SlideShare a Scribd company logo
1 of 11
Download to read offline
1




                                                        ®
       the security company for SAP environments


                          ®
the security company for SAP environments
                                            © axl & trax, all rights reserved
2
table of contents



       who we are
       affiliations and partnerships
       mission and principles
       expertise
       services and solutions portfolio
       approach: efficiency and quality
       an example of our services
          review of the authorization concept
       references of customers served




                          ®
the security company for SAP environments
                                            © axl & trax, all rights reserved
3
who we are



    fact sheet
      15 years expertise
      consultant, adviser, trainer and keynote speaker
      over 20 dedicated GRC, IAM,
      authorizations and security experts
      more than 200 customers served




                          ®
the security company for SAP environments
                                            © axl & trax, all rights reserved
4
affiliations and partnerships


affiliations                                partnerships




                          ®
the security company for SAP environments
                                             © axl & trax, all rights reserved
5
our mission and principles

     we focus 100% on risk, security and internal controls
         SAP security is our core business
     we are the bridge between business and IT
         combining theoretical with strong practical experience
         utilizing sound knowledge of business processes and data flows
         communicating IT security challenges in business language
     our principles
         security is a business issue – IT is a business enabler
         think before you act
         kiss – keep it stupidly simple
         continuous expertise improvement (15 years) with expert-
         consultants certified in the areas of
            auditing: CISA; CIA; …
            security: CISM; CISSP; CGEIT; CRISC…
            SAP, Isabel…



                            ®
the security company for SAP environments
                                               © axl & trax, all rights reserved
6
our expertise



   c-range advisory                         biometric authentication
   consultancy                              identity and access management
   audit and security                       authorization concepts
   governance, risk & compliance            roles building
   training                                 workflow
   tailor-made solutions                    security/risk content (SOD)
                                            ABAP coding security
                                            vulnerability assessment
                                            payment flow security
                                            process controls
                                            quality assurance
                                            licensing (cost control)




                          ®
the security company for SAP environments
                                             © axl & trax, all rights reserved
7
           our services and solutions portfolio
                              assess / improve / implement / monitor
services


                                 access rights
                                   security,
                 strong        process controls,           coding                      perimeter             banking
                                  workflow,
             authentication      PtP review,              security                      security             services
                                 master data
                                  cleansing




                                 SAP                      SAP                            SAP
           Systems            Applications
                                                          ABAP                   Infrastructure
                                                                                                            Isabel
                                                       Development
products




                                                                                                         Isabel Corporate
                                      GRC                                                                  Synchronizer



                                                   ®
           the security company for SAP environments
                                                                     © axl & trax, all rights reserved
8
our approach: efficience and quality


   program /project management
   roadmap approach
   expert knowledge base                                                        strategic
      knowledge network
      SOD matrices
      template roles
      …
                                                                                tactical
   methodology
   best-of-breed tools
   standards                                                                operational
   tailored approach


                 “do not try to reinvent the wheel”
                          ®
the security company for SAP environments
                                            © axl & trax, all rights reserved
9
an example of our services
review of the authorization concept
     get a clear understanding on the :
         quality of the authorization concept
            are there any inconsistencies in the concept implementation ?
            does the concept embrace properly the business requirements?
            is the concept flexible enough for new roll outs and ease of
            maintenance ?
            are the change process and procedures able to prevent concept erosion
            over time ?
         access to (hidden) critical functionality, SAP backdoors, …
         presence of (potential) SoD conflicts?
         root causes of security issues
         security gap between what is granted and what is executed
     plan to reduce any weaknesses and to improve security
     evaluate the value of the security investment
     assess the effectiveness of monitoring
                           ®
the security company for SAP environments
                                              © axl & trax, all rights reserved
10
references of customers served          -   www.axl-
                                            www.axl- trax.com/about/references




                            ®
  the security company for SAP environments
                                                   © axl & trax, all rights reserved
11




                          more info ?
                           contact one of our partners:
                                  johan.hermans
                                  wouter.janssen
                                  frederic.lorand

