SlideShare a Scribd company logo
1 of 19
Download to read offline
Copyright Smart ERP Solutions and SafePaaS
Implementing Access and Security Controls across
your Applications
Lewis Hopkins – Applications Consultant
Eduardo Garibaldi – Director, Global Risk Advisory
Copyright Smart ERP Solutions and SafePaaS
Reminders
 A recording of today’s session will be sent to all
registrants shortly after the webinar.
 Phone lines/mics are MUTED.
 There will be a Q & A section at the end of today’s
session. Please use the GoToWebinar “Questions”
feature (not the “Chat” feature) from your control panel
to post a question at any time during the presentation.
Copyright Smart ERP Solutions and SafePaaS
Agenda
• About Smart ERP & SafePaaS
• Access Management
• SafePaaS for managing Access Reviews
• Deployment
• Demo
• Next Steps
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
About SmartERP & SafePaaS
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
Achieve Best-In-Class Performance
Our mission is to provide innovative, configurable, flexible, cost-effective solutions
to common business challenges, enabling our clients to save time,
increase productivity, minimize costs, and maximize their return on investment.
Solutions
Business applications that
offer organizations an
end-to-end solution
providing the right design
and implementation from
start to finish.
Services
A 24/7 seasoned and
experienced staff of
experts to help you
implement your business
solutions efficiently and
effectively at a cost-
effective rate.
Cloud
Cloud applications
provide solutions built on
proven enterprise class
architecture that enable
high configurability and
ease of monitoring.
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
Thought Leadership
• Co-Authored GRC Book: First
book on GRC for Oracle Applications
• Collaborate 18 –GRC Client
Appreciation Dinner
• Oracle Open World – Annual GRC
Dinner on October 2017- San
Francisco, CA
• LinkedIn –FulcrumWay Risk,
Compliance and Audit Software
Group
• International GRC Round Tables –
Sydney, London, Johannesburg,
Dubai See events page for details
SafePaaS
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
Government Oil and Gas
Healthcare
Communications
Financial Services
Transportation Natural ResourcesManufacturing
Retail
High TechMedia/Entertainment Life Sciences
Clients
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
Access Management
Copyright Smart ERP Solutions and SafePaaS
Access Management - Research
User Access – Common
Source of Internal Abuse
A Top Focus for IT Audits
Gartner survey: 44% of IT
audit deficiencies are IAM-
related
Ernst & Young: 7 of Top 10
control deficiencies relate
to user access control
PROTECTED
Information
Entitlement Creep
• Accumulated privileges
• Potential toxic combinations
• Increased risk of fraud
Privileged Users
• Users with “keys to kingdom”
• Poor visibility due to shared
accounts
Rogue Accounts
• Fake accounts created by criminals
• Undetected access and activity
• Data theft, fraud, and abuse
Orphan Accounts
• Poor de-provisioning
• High risk of sabotage, theft, fraud
Copyright Smart ERP Solutions and SafePaaS
Access Management – The Considerations
Access and SoD is not singular to one Application
• Applications are sharing Processes – e.g. Financials with Hyperion (for closing)
• Applications shared across deployments – On Premises and Cloud
How to complete the picture?
Roles, Permission Lists,
Components, Pages, +
Responsibilities, Functions,
Menus, +
Copyright Smart ERP Solutions and SafePaaS
Copyright Smart ERP Solutions and SafePaaS
Benefits
• Move from fragmented approaches
to centralized visibility and control
• Automate identity controls and
business processes
• A business-friendly layer linking
business users and processes to
underlying technology and technical
users
• Actively measures and monitors risk
associated with users and resources
Copyright Smart ERP Solutions and SafePaaS
Process
Provisioning
Life-cycle
Self
Service
Actions
Policy
Evaluation
Issue/
Remediation
Management
Regulatory
Reporting
Business
IT Sec
Help Desk
Users
Risk
Model
?
• Provisioning
&
Directory✗
AccessPaaS
• iAccess
• Roles Manager
• Access Monitor
• Policy Monitor
Copyright Smart ERP Solutions and SafePaaS
Deployment
Cloud or On Premises
Copyright Smart ERP Solutions and SafePaaS
DEMO
Extract from E-Business Suite R12 – Financials
Extract from PeopleSoft 9.2 HCM
Copyright Smart ERP Solutions and SafePaaS
The Bigger Picture
MonitorPaaS
Operations Management
Audit Manager Audit PlannerCompliance Manager
Master Data Monitor
AuditPaaS
Transaction Monitor App Configuration Monitor Rules Repository
Access Monitor SOD Policy Monitor Roles Manager
AccessPaaS
iAccess Policy based provisioning
Issue Manager
Continuous Controls Monitoring
Audit and Compliance Automation
IT Governance
Copyright Smart ERP Solutions and SafePaaS
CCM Benefits
• Complete testing coverage …100%
• Improved timeliness of testing
• Consistent Results
• Remediation based on Trends Analysis
• Lower Risk with Faster Corrective Actions
Copyright Smart ERP Solutions and SafePaaS
Next Steps
• Free Controls consultation
– Current review to desired Outcomes
– Access Controls, SoD, User Provisioning
• Deep Dive Demo
– Review of User Provisioning
– Reports
– Proactively resolving Control issues
Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS
For more information:
www.smarterp.com
Lewis.Hopkins@smarterp.com

