Emergency Access Manager

Maintain a continuous state of audit readiness by logging and tracking everything a user does during an SAP® "firecall" session with ControlPanelGRC Emergency Access Manager.

  • Capabilities
  • Key Benefits

Configure Pre-Approved Authorizations

Configuration within ControlPanelGRC Emergency Access Manager provides users with many options for either pre-approved authorizations or authorizations requiring approval including:
  • Selecting roles assigned to another user
  • Selecting roles based on a name
  • Automatic assignment of predefined roles.

Track and Audit Emergency Access Without Using Generic Logons

Emergency Access Manager mitigates risk with workflow that tracks changes by user rather than a generic logon. In addition it tracks the "firecall" session in SAP requiring users to provide detailed descriptions of their reasons for activating the session and their actions. At the end of the "firecall" session this detailed documentation is automatically sent to a manager for a documented review.

Remediate Segregation of Duties Concerns

IT personnel and end users often need to temporarily gain additional authorizations to process transactions which can lead to Segregation of Duties (SOD) conflicts. This is an even greater concern in smaller departments and organizations where roles are often shared.

Emergency Access Manager solves this problem by allowing organizations to automatically provision emergency access to pre-approved users. Actions taken during a "firecall" session are logged to that user and sent to management for immediate review. Other emergency access software only log actions to a generic user name which cannot be used to ensure SOD compliance putting an organization at much greater risk.

Reduce Burden on Security Personnel

The manual process for gaining emergency authorization in SAP is for security to add a role or profile and remove it after the use completes their task. In a 24x7 operating environment requests for emergency authorizations can come at any time of the day or night and place a large burden on security personnel. The option of pre-approving users to be automatically provisioned with temporary access relieves the burden on security personnel and allows them to focus on more strategic activities.

Reduce Audit Preparation Costs

The ControlPanelGRC workflow ensures that each SAP "firecall" session is tracked and the detailed documentation is reviewed immediately after the event. The easily accessible audit trail provided by Emergency Access Manager helps organizations maintain a state of continuous audit readiness eliminating the time and resources needed for audit preparation.

 



ALL RESOURCES

Resources

Archived Webinars: 

 W

How to be a Security and SoD Expert When It's Not Your Full-Time Job

Join the ASUG Small and Medium Enterprise SIG for this webcast on security and separation of duties - an encore presentation from this year's ASUG Annual Conference.  Watch on Demand
W

How Abiomed Reduced the Time, Effort and Expense of SOX Reporting
Sharon Kaiser, CIO at  Abiomed shows how she able to turn audit pain into gain with several strategies to lower Abiomed's total cost of compliance. Watch On Demand

 Case Studies:

C

ControlPanelGRC Adds Value to Graham Packaging's GRC Efforts
Learn how Graham Packaging went from a difficult to implement, expensive and ultimately under-utilized first generation compliance tool to achieving full value from the system and payback in less than a year with ControlPanelGRC. Read More

White Papers:
WP

Five Question to Ask Before Migrating to SAP® GRC 10.0

Have you thought about a migration to SAP® GRC 10.0 yet?  The changes to your system that will happen could be extensive enough to warrant a “re-implementation" rather than just a simple software upgrade.  Many companies are taking the next step and migrating straight to SAP GRC 10.0, but most are doing so without answering some very strategic questions about it.  Read More

WP


Five Signs That a New SoD Compliance Strategy Needs to be Implemented

SoD compliance in 2012 is not the same as it was in 2002.  SoD strategies or solutions that worked ten years ago have become unmanageable for many organizations because "first generation" GRC tools and manual processes have not been able to keep up with auditor demands in 2012.  Read More






Join Our Mailing List

Sign up now for ControlPanelGRC's email updates



 Delicious Digg Facebook Google Bookmarks Windows Live Newsvine StumbleUpon Twitter Yahoo!