SlideShare a Scribd company logo
1 of 24
Moving to the Cloud:
Adopting & Integrating the SAP Ariba
Portfolio in your SAP Landscape
Lakshmi Hanspal, Chief Security Officer, SAP Ariba / October 26, 2016
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 2Public
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 3Public
Forward looking statements
Important Notice
SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this
document or any related presentation, or to develop or release any functionality mentioned therein. This
document, or any related presentation, and SAP SE’s or its affiliated companies’ strategy and possible future
developments, products, and/or platform directions and functionality are all subject to change and may be
changed by SAP SE or its affiliated companies at any time for any reason without notice.
The information in this document is not a commitment, promise, or legal obligation to deliver any material,
code, or functionality. All forward-looking statements are subject to various risks and uncertainties that
could cause actual results to differ materially from expectations.
Readers are cautioned not to place undue reliance on these forward-looking statements, and they should not
be relied upon in making purchasing decisions.
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 4Public
Decision makers today have two fundamental choices to
address their business need
Business need
Source globally, streamline procurement, execute business transactions efficiently
Networked solution
• Deploy application in cloud
• Invite suppliers to collaborate throughout the
process
• Exchange documents electronically through
business network
• Leverage integrated channels and achieve
transparency in invoicing and payments
Choice
Traditional application
• Deploy application on premise or in house
• Use phone/e-mail/letters/meetings to
collaborate with suppliers
• Send and receive documents through
e-mail/fax/paper/EDI
• Leverage out-of-band channels for invoicing and
payments
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 5Public
A network approach is attractive, but companies need
to protect their data and their business relationships
• Achieve legal compliance such as fulfilling data
protection requirements
• Ensure information relating to individuals is
protected in storage and processing
Protect personal data
• Store business data safely
• Transmit transactional data securely
• Prohibit unauthorized access to data
Protect trade secrets
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 6Public
A network approach is attractive, but companies need
to protect their data and their business relationships
• Achieve legal compliance such as fulfilling data
protection requirements
• Ensure information relating to individuals is
protected in storage and processing
Protect personal data
• Store business data safely
• Transmit transactional data securely
• Prohibit unauthorized access to data
Protect trade secrets
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 7Public
Protect personal data: top concerns of data protection officers
and works councils to comply with data protection laws
* SAP Ariba solutions use a new brand name that was launched in January 2016. Ariba continues to operate as a separate legal entity.
Type of personal data
What type of personal data is collected when using SAP Ariba* solutions?
Is there any sensitive personal data involved?
Where personal data is stored
What is the physical location of data and where is it processed?
Where personal data transferred is to
How do SAP and Ariba approach the legality of transferring personal data internationally?
Who has access to personal data
Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have
access to the personal data?
How personal data is protected
What technical and organizational measures are in place to protect personal data from unauthorized access, use, or
disclosure?
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 8Public
Type of personal data
What type of personal data is collected when using SAP Ariba solutions? Is any sensitive personal data involved?
• SAP Ariba solutions contain simple business contact information about individuals as users or business contacts but should NOT contain
any sensitive personal data (individual healthcare data, individual financial information, religious affiliation, and the like).
• The Ariba Privacy Statement prohibits use of the solutions for processing sensitive personal data.
Personal data potentially associated to users in SAP
Ariba solutions is business contact information:
• E-mail address
• Employee number
• Employee name
• Business phone
• Business fax
• Alternate e-mail addresses
• Business postal address
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 9Public
Where personal data is stored/processed
What is the physical location of data, and where and by whom is it processed?
Illustrative example for cloud application in European data center
Network traffic orchestrated at global hub in the United States
• Customer (buyers) have the option to run solutions such as Ariba Procure-to-Pay in
the European data center.
• Personal data of customer (buyer) users is administered in the selected application
data center.
• Most SAP Ariba solutions exchange data with the Ariba Network (operated in the
United States) to facilitate communication with suppliers.
• Such communications and exchange of documents can include personal data such
as contact info on a purchase order.
• Data flow between regional data centers and the Ariba Network is carried over
secure encrypted connection.
• The supplier profiles are stored in the Ariba Network data center.
Buyers and suppliers want to trade globally to increase the selection of vendors and to reach more customers.
This requires a global platform, enabled by the Ariba Network.
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 10Public
Data category
Upstream
(sourcing,
contracts)
Downstrea
m (procure
to pay)
Ariba
Network
Data in EU
Data in global DC
(located in U.S.)
Notes
Employee data Yes Yes Yes Yes Possible
If a user from the customer organization is logging into the Ariba
Network, then some identifying fields might need to be stored in the
U.S. data center (DC)
Contracts Yes No No Yes No
Supplier contracts Yes No No Yes No Contract remains in EU data center
Supplier contracts Yes No Yes Yes Yes
If POs are generated based on contracts and routed through Ariba
Network, then the PO copy will be stored in the network in the U.S.
DC. The PO copy may contain the contract ID.
Bill of material/item list Yes No No Yes No
Commercial data Yes No No Yes No
All data in EU if all commercial data is to support setting up sourcing
events only
Commercial data
procurement
Yes Yes Yes Yes Yes
All documents which are exchanged with the supplier as part of P2P
(such as goods receipt) will routed through the AN so US.
Drawings Yes No No Yes No RFx attachments, then EU only
Product, product
information
Yes Yes Yes Yes Yes
Supplier imports catalogs into Ariba Network, then catalogs will be
stored in the network in the U.S. DC.
But if buyer creates catalog it will remain in the EU.
Supplier data general Yes Yes Yes Yes Yes
Portal for suppliers data entry into SAP Ariba applications is through
Ariba Network, so supplier data will be stored in the network in the
U.S. DC. Rest of communication will be stored in EU DC
Supplier know-how Yes No No Yes No If part of a response to sourcing event data in EU
Supplier price information Yes No No Yes No Response to sourcing event ‒ data in EU
Master data in R/3 Yes No No Yes No No master data in Ariba Network, only transactional data
Where personal data is transferred to
How do we approach the legality of transferring personal data internationally?
Transfer to Ariba
The Ariba contract contains
Ariba’s obligations regarding
personal data processing,
customer consent to transfer
personal data, and agreement
to obtain consent for the
processing of such data.
Transfer by Ariba
Ariba maintains data transfer
agreements with SAP and
Ariba affiliates and
subprocessors that comply
with the EU requirements for
personal data transfer.
* Using the data enrichment service involves sending procurement data into the U.S. network data center for data enrichment (transfer does not involve personal data) to allow for spend visibility.
EU data center customers:
 Data, including user administration data, entered by the buyer into upstream (Ariba
Sourcing, Ariba Contract Management) and downstream (Ariba Procure-to-Pay)
solutions is stored in the EU data center.*
 Once a purchase order (PO) is sent by the buyer, it is routed to the Ariba Network (U.S.
server) for access by your supplier or further routing to the supplier (similar to sending a
PO by e-mail on the Internet).
 Suppliers route invoices through the Ariba Network (U.S. server) to the buyer.
 Suppliers self-maintain their data (invoices, master data, and catalogs) globally through
the Ariba Network (U.S. server).
 Certain transaction history is available to buyers through direct access to the Ariba
Network.
 User credentials allowing buyer-side users to access the Ariba Network are stored on the
Ariba Network (U.S. server).
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 11Public
SAP’s contractual approach to data protection
SAP has unified the approach for all its cloud solutions with the data
processing agreement (DPA).
 The DPA goes beyond standard contractual clauses in providing privacy
assurances.
 The DPA incorporates an unmodified version of standard contractual clauses
that control in case of conflict with rest of the DPA.
 The DPA defines terms – such as SAP as “processor” and “importer,”
customer as “controller” and “exporter.”
 Customer HQ can sign the amendment on behalf of its EU affiliates; affiliates
may sign an accession document with HQ and be considered parties to the
clauses.
 SAP has intercompany agreements with SAP affiliates and data processing
agreements with partners (subprocessors).
 The DPA lists data protection policies, procedures, standards, and
certifications.
 It includes rights and obligations with respect to technical and organizational
measures (such as monitoring, incidents, notifications).
 Data privacy measures for SAP Ariba solutions are aligned with the SAP Data
Privacy Office, and we have our own data privacy officer.
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 12Public
Who has access to personal data
Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have access to the personal data?
 Customer acts as the data controller concerning personal data.
 SAP acts as data processor and processes personal data in accordance with customer
instructions.
 For processing personal data, SAP and its subprocessors will use only personnel who are
reliable and subject to a binding obligation to observe data secrecy or secrecy of
telecommunications, to the extent applicable, pursuant to the applicable data protection law.
 Technical and organizational measures are in place to secure and protect personal data.
 SAP may engage subcontractors for processing of personal data; however, SAP stays fully
responsible. Customers can review the list of subprocessors.
 Subcontractors are carefully selected with objection right for customer, and subcontractors
not operating in the EU sign the standard contractual clauses.
 Customer has defined monitoring rights.
 SAP will cooperate with customer to address any personal data deletion or modification
requests.
“Data controller” as defined in the
applicable data protection law
“Data processor” as defined in the
applicable data protection law
“Data exporter” is the customer as
listed in an order form or its data
controller(s)
“Standard contractual clauses” as per
Directive 95/46/EC
“Subprocessor” – SAP affiliates and
third-party subprocessors engaged by
SAP or SAP’s affiliates
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 13Public
How personal data is protected
What technical and organizations measures are in place to protect the personal data from unauthorized access, use, or disclosure?
ORGANIZATIONAL AND TECHNICAL MEASURES IN PLACE
Data control
• Data protection controls (at rest)
• Electronic transfer controls (in transit)
• Data protection agreement
Access control
• General measures and policies on access control
• Layered protection such as multifactor
• Special areas (for example, data center, file storage rooms)
• Training and awareness for employees
• Authorization using roles and privileges
• Access protection, logging
Threat control
• Logging and monitoring
• Analysis of event correlation
Vendor control
• Due diligence on selection of contractors and contracts
• Periodic reassessment of vendor compliance
Availability control
• Guaranteeing routine operation
• Emergency measures
• Database backup
• Database restoration
Network control
• Separation of production and development environments
INDEPENDENT AUDITS CERTIFY SECURITY CONTROLS
• Periodic audits performed by reputed independent third-
party organizations
• Ariba data centers are certified for the payment card
industry data security standard of PCI DSS
 Designed for computer networks that handle credit card
transactions, covering people, processes, technologies,
locations
• Ariba data centers are certified for AICPA (American
Institute of Certified Public Accountants) SOC 1 and SOC 2
certifications
 Service Organization Control reports to assess and
address risk with outsourced services around security,
availability, integrity and confidentiality
• Ariba data centers are certified for AICPA (American
Institute of Certified Public Accountants) and CICA
(Canadian Institute of Chartered Accountants) SOC 3
WebTrust certifications
 Seal awarded to businesses that consistently adhere to
defined security and privacy standards
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 14Public
Protect personal data: Top concerns of data protection officers
and works councils to comply with data protection laws
Type of personal data
What type of personal data is collected during use of SAP Ariba solutions?
Is there any sensitive personal data involved?
Where personal data is stored
What is the physical location of data and where is it processed?
Where personal data transferred is to
How do SAP and Ariba approach the legality of transferring personal data internationally?
Who has access to personal data
Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have
access to the personal data?
How personal data is protected
What technical and organizational measures are in place to protect personal data from unauthorized access,
use, or disclosure?





