Introduction To SAP Access Control
Introduction To SAP Access Control
Access Control
by Umesh Sah
Key Features and Capabilities
1 Role-Based Access Control (RBAC) 2 Risk Analysis
RBAC is a core principle, defining user Automated risk analysis identifies potential
permissions based on their roles within the vulnerabilities and helps prioritize security
organization. measures.
1 Request Initiation
Users or managers request access based on their roles and needs.
2 Approval Workflow
Requests are routed through an approval process for authorization.
3 Provisioning
Authorized access is granted to users, with appropriate permissions assigned.
4 Deprovisioning
When users leave or their roles change, access is automatically revoked.
Segregation of Duties (SoD) Management
Role Analysis
Analyzing roles and identifying potential conflicts of interest.
Rule Definition
Defining SoD rules based on business requirements and compliance
mandates.
Violation Detection
Monitoring user access and alerting on any SoD violations.
Conflict Resolution
Resolving SoD violations and implementing appropriate corrective actions.
Reporting and Compliance