This blog is contains information based upon my little experience,collected information from subject experts,content from SCN/google and SAP standard documents,Hope its useful for every GRC aspirant. "What else we can give to others,except what we know and learned", Keep giving what you learned and get something new-Srinivas Baithi
Showing posts with label Access Controls. Show all posts
Showing posts with label Access Controls. Show all posts
Thursday, November 12, 2015
Thursday, August 20, 2015
GRC Audit Reports-Access Controls
Find the list reports used for Audit
Search Requests- Within "Access
Management" workspace of GRC NWBC. This shows the Request IDs, the
Request Type, the Approval status, and the Creation Date.
Provisioning
Logs - Within "Access
Management" workspace of GRC NWBC. This shows granular detail for
each request, such as User(s), what type of item was provisioned (role, FFID,
etc.), the item name, the status of provisioning, the target connector for
which provisioning took place.
Risk Analysis Reports
- User Level / Role Level SOD reports. Shows how many SOD issues are
present in the landscape and any mitigation that has been assigned.
Mitigating Controls Assignments
- manually download this using program
"GRAC_DOWNLOAD_MIT_ASSIGNMENTS" in GRC system. Shows all
assigned MCs to Users
EAM Reason Code and Activity Report - Within "Reports and Analytics" workspace of GRC
NWBC. Shows which Reason Codes have been used by Firefighter End Users
and the frequency.
EAM Consolidated Log Report
- Within "Reports and Analytics" workspace of GRC NWBC. Shows
all Firefighter activity in granular detail. Includes all report types
from Firefighter logs.
Rule set Changes:
NWBC>Reports and Analytics > Audit Reports
> Change Log
Report :
By Function, Risk, Rule Set, Organization Rule. Changed On field based
They will analyze below points and be
prepare with below data in EAM
1. The Number of FF IDs, FF ID Owners, FF ID
Controllers from reports
2. Number of Unique Owners, Controllers
3. FF IDs with Same Owner and Controller
4. Number of Unique FF IDs across All Systems/Clients
(if you are using more target systems)
5. Number of Logins per FF ID
6. Number of Logs per Controller
Customization of NWBC work inbox-Access Controls
Go to transaction SICF, provide service name as ‘GRFN_POWL_INBOX’
and click on execute button
Right click on in the
selected service and select ‘Test Service’
In the new window, add following parameters to URL :
- &SAP-CONFIG-MODE=X
Right click on the area shown below and select
‘Settings for Current Configuration’
Remove the selected columns and click on ‘Save and
Close’
This will add the selected column and this setting is
applicable to all the users.
Subscribe to:
Posts (Atom)