                               @axl-trax.com
                               @axl-
                               or contact our office:
                                         info@axl-
                        +32 16 311 000 – info@axl -trax.com




                          ®
the security company for SAP environments                                        www.axl-
                                                                                 www.axl -trax.com
                                             © axl & trax, all rights reserved

More Related Content

Viewers also liked

Revista deportistas n42
Revista  deportistas n42Revista  deportistas n42
Revista deportistas n42Silvana Mendez
 
Preconceito Racial
Preconceito RacialPreconceito Racial
Preconceito Racialguestd45c1b
 
2014 Digital Marketing Trends
2014 Digital Marketing Trends2014 Digital Marketing Trends
2014 Digital Marketing Trendsion interactive
 
Programm schweizer gesundheitstagung 2013
Programm schweizer gesundheitstagung 2013Programm schweizer gesundheitstagung 2013
Programm schweizer gesundheitstagung 2013ICV_eV
 
Présentation hôtel Elysées Régencia
Présentation hôtel Elysées RégenciaPrésentation hôtel Elysées Régencia
Présentation hôtel Elysées Régenciaschtroumfette247
 
SEO Orientado a Resultados - Search Masters Brasil 2012
SEO Orientado a Resultados - Search Masters Brasil 2012SEO Orientado a Resultados - Search Masters Brasil 2012
SEO Orientado a Resultados - Search Masters Brasil 2012Gustavo Bacchin
 
Localización de productos y clientes para el exito en el mercado internacional
Localización de productos y clientes para el exito en el mercado internacionalLocalización de productos y clientes para el exito en el mercado internacional
Localización de productos y clientes para el exito en el mercado internacionalSynergo!
 
Workshop bühnenverein-feb11
Workshop bühnenverein-feb11Workshop bühnenverein-feb11
Workshop bühnenverein-feb11Karin Janner
 

Viewers also liked (12)

La feec se adhiere a cehat
La feec se adhiere a cehatLa feec se adhiere a cehat
La feec se adhiere a cehat
 
Revista deportistas n42
Revista  deportistas n42Revista  deportistas n42
Revista deportistas n42
 
eStrategy Magazin 03 / 2014
eStrategy Magazin 03 / 2014eStrategy Magazin 03 / 2014
eStrategy Magazin 03 / 2014
 
Preconceito Racial
Preconceito RacialPreconceito Racial
Preconceito Racial
 
2014 Digital Marketing Trends
2014 Digital Marketing Trends2014 Digital Marketing Trends
2014 Digital Marketing Trends
 
25 corporaciones mas grandes que países
25 corporaciones mas grandes que países25 corporaciones mas grandes que países
25 corporaciones mas grandes que países
 
Programm schweizer gesundheitstagung 2013
Programm schweizer gesundheitstagung 2013Programm schweizer gesundheitstagung 2013
Programm schweizer gesundheitstagung 2013
 
Présentation hôtel Elysées Régencia
Présentation hôtel Elysées RégenciaPrésentation hôtel Elysées Régencia
Présentation hôtel Elysées Régencia
 
SEO Orientado a Resultados - Search Masters Brasil 2012
SEO Orientado a Resultados - Search Masters Brasil 2012SEO Orientado a Resultados - Search Masters Brasil 2012
SEO Orientado a Resultados - Search Masters Brasil 2012
 
Convocatoria Alcublas
Convocatoria AlcublasConvocatoria Alcublas
Convocatoria Alcublas
 
Localización de productos y clientes para el exito en el mercado internacional
Localización de productos y clientes para el exito en el mercado internacionalLocalización de productos y clientes para el exito en el mercado internacional
Localización de productos y clientes para el exito en el mercado internacional
 
Workshop bühnenverein-feb11
Workshop bühnenverein-feb11Workshop bühnenverein-feb11
Workshop bühnenverein-feb11
 