© 2016 SAP SE or an SAP affiliate company. All rights reserved. 15Public
A network approach is attractive, but companies need
to protect their data and their business relationships
• Achieve legal compliance such as fulfilling data
protection requirements
• Ensure information relating to individuals is
protected in storage and processing
Protect personal data
• Store business data safely
• Transmit transactional data securely
• Prohibit unauthorized access to data
Protect trade secrets
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 16Public
Trust model for SAP Ariba solutions
Securing the software development lifecycle
Guarding your data against internal and external risks
Access through least privilege/“need-to-know basis”
Environment segmentation and demarcation
Resiliency as core competency
High availability, monitoring, and business continuity
SAP leverages a holistic, multidimensional approach to establish and maintain state-of-
the-art security and privacy.
Security and privacy
Technology
Processes
People
Scoping
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 17Public
Data protection and privacy ‒ layers of assurance
Goal: Protection of individuals’ the rights
Legal and contract
Data processing agreement that meets applicable local data privacy regulations
globally, provides transparency, and limits liability
Technical and organizational measures (TOM) ‒ for example, incident management
Audit and certification
Certifications providing independent evidence for security, confidentiality,
availability, data protection and quality
Policies and procedures
Integrated management system for information security, data protection, and
service delivery
Comprehensive security architecture covering application, processing systems, and
network
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 18Public
Protecting commerce in the cloud –
current and future
Current
Secure software development
Patching, vulnerability, and incident response
Physical security, segregation, and intrusion prevention
Application, platform, and network security, data
segregation, and intrusion prevention
Encryption, certificates, and key management
Availability and data management
Risk management and audit
Internal security policies and procedures
Future (2016)
Connectivity and customer adoption
 Certificates
 Transport protocols
 Cipher suites
 HTTP Strict Transport Security Header (HSTS)
Data encryption
ActiveX replacement
Future (beyond 2016)
 Advanced support access controls
 Authentication enhancements
 Enhanced data deletion
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 19Public
A network approach is attractive, but companies need
to protect their data and their business relationships
• Achieve legal compliance such as fulfilling data
protection requirements
• Ensure information relating to individuals is
protected in storage and processing
Protect personal data
• Store business data safely
• Transmit transactional data securely
• Prohibit unauthorized access to data
Protect trade secrets