More Related Content

What's hot

Happiest Minds Technologies- ComplianceVigil Solution Overview
Happiest Minds Technologies- ComplianceVigil Solution OverviewHappiest Minds Technologies- ComplianceVigil Solution Overview
Happiest Minds Technologies- ComplianceVigil Solution OverviewHappiest Minds Technologies
 
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...BAKOTECH
 
What's New in the Winter '16 Release (4.2)
What's New in the Winter '16 Release (4.2)What's New in the Winter '16 Release (4.2)
What's New in the Winter '16 Release (4.2)AppDynamics
 
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...Are you the next sitting duck that will be moved to the Oracle Cloud as a res...
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...Martin Thompson
 
Identity and Access Management Playbook CISO Platform 2016
Identity and Access Management Playbook CISO Platform 2016Identity and Access Management Playbook CISO Platform 2016
Identity and Access Management Playbook CISO Platform 2016Aujas
 
AppSphere 15 - Achieving Stability and End-to-End Monitoring
AppSphere 15 - Achieving Stability and End-to-End MonitoringAppSphere 15 - Achieving Stability and End-to-End Monitoring
AppSphere 15 - Achieving Stability and End-to-End MonitoringAppDynamics
 
ERP Comes of Age - Anthony W. Perrone 8212015
ERP Comes of Age - Anthony W. Perrone 8212015ERP Comes of Age - Anthony W. Perrone 8212015
ERP Comes of Age - Anthony W. Perrone 8212015Anthony Perrone
 
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations Center
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations CenterAppSphere 15 - AppDynamics: Beyond APM - Building an Operations Center
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations CenterAppDynamics
 
Introduction to appDynamics
Introduction to appDynamics Introduction to appDynamics
Introduction to appDynamics Siddhanta Rath
 
SOUG Day - autonomous what is next
SOUG Day - autonomous what is nextSOUG Day - autonomous what is next
SOUG Day - autonomous what is nextThomas Teske
 
AppSphere 15 - Transforming the Business: The Role of DevOps
AppSphere 15 - Transforming the Business: The Role of DevOpsAppSphere 15 - Transforming the Business: The Role of DevOps
AppSphere 15 - Transforming the Business: The Role of DevOpsAppDynamics
 
Network security in Chennai
Network security  in ChennaiNetwork security  in Chennai
Network security in ChennaiJoshuaMichael01
 
