SAP GRC


What is SAP GRC?

Governance, risk, and compliance (GRC) is a vital set of functions for enterprises to maintain secure and audit-friendly environments while being more confident in their actions. For SAP customers, SAP GRC can mean a set of GRC products provided by SAP itself or the GRC activities and technologies related to SAP systems.

What is SAP GRC?

Governance, risk, and compliance (GRC) is a vital set of functions for enterprises to maintain secure and audit-friendly environments while being more confident in their actions. For SAP customers, SAP GRC can mean a set of GRC products provided by SAP itself or the GRC activities and technologies related to SAP systems.

GRC is growing in importance with rapidly changing regulations that create new compliance challenges. Security and financial risks are also on the rise as companies adopt more cloud technologies, enact bring-your-own-device policies, and enable remote workers in greater numbers.

SAP GRC tools are available to help with areas of risk management, process control, financial compliance, threat detection, identity management, privacy governance, and more. SAP partners and other vendors that provide GRC solutions and consulting services include Appsian Security, Fastpath, and Soterion.

Key Considerations for SAPinsiders:

  • Take inventory of your GRC processes and automate wherever possible. In our most recent GRC State of the Market research, successful GRC organizations are focused on automation to streamline processes. To do this, processes being automated need to be repeatable and effective. Before investing in GRC automation technology, it’s best to get processes in line. Many companies are automating the process of keeping track of who makes changes to the SAP systems.
  • Digital transformation offers the opportunity to rethink GRC processes. If your company is implementing new software such as SAP S/4HANA, it’s smart to use that project as a catalyst to examine key GRC processes and find out how they can be improved. For example, HP set up a new GRC system during its SAP S/4HANA migration, including rethinking its user access processes and segregation of duties (SoD) ruleset. In the past HP relied on a homegrown tool for access control but implemented SAP Access Control and SAP Process Control as a component of its SAP S/4HANA migration.
  • Determine the present and future state of remote work at your company, and how that impacts risk and security. Many companies have gone more remote in the past two years. For GRC groups, this provides more challenges for user access and opens companies up to more cyber threats. Map out your remote working landscape and determine what processes and tools you have in place to reduce risk.

73 results

  1. Leverage Intelligent GRC To Drive Business Value

    Published: 30/September/2019

    Reading time: 1 min

    Delivering effective GRC comes with several challenges. Whether it’s a lack of expertise, of proper tools, or agility, all companies could benefit from having improved GRC practices. However, knowing what improvements are needed first requires an unders

  2. New Business Models In A New Global Landscape: Challenge Or Opportunity?

    Published: 09/July/2019

    Reading time: 1 mins

    In this e-book, discover the challenges and opportunities new global business landscapes are uncovering and how they are impacting platforms, selling models, legislation, tax and the customer experience.

  3. Building a Successful Security and Compliance Program for Your SAP Landscape

    Published: 01/May/2019

    Reading time: 1 mins

    In a climate of ever-increasing regulatory requirements, external auditors and organizations such as the US-based Public Company Accounting Oversight Board, which oversees audits of public companies, are increasing their scrutiny of security and privacy p

  4. GRC: Case study: How Revlon completed a global security redesign on an accelerated timeline

    Published: 10/March/2019

    Reading time: 1 mins

    Learn how Revlon implemented a scalable segregation-of-duties-compliant role architecture in alignment with its GRC ruleset and business processes in its SAP environment. Click this link to view the slides from this session — GRC2017_Bell_Casestudyhowrevloncompleted. Betina Bell If you have comments about this article or publication, or would like to submit an article idea, please contact...…

  5. GRC: Case study: Setting up your SAP environment for growth — lessons learned from American Outdoor Brands’ SAP implementation success

    Published: 10/March/2019

    Reading time: 1 mins

    Learn how American Outdoor Brands successfully deployed SAP ERP and managed a dramatic surge in business and the acquisition of 3 companies within 3 years without any major controls or business disruptions. Click this link to view the slides from this session — GRC2017_Lowy_Casestudysettingupyoursap. Joshua Lowy If you have comments about this article or publication,...…

  6. GRC: Case study: How Honeywell provides GRC insights to C-level executives

    Published: 01/March/2019

    Reading time: 1 mins

    Honeywell has implemented SAP GRC solutions for risk, compliance, and policy management across different business groups. Learn how the company developed powerful dashboards for the executive team. here Vinod Kumar If you have comments about this article or publication, or would like to submit an article idea, please contact the editor.... Membership Required You must…

  7. GRC: Case study: How Stanley Black & Decker designed an efficient global role structure

    Published: 01/March/2019

    Reading time: 1 mins

    Learn how Stanley Black & Decker approached the design phase of its global SAP security redesign. here Erin Swartzmiller If you have comments about this article or publication, or would like to submit an article idea, please contact the editor.... Membership Required You must be a member to access this content.View Membership LevelsAlready a member?…

  8. SAP GRC Collection 2019

    Published: 14/December/2018

    Reading time: 1 min

    SAPinsider has assembled nine popular pieces for SAP GRC professionals. They provide both strategic and tactical insights for organizations using SAP® GRC solutions to manage risk and compliance, strengthen cybersecurity, detect and prevent fraud, and op

  9. Southwire Powers Up with Analytics to Redesign User Roles

    Published: 13/September/2018

    Reading time: 10 mins

    Preventing access risk and ensuring regulatory compliance are top priorities for any business, and cable and wire manufacturer Southwire Company, LLC, understands how analytics are required to successfully achieve these goals. Concerned that access-related risks were unacceptably high, Southwire embarked on a multi-phased project that aimed to remove, reduce, and mitigate these risks and to…

  10. What’s new in SAP Process Control and SAP Risk Management version 12.0

    Published: 01/August/2018

    Reading time: 29 mins

    Panelists: Jan Gardiner, SAP Date: Thursday, August 30 Sponsor: SAPinsider SAP’s newest versions of SAP Process Control and SAP Risk Management are planned for release in September. Join a Live Q&A with SAP’s Jan Gardiner, a speaker at the upcoming SAPinsider GRC conference in Prague, to hear about the new features and functionalities of the…