Similar to Introduction to axl & trax

Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Novell
 
Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Novell
 
Requirements Management Office - Strata
Requirements Management Office - Strata Requirements Management Office - Strata
Requirements Management Office - Strata IIBA UK Chapter
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...TransWare AG
 
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Amazon Web Services
 
Asset information management an it perspective b mick arc 2008
Asset information management   an it perspective b mick arc 2008Asset information management   an it perspective b mick arc 2008
Asset information management an it perspective b mick arc 2008ARC Advisory Group
 
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...Amazon Web Services
 
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...Amazon Web Services
 
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...Amazon Web Services
 
Nassers Pitchbook 112109 Blue1
Nassers Pitchbook 112109 Blue1Nassers Pitchbook 112109 Blue1
Nassers Pitchbook 112109 Blue1Nasser J Khan
 
Intro to Aras PLM Software Solutions
Intro to Aras PLM Software SolutionsIntro to Aras PLM Software Solutions
Intro to Aras PLM Software SolutionsAras
 
Keneos SDM BU Presentation
Keneos SDM BU PresentationKeneos SDM BU Presentation
Keneos SDM BU PresentationKeneos
 
Big Data Needs Big Analytics
Big Data Needs Big AnalyticsBig Data Needs Big Analytics
Big Data Needs Big AnalyticsDeepak Ramanathan
 
SAS aster data big data dc presentation public
SAS aster data big data dc presentation publicSAS aster data big data dc presentation public
SAS aster data big data dc presentation publicTeradata Aster
 
ServSolid - An Overview
ServSolid - An OverviewServSolid - An Overview
ServSolid - An Overviewjmathur
 
Sg presentation world wide
Sg presentation world wideSg presentation world wide
Sg presentation world wideanuragonline001
 
SaaS ERP adoption intent: Explaining the South African SME perspective
SaaS ERP adoption intent: Explaining the South African SME perspectiveSaaS ERP adoption intent: Explaining the South African SME perspective
SaaS ERP adoption intent: Explaining the South African SME perspectiveCONFENIS 2012
 
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™ Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™ Symmetry™
 

Similar to Introduction to axl & trax (20)

Hexaware insurance analytics
Hexaware insurance analyticsHexaware insurance analytics
Hexaware insurance analytics
 
Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...
 
Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...Implementing Process Controls and Risk Management with Novell Compliance Mana...
Implementing Process Controls and Risk Management with Novell Compliance Mana...
 
Requirements Management Office - Strata
Requirements Management Office - Strata Requirements Management Office - Strata
Requirements Management Office - Strata
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
 
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AWS re:Invent...
 
Asset information management an it perspective b mick arc 2008
Asset information management   an it perspective b mick arc 2008Asset information management   an it perspective b mick arc 2008
Asset information management an it perspective b mick arc 2008
 
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...
[REPEAT 2] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R2) - AW...
 
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...
[REPEAT] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R) - AWS r...
 
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...
[REPEAT 1] Iterating Towards a Cloud-Enabled IT Organization (ENT204-R1) - AW...
 
Nassers Pitchbook 112109 Blue1
Nassers Pitchbook 112109 Blue1Nassers Pitchbook 112109 Blue1
Nassers Pitchbook 112109 Blue1
 
Intro to Aras PLM Software Solutions
Intro to Aras PLM Software SolutionsIntro to Aras PLM Software Solutions
Intro to Aras PLM Software Solutions
 
Keneos SDM BU Presentation
Keneos SDM BU PresentationKeneos SDM BU Presentation
Keneos SDM BU Presentation
 
Big Data Needs Big Analytics
Big Data Needs Big AnalyticsBig Data Needs Big Analytics
Big Data Needs Big Analytics
 
SAS aster data big data dc presentation public
SAS aster data big data dc presentation publicSAS aster data big data dc presentation public
SAS aster data big data dc presentation public
 
ServSolid - An Overview
ServSolid - An OverviewServSolid - An Overview
ServSolid - An Overview
 
Sg presentation world wide
Sg presentation world wideSg presentation world wide
Sg presentation world wide
 