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...AppDynamics
 
Software Asset Management (SAM) Best Practice in Action
Software Asset Management (SAM) Best Practice in ActionSoftware Asset Management (SAM) Best Practice in Action
Software Asset Management (SAM) Best Practice in ActionSoftwareONEPresents
 
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016Martin Thompson
 
AppSphere 15 - Turning to Unified Monitoring & Real-time Application Analytics
AppSphere 15 - Turning to Unified Monitoring & Real-time Application AnalyticsAppSphere 15 - Turning to Unified Monitoring & Real-time Application Analytics
AppSphere 15 - Turning to Unified Monitoring & Real-time Application AnalyticsAppDynamics
 
IT Infrastructure Managed Services and RIMS
IT Infrastructure Managed Services and RIMSIT Infrastructure Managed Services and RIMS
IT Infrastructure Managed Services and RIMSRazak Mohammed Ali
 
AppSphere 15 - APM Adoption within an Energy Supply & Trading Organisation
AppSphere 15 - APM Adoption within an Energy Supply & Trading OrganisationAppSphere 15 - APM Adoption within an Energy Supply & Trading Organisation
AppSphere 15 - APM Adoption within an Energy Supply & Trading OrganisationAppDynamics
 
Onlizer IoT Foundation
Onlizer IoT FoundationOnlizer IoT Foundation
Onlizer IoT FoundationAndriy Deren'
 

What's hot (20)

Happiest Minds Technologies- ComplianceVigil Solution Overview
Happiest Minds Technologies- ComplianceVigil Solution OverviewHappiest Minds Technologies- ComplianceVigil Solution Overview
Happiest Minds Technologies- ComplianceVigil Solution Overview
 
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...
Integrated APT-IGA Solution - Future of IT Security (Vladislav Shapiro, Immer...
 
What's New in the Winter '16 Release (4.2)
What's New in the Winter '16 Release (4.2)What's New in the Winter '16 Release (4.2)
What's New in the Winter '16 Release (4.2)
 
Intelligent Cold Chain using IoT | PrideVel
Intelligent Cold Chain using IoT | PrideVelIntelligent Cold Chain using IoT | PrideVel
Intelligent Cold Chain using IoT | PrideVel
 
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...Are you the next sitting duck that will be moved to the Oracle Cloud as a res...
Are you the next sitting duck that will be moved to the Oracle Cloud as a res...
 
Identity and Access Management Playbook CISO Platform 2016
Identity and Access Management Playbook CISO Platform 2016Identity and Access Management Playbook CISO Platform 2016
Identity and Access Management Playbook CISO Platform 2016
 
AppSphere 15 - Achieving Stability and End-to-End Monitoring
AppSphere 15 - Achieving Stability and End-to-End MonitoringAppSphere 15 - Achieving Stability and End-to-End Monitoring
AppSphere 15 - Achieving Stability and End-to-End Monitoring
 
ERP Comes of Age - Anthony W. Perrone 8212015
ERP Comes of Age - Anthony W. Perrone 8212015ERP Comes of Age - Anthony W. Perrone 8212015
ERP Comes of Age - Anthony W. Perrone 8212015
 
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations Center
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations CenterAppSphere 15 - AppDynamics: Beyond APM - Building an Operations Center
AppSphere 15 - AppDynamics: Beyond APM - Building an Operations Center
 
Introduction to appDynamics
Introduction to appDynamics Introduction to appDynamics
Introduction to appDynamics
 
SOUG Day - autonomous what is next
SOUG Day - autonomous what is nextSOUG Day - autonomous what is next
SOUG Day - autonomous what is next
 
AppSphere 15 - Transforming the Business: The Role of DevOps
AppSphere 15 - Transforming the Business: The Role of DevOpsAppSphere 15 - Transforming the Business: The Role of DevOps
AppSphere 15 - Transforming the Business: The Role of DevOps
 
Network security in Chennai
Network security  in ChennaiNetwork security  in Chennai
Network security in Chennai
 
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...
How Halogen Delivered High-Velocity Operations in a Compliance-Driven Environ...
 