© 2016 SAP SE or an SAP affiliate company. All rights reserved. 20Public
You and SAP –
partners in protecting your digital commerce
What are best practices you can establish as part of leveraging SAP Ariba solutions ?
Single sign on (SSO): Leverage SSO authentication to streamlined identity and access management
Access reviews: Perform periodic access reviews of your users’ access to SAP Ariba solutions
Segregation of duties: Ensure that users are in defined business roles and that conflict of interest in conducting
business is prevented by segregating roles and requiring access approval workflow
Supplier linkages: Ensure that linkages can be initiated only by suppliers; review the accuracy and relevance of
your current linkages
Works council: Follow best practices to engage early and leverage expertise
Compliance: As the data controller, the customer has primary responsibility for compliance; for ensuring that
legally adequate data processing methods are in place; for obtaining end user consent for use of personal data
(some countries require this); and for ensuring that sensitive personal information such as SSN is not in the
solution.
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 21Public
Protecting customers’ personal and business data
 Management is accountable for committing time, effort, funding, and resources to data protection.
 Management is accountable for selecting controls based on risk acceptance and for enforcing those controls
within the organization.
Management
commitment
 Demonstrate proactive compliance with regulators
 Use common framework for other standards and regulatory requirements
 Reduce liability risk
Compliance and
legal requirements
 Validate security and privacy practices and provide confidence in the use of third parties
 Use an approach that is consistent with other cloud companies
Building and
maintaining trust
 Increase awareness of data protection within the organization
 Provide appropriate protection of cloud assets
 Gain efficiencies through repeatable processes for compliance monitoring; ensure that controls are effectively
measured and reported
Continual
improvement
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 22Public
Confidence in the cloud with SAP Cloud Secure
SAP Cloud
Secure
Comprehensive contracts
Privacy, security framework,
applicable local regulations
Cyber defense
Multiple layers of defense,
holistic: prevent, detect,
remediate
Independent audits
Service organization report
certifications
Secure cloud model
Holistic approach,
secure architecture
Thank You and Q&A
Lakshmi Hanspal, Chief Security Officer
Lakshmi.Hanspal@sap.com
© 2016 SAP SE or an SAP affiliate company. All rights reserved. 24Public
No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP SE or an SAP affiliate company.
SAP and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP SE (or an SAP affiliate
company) in Germany and other countries. Please see http://global12.sap.com/corporate-en/legal/copyright/index.epx for additional trademark information and
notices.
Some software products marketed by SAP SE and its distributors contain proprietary software components of other software vendors.
National product specifications may vary.
These materials are provided by SAP SE or an SAP affiliate company for informational purposes only, without representation or warranty of any kind, and SAP SE or
its affiliated companies shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP SE or SAP affiliate company products
and
services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as
constituting an additional warranty.
In particular, SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this document or any related presentation, or to
develop
or release any functionality mentioned therein. This document, or any related presentation, and SAP SE’s or its affiliated companies’ strategy and possible future
developments, products, and/or platform directions and functionality are all subject to change and may be changed by SAP SE or its affiliated companies at any
time
for any reason without notice. The information in this document is not a commitment, promise, or legal obligation to deliver any material, code, or functionality. All
forward-looking statements are subject to various risks and uncertainties that could cause actual results to differ materially from expectations. Readers are
cautioned not to place undue reliance on these forward-looking statements, which speak only as of their dates, and they should not be relied upon in making
purchasing decisions.
© 2016 SAP SE or an SAP affiliate company. All rights reserved.

More Related Content

What's hot

Data and Analytics: What Your Data Is Telling You and Why It's Worth Listening
Data and Analytics: What Your Data Is Telling You and Why It's Worth ListeningData and Analytics: What Your Data Is Telling You and Why It's Worth Listening
Data and Analytics: What Your Data Is Telling You and Why It's Worth ListeningSAP Ariba
 
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...SAP Ariba
 
What Your Spend Data Is Telling You and Why It’s Worth Listening
What Your Spend Data Is Telling You and Why It’s Worth ListeningWhat Your Spend Data Is Telling You and Why It’s Worth Listening
What Your Spend Data Is Telling You and Why It’s Worth ListeningSAP Ariba
 
Spot Buy: Experience Convenience and Take Control of Your Noncontracted Spend
Spot Buy: Experience Convenience and Take Control of Your Noncontracted SpendSpot Buy: Experience Convenience and Take Control of Your Noncontracted Spend
Spot Buy: Experience Convenience and Take Control of Your Noncontracted SpendSAP Ariba
 
Supplier Success on the Ariba Network
Supplier Success on the Ariba NetworkSupplier Success on the Ariba Network
Supplier Success on the Ariba NetworkSAP Ariba
 
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...SAP Ariba
 
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareUse SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareSAP Ariba
 
Zen and the Art of Supplier Management
Zen and the Art of Supplier ManagementZen and the Art of Supplier Management
Zen and the Art of Supplier ManagementSAP Ariba
 
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the Basics
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the BasicsSourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the Basics
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the BasicsSAP Ariba
 
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...SAP Ariba
 
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...Quote Automation: Faster Supplier Identification and Bid Execution for Your P...
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...SAP Ariba
 
Innovations in Payables and Finance
Innovations in Payables and FinanceInnovations in Payables and Finance
Innovations in Payables and FinanceSAP Ariba
 
Invoice Automation: Key Component of Digital Transformation for PO and Contra...
Invoice Automation: Key Component of Digital Transformation for PO and Contra...Invoice Automation: Key Component of Digital Transformation for PO and Contra...
Invoice Automation: Key Component of Digital Transformation for PO and Contra...SAP Ariba
 
The SAP Ariba Exchange User Community – Learn, Share, Grow
The SAP Ariba Exchange User Community – Learn, Share, GrowThe SAP Ariba Exchange User Community – Learn, Share, Grow
The SAP Ariba Exchange User Community – Learn, Share, GrowSAP Ariba
 
Applying Procurement Best Practices to Travel and Entertainment Reporting
Applying Procurement Best Practices to Travel and Entertainment ReportingApplying Procurement Best Practices to Travel and Entertainment Reporting
Applying Procurement Best Practices to Travel and Entertainment ReportingSAP Ariba
 
How to Talk to Your Suppliers About the Value of Joining Ariba Network
How to Talk to Your Suppliers About the Value of Joining Ariba NetworkHow to Talk to Your Suppliers About the Value of Joining Ariba Network
How to Talk to Your Suppliers About the Value of Joining Ariba NetworkSAP Ariba
 
Catalogs and Content with SAP Ariba Solutions, Today and Tomorrow
Catalogs and Content with SAP Ariba Solutions, Today and TomorrowCatalogs and Content with SAP Ariba Solutions, Today and Tomorrow
Catalogs and Content with SAP Ariba Solutions, Today and TomorrowSAP Ariba
 
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...SAP Ariba
 
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...SAP Ariba
 
Best Practices in Catalog Strategies
Best Practices in Catalog StrategiesBest Practices in Catalog Strategies
Best Practices in Catalog StrategiesSAP Ariba
 

What's hot (20)

Data and Analytics: What Your Data Is Telling You and Why It's Worth Listening
Data and Analytics: What Your Data Is Telling You and Why It's Worth ListeningData and Analytics: What Your Data Is Telling You and Why It's Worth Listening
Data and Analytics: What Your Data Is Telling You and Why It's Worth Listening
 
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...
Going Digital with SAP S/4HANA Sourcing and Procurement and SAP Ariba Solutio...
 