SaaS ERP adoption intent: Explaining the South African SME perspective
SaaS ERP adoption intent: Explaining the South African SME perspectiveSaaS ERP adoption intent: Explaining the South African SME perspective
SaaS ERP adoption intent: Explaining the South African SME perspective
 
NetWeaver Gateway- Extend the Reach of SAP Applications
NetWeaver Gateway- Extend the Reach of SAP ApplicationsNetWeaver Gateway- Extend the Reach of SAP Applications
NetWeaver Gateway- Extend the Reach of SAP Applications
 
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™ Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™
Secure HANA in the Cloud | Mitigating Internal & External Threats | Symmetry™
 

Introduction to axl & trax

  • 1. 1 ® the security company for SAP environments ® the security company for SAP environments © axl & trax, all rights reserved
  • 2. 2 table of contents who we are affiliations and partnerships mission and principles expertise services and solutions portfolio approach: efficiency and quality an example of our services review of the authorization concept references of customers served ® the security company for SAP environments © axl & trax, all rights reserved
  • 3. 3 who we are fact sheet 15 years expertise consultant, adviser, trainer and keynote speaker over 20 dedicated GRC, IAM, authorizations and security experts more than 200 customers served ® the security company for SAP environments © axl & trax, all rights reserved
  • 4. 4 affiliations and partnerships affiliations partnerships ® the security company for SAP environments © axl & trax, all rights reserved
  • 5. 5 our mission and principles we focus 100% on risk, security and internal controls SAP security is our core business we are the bridge between business and IT combining theoretical with strong practical experience utilizing sound knowledge of business processes and data flows communicating IT security challenges in business language our principles security is a business issue – IT is a business enabler think before you act kiss – keep it stupidly simple continuous expertise improvement (15 years) with expert- consultants certified in the areas of auditing: CISA; CIA; … security: CISM; CISSP; CGEIT; CRISC… SAP, Isabel… ® the security company for SAP environments © axl & trax, all rights reserved
  • 6. 6 our expertise c-range advisory biometric authentication consultancy identity and access management audit and security authorization concepts governance, risk & compliance roles building training workflow tailor-made solutions security/risk content (SOD) ABAP coding security vulnerability assessment payment flow security process controls quality assurance licensing (cost control) ® the security company for SAP environments © axl & trax, all rights reserved
  • 7. 7 our services and solutions portfolio assess / improve / implement / monitor services access rights security, strong process controls, coding perimeter banking workflow, authentication PtP review, security security services master data cleansing SAP SAP SAP Systems Applications ABAP Infrastructure Isabel Development products Isabel Corporate GRC Synchronizer ® the security company for SAP environments © axl & trax, all rights reserved
  • 8. 8 our approach: efficience and quality program /project management roadmap approach expert knowledge base strategic knowledge network SOD matrices template roles … tactical methodology best-of-breed tools standards operational tailored approach “do not try to reinvent the wheel” ® the security company for SAP environments © axl & trax, all rights reserved
  • 9. 9 an example of our services review of the authorization concept get a clear understanding on the : quality of the authorization concept are there any inconsistencies in the concept implementation ? does the concept embrace properly the business requirements? is the concept flexible enough for new roll outs and ease of maintenance ? are the change process and procedures able to prevent concept erosion over time ? access to (hidden) critical functionality, SAP backdoors, … presence of (potential) SoD conflicts? root causes of security issues security gap between what is granted and what is executed plan to reduce any weaknesses and to improve security evaluate the value of the security investment assess the effectiveness of monitoring ® the security company for SAP environments © axl & trax, all rights reserved
  • 10. 10 references of customers served - www.axl- www.axl- trax.com/about/references ® the security company for SAP environments © axl & trax, all rights reserved
  • 11. 11 more info ? contact one of our partners: johan.hermans wouter.janssen frederic.lorand @axl-trax.com @axl- or contact our office: info@axl- +32 16 311 000 – info@axl -trax.com ® the security company for SAP environments www.axl- www.axl -trax.com © axl & trax, all rights reserved