Software Asset Management (SAM) Best Practice in Action
Software Asset Management (SAM) Best Practice in ActionSoftware Asset Management (SAM) Best Practice in Action
Software Asset Management (SAM) Best Practice in Action
 
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016
ITAM vs. ITSM Workshop ITAM Review US Annual Conference 2016
 
AppSphere 15 - Turning to Unified Monitoring & Real-time Application Analytics
AppSphere 15 - Turning to Unified Monitoring & Real-time Application AnalyticsAppSphere 15 - Turning to Unified Monitoring & Real-time Application Analytics
AppSphere 15 - Turning to Unified Monitoring & Real-time Application Analytics
 
IT Infrastructure Managed Services and RIMS
IT Infrastructure Managed Services and RIMSIT Infrastructure Managed Services and RIMS
IT Infrastructure Managed Services and RIMS
 
AppSphere 15 - APM Adoption within an Energy Supply & Trading Organisation
AppSphere 15 - APM Adoption within an Energy Supply & Trading OrganisationAppSphere 15 - APM Adoption within an Energy Supply & Trading Organisation
AppSphere 15 - APM Adoption within an Energy Supply & Trading Organisation
 
Onlizer IoT Foundation
Onlizer IoT FoundationOnlizer IoT Foundation
Onlizer IoT Foundation
 

Similar to Implementing access and security controls across your applications

Gain business insight with Continuous Controls Monitoring
Gain business insight with Continuous Controls MonitoringGain business insight with Continuous Controls Monitoring
Gain business insight with Continuous Controls MonitoringEmma Kelly
 
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle AppsSroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle AppsJane Jones
 
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...Oracle
 
Mann-India_SAP_Service-Offering_GRC
Mann-India_SAP_Service-Offering_GRCMann-India_SAP_Service-Offering_GRC
Mann-India_SAP_Service-Offering_GRCMann-India
 
Understanding New Technology and Security Risks as you respond to COVID-19
Understanding New Technology and Security Risks as you respond to COVID-19Understanding New Technology and Security Risks as you respond to COVID-19
Understanding New Technology and Security Risks as you respond to COVID-19Emma Kelly
 
Dci Pmo+Ecm+Erp Training+Embedded Sm1
Dci Pmo+Ecm+Erp Training+Embedded Sm1Dci Pmo+Ecm+Erp Training+Embedded Sm1
Dci Pmo+Ecm+Erp Training+Embedded Sm1frankkulendran
 
Success with APIs: A Checklist
Success with APIs: A ChecklistSuccess with APIs: A Checklist
Success with APIs: A ChecklistCA Technologies
 
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?FulcrumWay
 
Top Strategies to Modernize Information Management Systems
Top Strategies to Modernize Information Management SystemsTop Strategies to Modernize Information Management Systems
Top Strategies to Modernize Information Management SystemsNuxeo
 
Con8154 controlling for multiple erp systems with oracle advanced controls
Con8154 controlling for multiple erp systems with oracle advanced controlsCon8154 controlling for multiple erp systems with oracle advanced controls
Con8154 controlling for multiple erp systems with oracle advanced controlsOracle
 
Customers talk about controlling access for multiple erp systems with oracle ...
Customers talk about controlling access for multiple erp systems with oracle ...Customers talk about controlling access for multiple erp systems with oracle ...
Customers talk about controlling access for multiple erp systems with oracle ...Oracle
 
FulcrumWay - Implement Effective Access Controls within your Oracle ERP System
FulcrumWay - Implement Effective Access Controls within your Oracle ERP SystemFulcrumWay - Implement Effective Access Controls within your Oracle ERP System
FulcrumWay - Implement Effective Access Controls within your Oracle ERP SystemFulcrumWay
 