What Your Spend Data Is Telling You and Why It’s Worth Listening
What Your Spend Data Is Telling You and Why It’s Worth ListeningWhat Your Spend Data Is Telling You and Why It’s Worth Listening
What Your Spend Data Is Telling You and Why It’s Worth Listening
 
Spot Buy: Experience Convenience and Take Control of Your Noncontracted Spend
Spot Buy: Experience Convenience and Take Control of Your Noncontracted SpendSpot Buy: Experience Convenience and Take Control of Your Noncontracted Spend
Spot Buy: Experience Convenience and Take Control of Your Noncontracted Spend
 
Supplier Success on the Ariba Network
Supplier Success on the Ariba NetworkSupplier Success on the Ariba Network
Supplier Success on the Ariba Network
 
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...
SAP Ariba Mobile Apps for Buyers and Sellers: Increase Your Company's End Use...
 
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareUse SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
 
Zen and the Art of Supplier Management
Zen and the Art of Supplier ManagementZen and the Art of Supplier Management
Zen and the Art of Supplier Management
 
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the Basics
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the BasicsSourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the Basics
Sourcing Is Now Resourcing: How Sourcing Is Utilized Beyond Just the Basics
 
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...
Extending Your SAP Supply Chain Systems to Suppliers with SAP Ariba Solutions...
 
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...Quote Automation: Faster Supplier Identification and Bid Execution for Your P...
Quote Automation: Faster Supplier Identification and Bid Execution for Your P...
 
Innovations in Payables and Finance
Innovations in Payables and FinanceInnovations in Payables and Finance
Innovations in Payables and Finance
 
Invoice Automation: Key Component of Digital Transformation for PO and Contra...
Invoice Automation: Key Component of Digital Transformation for PO and Contra...Invoice Automation: Key Component of Digital Transformation for PO and Contra...
Invoice Automation: Key Component of Digital Transformation for PO and Contra...
 
The SAP Ariba Exchange User Community – Learn, Share, Grow
The SAP Ariba Exchange User Community – Learn, Share, GrowThe SAP Ariba Exchange User Community – Learn, Share, Grow
The SAP Ariba Exchange User Community – Learn, Share, Grow
 
Applying Procurement Best Practices to Travel and Entertainment Reporting
Applying Procurement Best Practices to Travel and Entertainment ReportingApplying Procurement Best Practices to Travel and Entertainment Reporting
Applying Procurement Best Practices to Travel and Entertainment Reporting
 
How to Talk to Your Suppliers About the Value of Joining Ariba Network
How to Talk to Your Suppliers About the Value of Joining Ariba NetworkHow to Talk to Your Suppliers About the Value of Joining Ariba Network
How to Talk to Your Suppliers About the Value of Joining Ariba Network
 
Catalogs and Content with SAP Ariba Solutions, Today and Tomorrow
Catalogs and Content with SAP Ariba Solutions, Today and TomorrowCatalogs and Content with SAP Ariba Solutions, Today and Tomorrow
Catalogs and Content with SAP Ariba Solutions, Today and Tomorrow
 
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...
Buy Right, Pay Right – How Procurement, AP, and Treasury Can Work Together fo...
 
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...
Boost Your Productivity Through an Innovative E-Sourcing Process Using Ariba ...
 
Best Practices in Catalog Strategies
Best Practices in Catalog StrategiesBest Practices in Catalog Strategies
Best Practices in Catalog Strategies
 

Similar to Moving to the Cloud: Adopting & Integrating the SAP Ariba Portfolio in your SAP Landscape

Where Did All the Savings Go?
Where Did All the Savings Go?Where Did All the Savings Go?
Where Did All the Savings Go?SAP Ariba
 
Joint Ariba SAP Roadmap
Joint Ariba SAP RoadmapJoint Ariba SAP Roadmap
Joint Ariba SAP RoadmapSAP Ariba
 
Analyze To Manage Ariba Network Solutions for SAP Customers
Analyze To Manage Ariba Network Solutions for SAP CustomersAnalyze To Manage Ariba Network Solutions for SAP Customers
Analyze To Manage Ariba Network Solutions for SAP CustomersSAP Ariba
 
Ariba Town Hall for Sellers
Ariba Town Hall for SellersAriba Town Hall for Sellers
Ariba Town Hall for SellersSAP Ariba
 
SAP Ariba NextGen Platform
SAP Ariba  NextGen PlatformSAP Ariba  NextGen Platform
SAP Ariba NextGen PlatformThomas Benjamin
 
Ariba Town Hall for Sellers
Ariba Town Hall for SellersAriba Town Hall for Sellers
Ariba Town Hall for SellersSAP Ariba
 
Network Town Hall
Network Town HallNetwork Town Hall
Network Town HallSAP Ariba
 
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...SAP Ariba
 
Network Town Hall
Network Town HallNetwork Town Hall
Network Town HallSAP Ariba
 
Spend Analysis: It’s What You Do With it That Matters
Spend Analysis: It’s What You Do With it That MattersSpend Analysis: It’s What You Do With it That Matters
Spend Analysis: It’s What You Do With it That MattersSAP Ariba
 
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba Solutions
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba SolutionsTransform Procurement with the SAP S/4HANA Digital Core and SAP Ariba Solutions
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba SolutionsSAP Ariba
 
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421SAP Ariba
 
SAP Ariba Procurement and SAP Fieldglass Solution Integration
SAP Ariba Procurement and SAP Fieldglass Solution IntegrationSAP Ariba Procurement and SAP Fieldglass Solution Integration
SAP Ariba Procurement and SAP Fieldglass Solution IntegrationSAP Ariba
 
Changing Dynamics: Driving Direct Materials Sourcing and Supplier Collaboration
Changing Dynamics: Driving Direct Materials Sourcing and Supplier CollaborationChanging Dynamics: Driving Direct Materials Sourcing and Supplier Collaboration
Changing Dynamics: Driving Direct Materials Sourcing and Supplier CollaborationSAP Ariba
 
Sourcing and Procurement Excellence in a Networked World
Sourcing and Procurement Excellence in a Networked WorldSourcing and Procurement Excellence in a Networked World
Sourcing and Procurement Excellence in a Networked WorldSAP Ariba
 
On Demand Spend Visibility Town Hall
On Demand Spend Visibility Town HallOn Demand Spend Visibility Town Hall
On Demand Spend Visibility Town HallSAP Ariba
 
Town Hall – On Demand Spend Visibility
Town Hall – On Demand Spend Visibility Town Hall – On Demand Spend Visibility
Town Hall – On Demand Spend Visibility SAP Ariba
 
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...SAP Ariba
 
SAP Procurement with Purpose for Social Enterpises and Ariba Walkthrough
SAP Procurement with Purpose for Social Enterpises and Ariba WalkthroughSAP Procurement with Purpose for Social Enterpises and Ariba Walkthrough
SAP Procurement with Purpose for Social Enterpises and Ariba WalkthroughMark Horoszowski
 
On Demand Invoicing Town Hall
On Demand Invoicing Town HallOn Demand Invoicing Town Hall
On Demand Invoicing Town HallSAP Ariba
 

Similar to Moving to the Cloud: Adopting & Integrating the SAP Ariba Portfolio in your SAP Landscape (20)

Where Did All the Savings Go?
Where Did All the Savings Go?Where Did All the Savings Go?
Where Did All the Savings Go?
 
