Configuration Settings 8 Copyright. All rights reserved.

UNIT 5 Access Control Repository Lesson 1: Synchronizing Objects into the Repository Describe the SAP Access Control Repository and order of jobs Synchronize PFCG Authorization Data Synchronize profile, role, and user data Synchronize usage types into the SAP Access Control Repository Lesson 2: Scheduling and Viewing Background Jobs Schedule background jobs View background jobs Copyright. All rights reserved. 9

Unit 5: Access Control Repository 10 Copyright. All rights reserved.

UNIT 6 Business Rule Framework Lesson 1: Creating Rules in the Business Rule Framework (BRF) Discuss BRMS (Business Rules Management Systems) and BRFplus concepts Define workflow-related MSMP rules Lesson 2: Defining Business Rules Create rules using the BRFplus workbench Copyright. All rights reserved. 11

Unit 6: Business Rule Framework 12 Copyright. All rights reserved.

UNIT 7 MSMP Workflow Lesson 1: Describing Multi-Stage Multi-Path (MSMP) Workflow Describe MSMP workflow and configuration prerequisites Describe the main steps of the MSMP Workflow process Lesson 2: Maintaining MSMP Workflow: Part One Configure Process Global Settings Maintain rules for MSMP workflow Maintain agents for MSMP Workflow Maintain Notification Variables and Templates Maintain paths and stages for MSMP workflow Lesson 3: Maintaining MSMP Workflow: Part Two Map workflow routings Generate versions for MSMP Workflow Copyright. All rights reserved. 13

Unit 7: MSMP Workflow 14 Copyright. All rights reserved.

UNIT 8 Analyze and Manage Risk Lesson 1: Maintaining Shared Master Data Maintain shared organizations and organization views Describe how mitigating controls are shared and centrally assign owners Lesson 2: Configuring and Maintaining the Rule Set Configure Access Risk Analysis Maintain Access Rules Describe the workflow process for function maintenance Maintain Risks and Critical Access Rules Execute and monitor batch risk analysis Lesson 3: Using and Configuring Audit Trail Tracking Configure and track audit trails Lesson 4: Using the Risk Analysis Framework Perform risk analysis and dynamically customize analysis results Lesson 5: Remediating Risks Copyright. All rights reserved. 15

Unit 8: Analyze and Manage Risk Develop a risk remediation strategy Lesson 6: Mitigating Risks Mitigate risks on specific systems Create mitigating controls and assignments on specific systems Lesson 7: Mass Mitigating Mitigate large numbers of risks at one time 16 Copyright. All rights reserved.

UNIT 9 Emergency Access Management Lesson 1: Managing Emergency Access Describe Emergency Access architecture and maintenance tasks Perform firefighting on multiple client systems from a single console Lesson 2: Planning for Emergency Access Identify critical firefighting roles and assignments Maintain and Assign Firefighter IDs Maintain firefighting reason codes and track reason code usage Lesson 3: Monitoring Emergency Access Use firefighting reports to view session details, reason codes, and activity Use the Log Collector to fetch firefighting-related logs Use the Consolidated Log Report to segment or combine collected logs Copyright. All rights reserved. 17

Unit 9: Emergency Access Management 18 Copyright. All rights reserved.

UNIT 10 Design and Manage Roles Lesson 1: Configuring Role Management Describe configuration options specific to designing and managing roles Lesson 2: Configuring Role Methodology Configure Role Creation Methodology Configure a BRFplus rule for role methodology and approvers Assign Condition Group Type to BRFplus Application and Function Define Role Methodology process and steps Associate role methodology process to condition group Lesson 3: Planning for Technical Role Definition Define single roles (technical roles) and role mapping Document CUA Composite Roles and manage role authorizations Lesson 4: Planning for Business Role Definition Define business roles Lesson 5: Consolidating Roles through Role Mining Copyright. All rights reserved. 19

Unit 10: Design and Manage Roles Compare role authorizations and definitions, and view transaction usage Certify role content periodically Lesson 6: Mass Managing Roles Mass manage roles 20 Copyright. All rights reserved.

UNIT 11 Provision and Manage Users Lesson 1: Defining User Provisioning Configure settings to provision users Lesson 2: Designing End User Personalization Forms Configure end user personalization forms and access request templates Lesson 3: Planning for User Access Create a user access request Create an access request with a model user Create an access request with a template Create an access request from a copy Request an Organizational Assignment Lesson 4: Requesting User Access Approval Describe user access approval concepts and configuration settings Respond to access requests and review the audit log Copyright. All rights reserved. 21

Unit 11: Provision and Manage Users 22 Copyright. All rights reserved.

UNIT 12 Periodic Access Review Process Lesson 1: Planning Periodic Review Configure parameters for Periodic Access Review Requests Lesson 2: Monitoring Periodic Review Review user access risk using SoD review Periodically reaffirm roles Copyright. All rights reserved. 23

Unit 12: Periodic Access Review Process 24 Copyright. All rights reserved.

UNIT 13 Reports and Custom Fields Lesson 1: Working with the Reporting Framework Change an existing report without programming Add custom fields to a report Copyright. All rights reserved. 25

Unit 13: Reports and Custom Fields 26 Copyright. All rights reserved.

UNIT 14 SAP Access Control Implementation Lesson 1: Working with the Access Control Implementation Process Describe the main implementation steps and project team members Lesson 2: Designing the Access Control Solution Design the SAP Access Control Solution Lesson 3: Planning Upgrade and Migration Identify key considerations for upgrade and migration Lesson 4: Configuring Access Control Perform final tasks and prepare for go live Lesson 5: Implementing the Solution Perform final tasks and prepare for go live Lesson 6: Optimizing and Enhancing the Solution Copyright. All rights reserved. 27

Unit 14: SAP Access Control Implementation Ensure system stability and optimize performance 28 Copyright. All rights reserved.