XsXprt, a User Access Compliance and License Management tool for SAP
XsXprt, a User Access Compliance and License Management tool for SAPXsXprt, a User Access Compliance and License Management tool for SAP
XsXprt, a User Access Compliance and License Management tool for SAPGourav Ladha
 
CEPTES - Your Trusted Salesforce Partner
CEPTES - Your Trusted Salesforce Partner CEPTES - Your Trusted Salesforce Partner
CEPTES - Your Trusted Salesforce Partner CEPTES Software Inc
 
Corporate Presentation Sigma Infosolutions
Corporate Presentation Sigma InfosolutionsCorporate Presentation Sigma Infosolutions
Corporate Presentation Sigma InfosolutionsSigma Infosolutions, LLC
 
Sap tech ed_Delivering Continuous SAP Solution Availability
Sap tech ed_Delivering Continuous SAP Solution Availability Sap tech ed_Delivering Continuous SAP Solution Availability
Sap tech ed_Delivering Continuous SAP Solution Availability Robert Max
 
The PLM Journey of Justifying Change with Strategic Vision
The PLM Journey of Justifying Change with Strategic VisionThe PLM Journey of Justifying Change with Strategic Vision
The PLM Journey of Justifying Change with Strategic VisionAras
 

Similar to Implementing access and security controls across your applications (20)

Gain business insight with Continuous Controls Monitoring
Gain business insight with Continuous Controls MonitoringGain business insight with Continuous Controls Monitoring
Gain business insight with Continuous Controls Monitoring
 
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle AppsSroaug  October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
Sroaug October 27 2017 Learn to Streamline User Provisioning in Oracle Apps
 
HPE_Software_Portfolio_VKS2016
HPE_Software_Portfolio_VKS2016HPE_Software_Portfolio_VKS2016
HPE_Software_Portfolio_VKS2016
 
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...
Symantec, Facebook and Navillus - a comprehensive approach to securing & moni...
 
Mann-India_SAP_Service-Offering_GRC
Mann-India_SAP_Service-Offering_GRCMann-India_SAP_Service-Offering_GRC
Mann-India_SAP_Service-Offering_GRC
 
Understanding New Technology and Security Risks as you respond to COVID-19
Understanding New Technology and Security Risks as you respond to COVID-19Understanding New Technology and Security Risks as you respond to COVID-19
Understanding New Technology and Security Risks as you respond to COVID-19
 
Dci Pmo+Ecm+Erp Training+Embedded Sm1
Dci Pmo+Ecm+Erp Training+Embedded Sm1Dci Pmo+Ecm+Erp Training+Embedded Sm1
Dci Pmo+Ecm+Erp Training+Embedded Sm1
 
Success with APIs: A Checklist
Success with APIs: A ChecklistSuccess with APIs: A Checklist
Success with APIs: A Checklist
 
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?
FulcrumWay - Planning to Implement, Upgrade or Deploy a New ERP System?
 
Top Strategies to Modernize Information Management Systems
Top Strategies to Modernize Information Management SystemsTop Strategies to Modernize Information Management Systems
Top Strategies to Modernize Information Management Systems
 
Business Intelligenze Corporate
Business Intelligenze CorporateBusiness Intelligenze Corporate
Business Intelligenze Corporate
 
Con8154 controlling for multiple erp systems with oracle advanced controls
Con8154 controlling for multiple erp systems with oracle advanced controlsCon8154 controlling for multiple erp systems with oracle advanced controls
Con8154 controlling for multiple erp systems with oracle advanced controls
 
Customers talk about controlling access for multiple erp systems with oracle ...
Customers talk about controlling access for multiple erp systems with oracle ...Customers talk about controlling access for multiple erp systems with oracle ...
Customers talk about controlling access for multiple erp systems with oracle ...
 