Joint Ariba SAP Roadmap
Joint Ariba SAP RoadmapJoint Ariba SAP Roadmap
Joint Ariba SAP Roadmap
 
Analyze To Manage Ariba Network Solutions for SAP Customers
Analyze To Manage Ariba Network Solutions for SAP CustomersAnalyze To Manage Ariba Network Solutions for SAP Customers
Analyze To Manage Ariba Network Solutions for SAP Customers
 
Ariba Town Hall for Sellers
Ariba Town Hall for SellersAriba Town Hall for Sellers
Ariba Town Hall for Sellers
 
SAP Ariba NextGen Platform
SAP Ariba  NextGen PlatformSAP Ariba  NextGen Platform
SAP Ariba NextGen Platform
 
Ariba Town Hall for Sellers
Ariba Town Hall for SellersAriba Town Hall for Sellers
Ariba Town Hall for Sellers
 
Network Town Hall
Network Town HallNetwork Town Hall
Network Town Hall
 
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...
SAP Runs Ariba: How SAP is Extending Our Own SRM Deployment by Leveraging the...
 
Network Town Hall
Network Town HallNetwork Town Hall
Network Town Hall
 
Spend Analysis: It’s What You Do With it That Matters
Spend Analysis: It’s What You Do With it That MattersSpend Analysis: It’s What You Do With it That Matters
Spend Analysis: It’s What You Do With it That Matters
 
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba Solutions
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba SolutionsTransform Procurement with the SAP S/4HANA Digital Core and SAP Ariba Solutions
Transform Procurement with the SAP S/4HANA Digital Core and SAP Ariba Solutions
 
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421
Five Secrets of Moving Procurement to the Awesomeness of the Cloud - SID 51421
 
SAP Ariba Procurement and SAP Fieldglass Solution Integration
SAP Ariba Procurement and SAP Fieldglass Solution IntegrationSAP Ariba Procurement and SAP Fieldglass Solution Integration
SAP Ariba Procurement and SAP Fieldglass Solution Integration
 
Changing Dynamics: Driving Direct Materials Sourcing and Supplier Collaboration
Changing Dynamics: Driving Direct Materials Sourcing and Supplier CollaborationChanging Dynamics: Driving Direct Materials Sourcing and Supplier Collaboration
Changing Dynamics: Driving Direct Materials Sourcing and Supplier Collaboration
 
Sourcing and Procurement Excellence in a Networked World
Sourcing and Procurement Excellence in a Networked WorldSourcing and Procurement Excellence in a Networked World
Sourcing and Procurement Excellence in a Networked World
 
On Demand Spend Visibility Town Hall
On Demand Spend Visibility Town HallOn Demand Spend Visibility Town Hall
On Demand Spend Visibility Town Hall
 
Town Hall – On Demand Spend Visibility
Town Hall – On Demand Spend Visibility Town Hall – On Demand Spend Visibility
Town Hall – On Demand Spend Visibility
 
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...
Using SAP Ariba Solutions to Drive Visibility into Direct Materials and Merch...
 
SAP Procurement with Purpose for Social Enterpises and Ariba Walkthrough
SAP Procurement with Purpose for Social Enterpises and Ariba WalkthroughSAP Procurement with Purpose for Social Enterpises and Ariba Walkthrough
SAP Procurement with Purpose for Social Enterpises and Ariba Walkthrough
 
On Demand Invoicing Town Hall
On Demand Invoicing Town HallOn Demand Invoicing Town Hall
On Demand Invoicing Town Hall
 

More from SAP Ariba

WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...
WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...
WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...SAP Ariba
 
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...SAP Ariba
 
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...SAP Ariba
 
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473SAP Ariba
 
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538SAP Ariba
 
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...SAP Ariba
 
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255SAP Ariba
 
Preparing for Awesomeness: 12 Keys to Success - SID 51270
Preparing for Awesomeness: 12 Keys to Success - SID 51270Preparing for Awesomeness: 12 Keys to Success - SID 51270
Preparing for Awesomeness: 12 Keys to Success - SID 51270SAP Ariba
 
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254Paperless Supply Chain Collaboration at DuluxGroup - SID 51254
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254SAP Ariba
 
Leading Change and Diversity in Procurement - SID 51537
Leading Change and Diversity in Procurement - SID 51537Leading Change and Diversity in Procurement - SID 51537
Leading Change and Diversity in Procurement - SID 51537SAP Ariba
 
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...Key Strategies for Procurement to Increase Savings and Contribute to Strategi...
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...SAP Ariba
 
Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413SAP Ariba
 
Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413SAP Ariba
 
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373SAP Ariba
 
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...SAP Ariba
 
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...SAP Ariba
 
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263SAP Ariba
 
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...SAP Ariba
 
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...SAP Ariba
 
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...SAP Ariba
 

More from SAP Ariba (20)

WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...
WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...
WINC. Australia and New Zealand: Collaborating with Direct Spend Suppliers - ...
 
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...
Using E-Commerce to Integrate Your Collaborative Business Transactions - SID ...
 
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...
The Road to Strategic Finance: Characteristics of a Highly Effective Finance ...
 
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473
The Future of How Work Gets Done: Are You Seeing the Big Picture? - SID 51473
 
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538
Simplify Supplier Risk Management Across Your Procurement Processes - SID 51538
 
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...
SAP Ariba Solutions Realized: Stories of Effective Implementation and Forward...
 
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255
Rio Tinto: Sourcing Multiple Spend Categories in a Single Platform - SID 51255
 
Preparing for Awesomeness: 12 Keys to Success - SID 51270
Preparing for Awesomeness: 12 Keys to Success - SID 51270Preparing for Awesomeness: 12 Keys to Success - SID 51270
Preparing for Awesomeness: 12 Keys to Success - SID 51270
 
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254Paperless Supply Chain Collaboration at DuluxGroup - SID 51254
Paperless Supply Chain Collaboration at DuluxGroup - SID 51254
 
Leading Change and Diversity in Procurement - SID 51537
Leading Change and Diversity in Procurement - SID 51537Leading Change and Diversity in Procurement - SID 51537
Leading Change and Diversity in Procurement - SID 51537
 
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...Key Strategies for Procurement to Increase Savings and Contribute to Strategi...
Key Strategies for Procurement to Increase Savings and Contribute to Strategi...
 
Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413
 
Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413Redefining Procurement Transformation in the Digital Age - SID 51413
Redefining Procurement Transformation in the Digital Age - SID 51413
 
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373
Recent Innovations in Sourcing, Contracts, and Spend Visibility - SID 51373
 
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...
More Ways to Buy Means More Savings: Maximizing the Value of SAP Ariba Soluti...
 
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...
How to Get Mass Supplier Enablement: Transform Your Supplier Enablement Progr...
 
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263
How to Craft a World-Class Commerce Program with Your Suppliers - SID 51263
 
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...
How Procurement Leaders Are Changing to Manage in the Digital Economy - SID 5...
 