FulcrumWay - Implement Effective Access Controls within your Oracle ERP System
FulcrumWay - Implement Effective Access Controls within your Oracle ERP SystemFulcrumWay - Implement Effective Access Controls within your Oracle ERP System
FulcrumWay - Implement Effective Access Controls within your Oracle ERP System
 
GRC– The Way Forward
GRC– The Way ForwardGRC– The Way Forward
GRC– The Way Forward
 
XsXprt, a User Access Compliance and License Management tool for SAP
XsXprt, a User Access Compliance and License Management tool for SAPXsXprt, a User Access Compliance and License Management tool for SAP
XsXprt, a User Access Compliance and License Management tool for SAP
 
CEPTES - Your Trusted Salesforce Partner
CEPTES - Your Trusted Salesforce Partner CEPTES - Your Trusted Salesforce Partner
CEPTES - Your Trusted Salesforce Partner
 
Corporate Presentation Sigma Infosolutions
Corporate Presentation Sigma InfosolutionsCorporate Presentation Sigma Infosolutions
Corporate Presentation Sigma Infosolutions
 
Sap tech ed_Delivering Continuous SAP Solution Availability
Sap tech ed_Delivering Continuous SAP Solution Availability Sap tech ed_Delivering Continuous SAP Solution Availability
Sap tech ed_Delivering Continuous SAP Solution Availability
 
The PLM Journey of Justifying Change with Strategic Vision
The PLM Journey of Justifying Change with Strategic VisionThe PLM Journey of Justifying Change with Strategic Vision
The PLM Journey of Justifying Change with Strategic Vision
 

Recently uploaded

EY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityEY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityNeo4j
 
Engage Usergroup 2024 - The Good The Bad_The Ugly
Engage Usergroup 2024 - The Good The Bad_The UglyEngage Usergroup 2024 - The Good The Bad_The Ugly
Engage Usergroup 2024 - The Good The Bad_The UglyFrank van der Linden
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software DevelopersVinodh Ram
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...OnePlan Solutions
 
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...MyIntelliSource, Inc.
 
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdf
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdfThe Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdf
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdfkalichargn70th171
 
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...gurkirankumar98700
 
What is Binary Language? Computer Number Systems
What is Binary Language?  Computer Number SystemsWhat is Binary Language?  Computer Number Systems
What is Binary Language? Computer Number SystemsJheuzeDellosa
 
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideBuilding Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideChristina Lin
 
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...stazi3110
 
HR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comHR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comFatema Valibhai
 
Project Based Learning (A.I).pptx detail explanation
Project Based Learning (A.I).pptx detail explanationProject Based Learning (A.I).pptx detail explanation
Project Based Learning (A.I).pptx detail explanationkaushalgiri8080
 
Asset Management Software - Infographic
Asset Management Software - InfographicAsset Management Software - Infographic
Asset Management Software - InfographicHr365.us smith
 
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝soniya singh
 
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...Christina Lin
 
Unit 1.1 Excite Part 1, class 9, cbse...
Unit 1.1 Excite Part 1, class 9, cbse...Unit 1.1 Excite Part 1, class 9, cbse...
Unit 1.1 Excite Part 1, class 9, cbse...aditisharan08
 
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...soniya singh
 
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsUnveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsAlberto González Trastoy
 
The Evolution of Karaoke From Analog to App.pdf
The Evolution of Karaoke From Analog to App.pdfThe Evolution of Karaoke From Analog to App.pdf
The Evolution of Karaoke From Analog to App.pdfPower Karaoke
 
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...kellynguyen01
 

Recently uploaded (20)

EY_Graph Database Powered Sustainability
EY_Graph Database Powered SustainabilityEY_Graph Database Powered Sustainability
EY_Graph Database Powered Sustainability
 
Engage Usergroup 2024 - The Good The Bad_The Ugly
Engage Usergroup 2024 - The Good The Bad_The UglyEngage Usergroup 2024 - The Good The Bad_The Ugly
Engage Usergroup 2024 - The Good The Bad_The Ugly
 
Professional Resume Template for Software Developers
Professional Resume Template for Software DevelopersProfessional Resume Template for Software Developers
Professional Resume Template for Software Developers
 
Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...Advancing Engineering with AI through the Next Generation of Strategic Projec...
Advancing Engineering with AI through the Next Generation of Strategic Projec...
 
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...
Try MyIntelliAccount Cloud Accounting Software As A Service Solution Risk Fre...
 
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdf
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdfThe Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdf
The Essentials of Digital Experience Monitoring_ A Comprehensive Guide.pdf
 
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
(Genuine) Escort Service Lucknow | Starting ₹,5K To @25k with A/C 🧑🏽‍❤️‍🧑🏻 89...
 
What is Binary Language? Computer Number Systems
What is Binary Language?  Computer Number SystemsWhat is Binary Language?  Computer Number Systems
What is Binary Language? Computer Number Systems
 
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop SlideBuilding Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
Building Real-Time Data Pipelines: Stream & Batch Processing workshop Slide
 
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...
Building a General PDE Solving Framework with Symbolic-Numeric Scientific Mac...
 
HR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.comHR Software Buyers Guide in 2024 - HRSoftware.com
HR Software Buyers Guide in 2024 - HRSoftware.com
 
Project Based Learning (A.I).pptx detail explanation
Project Based Learning (A.I).pptx detail explanationProject Based Learning (A.I).pptx detail explanation
Project Based Learning (A.I).pptx detail explanation
 
Asset Management Software - Infographic
Asset Management Software - InfographicAsset Management Software - Infographic
Asset Management Software - Infographic
 
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝
Call Girls in Naraina Delhi 💯Call Us 🔝8264348440🔝
 
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...
ODSC - Batch to Stream workshop - integration of Apache Spark, Cassandra, Pos...
 
Unit 1.1 Excite Part 1, class 9, cbse...
Unit 1.1 Excite Part 1, class 9, cbse...Unit 1.1 Excite Part 1, class 9, cbse...
Unit 1.1 Excite Part 1, class 9, cbse...
 
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...
Russian Call Girls in Karol Bagh Aasnvi ➡️ 8264348440 💋📞 Independent Escort S...
 
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time ApplicationsUnveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
 
The Evolution of Karaoke From Analog to App.pdf
The Evolution of Karaoke From Analog to App.pdfThe Evolution of Karaoke From Analog to App.pdf
The Evolution of Karaoke From Analog to App.pdf
 