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
 
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
How Do Our Most Successful Customers Do It? The Must-Have Ingredients for Val...
 

Recently uploaded

Investment in The Coconut Industry by Nancy Cheruiyot
Investment in The Coconut Industry by Nancy CheruiyotInvestment in The Coconut Industry by Nancy Cheruiyot
Investment in The Coconut Industry by Nancy Cheruiyotictsugar
 
IoT Insurance Observatory: summary 2024
IoT Insurance Observatory:  summary 2024IoT Insurance Observatory:  summary 2024
IoT Insurance Observatory: summary 2024Matteo Carbone
 
Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Riya Pathan
 
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCRashishs7044
 
Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Seta Wicaksana
 
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...ShrutiBose4
 
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCRashishs7044
 
Digital Transformation in the PLM domain - distrib.pdf
Digital Transformation in the PLM domain - distrib.pdfDigital Transformation in the PLM domain - distrib.pdf
Digital Transformation in the PLM domain - distrib.pdfJos Voskuil
 
NewBase 19 April 2024 Energy News issue - 1717 by Khaled Al Awadi.pdf
NewBase  19 April  2024  Energy News issue - 1717 by Khaled Al Awadi.pdfNewBase  19 April  2024  Energy News issue - 1717 by Khaled Al Awadi.pdf
NewBase 19 April 2024 Energy News issue - 1717 by Khaled Al Awadi.pdfKhaled Al Awadi
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...ssuserf63bd7
 
India Consumer 2024 Redacted Sample Report
India Consumer 2024 Redacted Sample ReportIndia Consumer 2024 Redacted Sample Report
India Consumer 2024 Redacted Sample ReportMintel Group
 
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607dollysharma2066
 
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu MenzaYouth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menzaictsugar
 
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCRashishs7044
 
Islamabad Escorts | Call 03070433345 | Escort Service in Islamabad
Islamabad Escorts | Call 03070433345 | Escort Service in IslamabadIslamabad Escorts | Call 03070433345 | Escort Service in Islamabad
Islamabad Escorts | Call 03070433345 | Escort Service in IslamabadAyesha Khan
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Kirill Klimov
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfRbc Rbcua
 
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCRashishs7044
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfrichard876048
 

Recently uploaded (20)

Investment in The Coconut Industry by Nancy Cheruiyot
Investment in The Coconut Industry by Nancy CheruiyotInvestment in The Coconut Industry by Nancy Cheruiyot
Investment in The Coconut Industry by Nancy Cheruiyot
 
IoT Insurance Observatory: summary 2024
IoT Insurance Observatory:  summary 2024IoT Insurance Observatory:  summary 2024
IoT Insurance Observatory: summary 2024
 
Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737Independent Call Girls Andheri Nightlaila 9967584737
Independent Call Girls Andheri Nightlaila 9967584737
 
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
 
Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...
 
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...
Ms Motilal Padampat Sugar Mills vs. State of Uttar Pradesh & Ors. - A Milesto...
 
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR
8447779800, Low rate Call girls in Shivaji Enclave Delhi NCR
 
Digital Transformation in the PLM domain - distrib.pdf
Digital Transformation in the PLM domain - distrib.pdfDigital Transformation in the PLM domain - distrib.pdf
Digital Transformation in the PLM domain - distrib.pdf
 
NewBase 19 April 2024 Energy News issue - 1717 by Khaled Al Awadi.pdf
NewBase  19 April  2024  Energy News issue - 1717 by Khaled Al Awadi.pdfNewBase  19 April  2024  Energy News issue - 1717 by Khaled Al Awadi.pdf
NewBase 19 April 2024 Energy News issue - 1717 by Khaled Al Awadi.pdf
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...
 
Corporate Profile 47Billion Information Technology
Corporate Profile 47Billion Information TechnologyCorporate Profile 47Billion Information Technology
Corporate Profile 47Billion Information Technology
 
India Consumer 2024 Redacted Sample Report
India Consumer 2024 Redacted Sample ReportIndia Consumer 2024 Redacted Sample Report
India Consumer 2024 Redacted Sample Report
 
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
 
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu MenzaYouth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
Youth Involvement in an Innovative Coconut Value Chain by Mwalimu Menza
 
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR8447779800, Low rate Call girls in Tughlakabad Delhi NCR
8447779800, Low rate Call girls in Tughlakabad Delhi NCR
 
Islamabad Escorts | Call 03070433345 | Escort Service in Islamabad
Islamabad Escorts | Call 03070433345 | Escort Service in IslamabadIslamabad Escorts | Call 03070433345 | Escort Service in Islamabad
Islamabad Escorts | Call 03070433345 | Escort Service in Islamabad
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdf
 
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR
8447779800, Low rate Call girls in Kotla Mubarakpur Delhi NCR
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdf
 

Moving to the Cloud: Adopting & Integrating the SAP Ariba Portfolio in your SAP Landscape

  • 1. Moving to the Cloud: Adopting & Integrating the SAP Ariba Portfolio in your SAP Landscape Lakshmi Hanspal, Chief Security Officer, SAP Ariba / October 26, 2016
  • 2. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 2Public
  • 3. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 3Public Forward looking statements Important Notice SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this document or any related presentation, or to develop or release any functionality mentioned therein. This document, or any related presentation, and SAP SE’s or its affiliated companies’ strategy and possible future developments, products, and/or platform directions and functionality are all subject to change and may be changed by SAP SE or its affiliated companies at any time for any reason without notice. The information in this document is not a commitment, promise, or legal obligation to deliver any material, code, or functionality. All forward-looking statements are subject to various risks and uncertainties that could cause actual results to differ materially from expectations. Readers are cautioned not to place undue reliance on these forward-looking statements, and they should not be relied upon in making purchasing decisions.
  • 4. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 4Public Decision makers today have two fundamental choices to address their business need Business need Source globally, streamline procurement, execute business transactions efficiently Networked solution • Deploy application in cloud • Invite suppliers to collaborate throughout the process • Exchange documents electronically through business network • Leverage integrated channels and achieve transparency in invoicing and payments Choice Traditional application • Deploy application on premise or in house • Use phone/e-mail/letters/meetings to collaborate with suppliers • Send and receive documents through e-mail/fax/paper/EDI • Leverage out-of-band channels for invoicing and payments
  • 5. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 5Public A network approach is attractive, but companies need to protect their data and their business relationships • Achieve legal compliance such as fulfilling data protection requirements • Ensure information relating to individuals is protected in storage and processing Protect personal data • Store business data safely • Transmit transactional data securely • Prohibit unauthorized access to data Protect trade secrets
  • 6. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 6Public A network approach is attractive, but companies need to protect their data and their business relationships • Achieve legal compliance such as fulfilling data protection requirements • Ensure information relating to individuals is protected in storage and processing Protect personal data • Store business data safely • Transmit transactional data securely • Prohibit unauthorized access to data Protect trade secrets
  • 7. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 7Public Protect personal data: top concerns of data protection officers and works councils to comply with data protection laws * SAP Ariba solutions use a new brand name that was launched in January 2016. Ariba continues to operate as a separate legal entity. Type of personal data What type of personal data is collected when using SAP Ariba* solutions? Is there any sensitive personal data involved? Where personal data is stored What is the physical location of data and where is it processed? Where personal data transferred is to How do SAP and Ariba approach the legality of transferring personal data internationally? Who has access to personal data Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have access to the personal data? How personal data is protected What technical and organizational measures are in place to protect personal data from unauthorized access, use, or disclosure?
  • 8. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 8Public Type of personal data What type of personal data is collected when using SAP Ariba solutions? Is any sensitive personal data involved? • SAP Ariba solutions contain simple business contact information about individuals as users or business contacts but should NOT contain any sensitive personal data (individual healthcare data, individual financial information, religious affiliation, and the like). • The Ariba Privacy Statement prohibits use of the solutions for processing sensitive personal data. Personal data potentially associated to users in SAP Ariba solutions is business contact information: • E-mail address • Employee number • Employee name • Business phone • Business fax • Alternate e-mail addresses • Business postal address
  • 9. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 9Public Where personal data is stored/processed What is the physical location of data, and where and by whom is it processed? Illustrative example for cloud application in European data center Network traffic orchestrated at global hub in the United States • Customer (buyers) have the option to run solutions such as Ariba Procure-to-Pay in the European data center. • Personal data of customer (buyer) users is administered in the selected application data center. • Most SAP Ariba solutions exchange data with the Ariba Network (operated in the United States) to facilitate communication with suppliers. • Such communications and exchange of documents can include personal data such as contact info on a purchase order. • Data flow between regional data centers and the Ariba Network is carried over secure encrypted connection. • The supplier profiles are stored in the Ariba Network data center. Buyers and suppliers want to trade globally to increase the selection of vendors and to reach more customers. This requires a global platform, enabled by the Ariba Network.
  • 10. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 10Public Data category Upstream (sourcing, contracts) Downstrea m (procure to pay) Ariba Network Data in EU Data in global DC (located in U.S.) Notes Employee data Yes Yes Yes Yes Possible If a user from the customer organization is logging into the Ariba Network, then some identifying fields might need to be stored in the U.S. data center (DC) Contracts Yes No No Yes No Supplier contracts Yes No No Yes No Contract remains in EU data center Supplier contracts Yes No Yes Yes Yes If POs are generated based on contracts and routed through Ariba Network, then the PO copy will be stored in the network in the U.S. DC. The PO copy may contain the contract ID. Bill of material/item list Yes No No Yes No Commercial data Yes No No Yes No All data in EU if all commercial data is to support setting up sourcing events only Commercial data procurement Yes Yes Yes Yes Yes All documents which are exchanged with the supplier as part of P2P (such as goods receipt) will routed through the AN so US. Drawings Yes No No Yes No RFx attachments, then EU only Product, product information Yes Yes Yes Yes Yes Supplier imports catalogs into Ariba Network, then catalogs will be stored in the network in the U.S. DC. But if buyer creates catalog it will remain in the EU. Supplier data general Yes Yes Yes Yes Yes Portal for suppliers data entry into SAP Ariba applications is through Ariba Network, so supplier data will be stored in the network in the U.S. DC. Rest of communication will be stored in EU DC Supplier know-how Yes No No Yes No If part of a response to sourcing event data in EU Supplier price information Yes No No Yes No Response to sourcing event ‒ data in EU Master data in R/3 Yes No No Yes No No master data in Ariba Network, only transactional data Where personal data is transferred to How do we approach the legality of transferring personal data internationally? Transfer to Ariba The Ariba contract contains Ariba’s obligations regarding personal data processing, customer consent to transfer personal data, and agreement to obtain consent for the processing of such data. Transfer by Ariba Ariba maintains data transfer agreements with SAP and Ariba affiliates and subprocessors that comply with the EU requirements for personal data transfer. * Using the data enrichment service involves sending procurement data into the U.S. network data center for data enrichment (transfer does not involve personal data) to allow for spend visibility. EU data center customers:  Data, including user administration data, entered by the buyer into upstream (Ariba Sourcing, Ariba Contract Management) and downstream (Ariba Procure-to-Pay) solutions is stored in the EU data center.*  Once a purchase order (PO) is sent by the buyer, it is routed to the Ariba Network (U.S. server) for access by your supplier or further routing to the supplier (similar to sending a PO by e-mail on the Internet).  Suppliers route invoices through the Ariba Network (U.S. server) to the buyer.  Suppliers self-maintain their data (invoices, master data, and catalogs) globally through the Ariba Network (U.S. server).  Certain transaction history is available to buyers through direct access to the Ariba Network.  User credentials allowing buyer-side users to access the Ariba Network are stored on the Ariba Network (U.S. server).
  • 11. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 11Public SAP’s contractual approach to data protection SAP has unified the approach for all its cloud solutions with the data processing agreement (DPA).  The DPA goes beyond standard contractual clauses in providing privacy assurances.  The DPA incorporates an unmodified version of standard contractual clauses that control in case of conflict with rest of the DPA.  The DPA defines terms – such as SAP as “processor” and “importer,” customer as “controller” and “exporter.”  Customer HQ can sign the amendment on behalf of its EU affiliates; affiliates may sign an accession document with HQ and be considered parties to the clauses.  SAP has intercompany agreements with SAP affiliates and data processing agreements with partners (subprocessors).  The DPA lists data protection policies, procedures, standards, and certifications.  It includes rights and obligations with respect to technical and organizational measures (such as monitoring, incidents, notifications).  Data privacy measures for SAP Ariba solutions are aligned with the SAP Data Privacy Office, and we have our own data privacy officer.
  • 12. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 12Public Who has access to personal data Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have access to the personal data?  Customer acts as the data controller concerning personal data.  SAP acts as data processor and processes personal data in accordance with customer instructions.  For processing personal data, SAP and its subprocessors will use only personnel who are reliable and subject to a binding obligation to observe data secrecy or secrecy of telecommunications, to the extent applicable, pursuant to the applicable data protection law.  Technical and organizational measures are in place to secure and protect personal data.  SAP may engage subcontractors for processing of personal data; however, SAP stays fully responsible. Customers can review the list of subprocessors.  Subcontractors are carefully selected with objection right for customer, and subcontractors not operating in the EU sign the standard contractual clauses.  Customer has defined monitoring rights.  SAP will cooperate with customer to address any personal data deletion or modification requests. “Data controller” as defined in the applicable data protection law “Data processor” as defined in the applicable data protection law “Data exporter” is the customer as listed in an order form or its data controller(s) “Standard contractual clauses” as per Directive 95/46/EC “Subprocessor” – SAP affiliates and third-party subprocessors engaged by SAP or SAP’s affiliates