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
 

Implementing access and security controls across your applications

  • 1. Copyright Smart ERP Solutions and SafePaaS Implementing Access and Security Controls across your Applications Lewis Hopkins – Applications Consultant Eduardo Garibaldi – Director, Global Risk Advisory
  • 2. Copyright Smart ERP Solutions and SafePaaS Reminders  A recording of today’s session will be sent to all registrants shortly after the webinar.  Phone lines/mics are MUTED.  There will be a Q & A section at the end of today’s session. Please use the GoToWebinar “Questions” feature (not the “Chat” feature) from your control panel to post a question at any time during the presentation.
  • 3. Copyright Smart ERP Solutions and SafePaaS Agenda • About Smart ERP & SafePaaS • Access Management • SafePaaS for managing Access Reviews • Deployment • Demo • Next Steps
  • 4. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS About SmartERP & SafePaaS
  • 5. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS Achieve Best-In-Class Performance Our mission is to provide innovative, configurable, flexible, cost-effective solutions to common business challenges, enabling our clients to save time, increase productivity, minimize costs, and maximize their return on investment. Solutions Business applications that offer organizations an end-to-end solution providing the right design and implementation from start to finish. Services A 24/7 seasoned and experienced staff of experts to help you implement your business solutions efficiently and effectively at a cost- effective rate. Cloud Cloud applications provide solutions built on proven enterprise class architecture that enable high configurability and ease of monitoring.
  • 6. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS Thought Leadership • Co-Authored GRC Book: First book on GRC for Oracle Applications • Collaborate 18 –GRC Client Appreciation Dinner • Oracle Open World – Annual GRC Dinner on October 2017- San Francisco, CA • LinkedIn –FulcrumWay Risk, Compliance and Audit Software Group • International GRC Round Tables – Sydney, London, Johannesburg, Dubai See events page for details SafePaaS
  • 7. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS Government Oil and Gas Healthcare Communications Financial Services Transportation Natural ResourcesManufacturing Retail High TechMedia/Entertainment Life Sciences Clients
  • 8. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS Access Management
  • 9. Copyright Smart ERP Solutions and SafePaaS Access Management - Research User Access – Common Source of Internal Abuse A Top Focus for IT Audits Gartner survey: 44% of IT audit deficiencies are IAM- related Ernst & Young: 7 of Top 10 control deficiencies relate to user access control PROTECTED Information Entitlement Creep • Accumulated privileges • Potential toxic combinations • Increased risk of fraud Privileged Users • Users with “keys to kingdom” • Poor visibility due to shared accounts Rogue Accounts • Fake accounts created by criminals • Undetected access and activity • Data theft, fraud, and abuse Orphan Accounts • Poor de-provisioning • High risk of sabotage, theft, fraud
  • 10. Copyright Smart ERP Solutions and SafePaaS Access Management – The Considerations Access and SoD is not singular to one Application • Applications are sharing Processes – e.g. Financials with Hyperion (for closing) • Applications shared across deployments – On Premises and Cloud How to complete the picture? Roles, Permission Lists, Components, Pages, + Responsibilities, Functions, Menus, +
  • 11. Copyright Smart ERP Solutions and SafePaaS
  • 12. Copyright Smart ERP Solutions and SafePaaS Benefits • Move from fragmented approaches to centralized visibility and control • Automate identity controls and business processes • A business-friendly layer linking business users and processes to underlying technology and technical users • Actively measures and monitors risk associated with users and resources
  • 13. Copyright Smart ERP Solutions and SafePaaS Process Provisioning Life-cycle Self Service Actions Policy Evaluation Issue/ Remediation Management Regulatory Reporting Business IT Sec Help Desk Users Risk Model ? • Provisioning & Directory✗ AccessPaaS • iAccess • Roles Manager • Access Monitor • Policy Monitor
  • 14. Copyright Smart ERP Solutions and SafePaaS Deployment Cloud or On Premises
  • 15. Copyright Smart ERP Solutions and SafePaaS DEMO Extract from E-Business Suite R12 – Financials Extract from PeopleSoft 9.2 HCM
  • 16. Copyright Smart ERP Solutions and SafePaaS The Bigger Picture MonitorPaaS Operations Management Audit Manager Audit PlannerCompliance Manager Master Data Monitor AuditPaaS Transaction Monitor App Configuration Monitor Rules Repository Access Monitor SOD Policy Monitor Roles Manager AccessPaaS iAccess Policy based provisioning Issue Manager Continuous Controls Monitoring Audit and Compliance Automation IT Governance
  • 17. Copyright Smart ERP Solutions and SafePaaS CCM Benefits • Complete testing coverage …100% • Improved timeliness of testing • Consistent Results • Remediation based on Trends Analysis • Lower Risk with Faster Corrective Actions
  • 18. Copyright Smart ERP Solutions and SafePaaS Next Steps • Free Controls consultation – Current review to desired Outcomes – Access Controls, SoD, User Provisioning • Deep Dive Demo – Review of User Provisioning – Reports – Proactively resolving Control issues
  • 19. Copyright Smart ERP Solutions and SafePaaSCopyright Smart ERP Solutions and SafePaaS For more information: www.smarterp.com Lewis.Hopkins@smarterp.com