  • 13. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 13Public How personal data is protected What technical and organizations measures are in place to protect the personal data from unauthorized access, use, or disclosure? ORGANIZATIONAL AND TECHNICAL MEASURES IN PLACE Data control • Data protection controls (at rest) • Electronic transfer controls (in transit) • Data protection agreement Access control • General measures and policies on access control • Layered protection such as multifactor • Special areas (for example, data center, file storage rooms) • Training and awareness for employees • Authorization using roles and privileges • Access protection, logging Threat control • Logging and monitoring • Analysis of event correlation Vendor control • Due diligence on selection of contractors and contracts • Periodic reassessment of vendor compliance Availability control • Guaranteeing routine operation • Emergency measures • Database backup • Database restoration Network control • Separation of production and development environments INDEPENDENT AUDITS CERTIFY SECURITY CONTROLS • Periodic audits performed by reputed independent third- party organizations • Ariba data centers are certified for the payment card industry data security standard of PCI DSS  Designed for computer networks that handle credit card transactions, covering people, processes, technologies, locations • Ariba data centers are certified for AICPA (American Institute of Certified Public Accountants) SOC 1 and SOC 2 certifications  Service Organization Control reports to assess and address risk with outsourced services around security, availability, integrity and confidentiality • Ariba data centers are certified for AICPA (American Institute of Certified Public Accountants) and CICA (Canadian Institute of Chartered Accountants) SOC 3 WebTrust certifications  Seal awarded to businesses that consistently adhere to defined security and privacy standards
  • 14. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 14Public Protect personal data: Top concerns of data protection officers and works councils to comply with data protection laws Type of personal data What type of personal data is collected during use of SAP Ariba solutions? Is there any sensitive personal data involved? Where personal data is stored What is the physical location of data and where is it processed? Where personal data transferred is to How do SAP and Ariba approach the legality of transferring personal data internationally? Who has access to personal data Which companies are involved with SAP or Ariba as subprocessors or integrated services providers and may have access to the personal data? How personal data is protected What technical and organizational measures are in place to protect personal data from unauthorized access, use, or disclosure?     
  • 15. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 15Public A network approach is attractive, but companies need to protect their data and their business relationships • Achieve legal compliance such as fulfilling data protection requirements • Ensure information relating to individuals is protected in storage and processing Protect personal data • Store business data safely • Transmit transactional data securely • Prohibit unauthorized access to data Protect trade secrets
  • 16. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 16Public Trust model for SAP Ariba solutions Securing the software development lifecycle Guarding your data against internal and external risks Access through least privilege/“need-to-know basis” Environment segmentation and demarcation Resiliency as core competency High availability, monitoring, and business continuity SAP leverages a holistic, multidimensional approach to establish and maintain state-of- the-art security and privacy. Security and privacy Technology Processes People Scoping
  • 17. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 17Public Data protection and privacy ‒ layers of assurance Goal: Protection of individuals’ the rights Legal and contract Data processing agreement that meets applicable local data privacy regulations globally, provides transparency, and limits liability Technical and organizational measures (TOM) ‒ for example, incident management Audit and certification Certifications providing independent evidence for security, confidentiality, availability, data protection and quality Policies and procedures Integrated management system for information security, data protection, and service delivery Comprehensive security architecture covering application, processing systems, and network
  • 18. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 18Public Protecting commerce in the cloud – current and future Current Secure software development Patching, vulnerability, and incident response Physical security, segregation, and intrusion prevention Application, platform, and network security, data segregation, and intrusion prevention Encryption, certificates, and key management Availability and data management Risk management and audit Internal security policies and procedures Future (2016) Connectivity and customer adoption  Certificates  Transport protocols  Cipher suites  HTTP Strict Transport Security Header (HSTS) Data encryption ActiveX replacement Future (beyond 2016)  Advanced support access controls  Authentication enhancements  Enhanced data deletion
  • 19. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 19Public A network approach is attractive, but companies need to protect their data and their business relationships • Achieve legal compliance such as fulfilling data protection requirements • Ensure information relating to individuals is protected in storage and processing Protect personal data • Store business data safely • Transmit transactional data securely • Prohibit unauthorized access to data Protect trade secrets 
  • 20. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 20Public You and SAP – partners in protecting your digital commerce What are best practices you can establish as part of leveraging SAP Ariba solutions ? Single sign on (SSO): Leverage SSO authentication to streamlined identity and access management Access reviews: Perform periodic access reviews of your users’ access to SAP Ariba solutions Segregation of duties: Ensure that users are in defined business roles and that conflict of interest in conducting business is prevented by segregating roles and requiring access approval workflow Supplier linkages: Ensure that linkages can be initiated only by suppliers; review the accuracy and relevance of your current linkages Works council: Follow best practices to engage early and leverage expertise Compliance: As the data controller, the customer has primary responsibility for compliance; for ensuring that legally adequate data processing methods are in place; for obtaining end user consent for use of personal data (some countries require this); and for ensuring that sensitive personal information such as SSN is not in the solution.
  • 21. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 21Public Protecting customers’ personal and business data  Management is accountable for committing time, effort, funding, and resources to data protection.  Management is accountable for selecting controls based on risk acceptance and for enforcing those controls within the organization. Management commitment  Demonstrate proactive compliance with regulators  Use common framework for other standards and regulatory requirements  Reduce liability risk Compliance and legal requirements  Validate security and privacy practices and provide confidence in the use of third parties  Use an approach that is consistent with other cloud companies Building and maintaining trust  Increase awareness of data protection within the organization  Provide appropriate protection of cloud assets  Gain efficiencies through repeatable processes for compliance monitoring; ensure that controls are effectively measured and reported Continual improvement
  • 22. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 22Public Confidence in the cloud with SAP Cloud Secure SAP Cloud Secure Comprehensive contracts Privacy, security framework, applicable local regulations Cyber defense Multiple layers of defense, holistic: prevent, detect, remediate Independent audits Service organization report certifications Secure cloud model Holistic approach, secure architecture
  • 23. Thank You and Q&A Lakshmi Hanspal, Chief Security Officer Lakshmi.Hanspal@sap.com
  • 24. © 2016 SAP SE or an SAP affiliate company. All rights reserved. 24Public No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP SE or an SAP affiliate company. SAP and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP SE (or an SAP affiliate company) in Germany and other countries. Please see http://global12.sap.com/corporate-en/legal/copyright/index.epx for additional trademark information and notices. Some software products marketed by SAP SE and its distributors contain proprietary software components of other software vendors. National product specifications may vary. These materials are provided by SAP SE or an SAP affiliate company for informational purposes only, without representation or warranty of any kind, and SAP SE or its affiliated companies shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP SE or SAP affiliate company products and services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as constituting an additional warranty. In particular, SAP SE or its affiliated companies have no obligation to pursue any course of business outlined in this document or any related presentation, or to develop or release any functionality mentioned therein. This document, or any related presentation, and SAP SE’s or its affiliated companies’ strategy and possible future developments, products, and/or platform directions and functionality are all subject to change and may be changed by SAP SE or its affiliated companies at any time for any reason without notice. The information in this document is not a commitment, promise, or legal obligation to deliver any material, code, or functionality. All forward-looking statements are subject to various risks and uncertainties that could cause actual results to differ materially from expectations. Readers are cautioned not to place undue reliance on these forward-looking statements, which speak only as of their dates, and they should not be relied upon in making purchasing decisions. © 2016 SAP SE or an SAP affiliate company. All rights reserved.