Marta Ortona

Recent Posts

SAP Role and User Administration: what are the metrics?

Posted by Marta Ortona on Apr 8, 2022 12:00:00 AM

 

How does one know if you have set up a good authorization concept in SAP??

 

What are the metrics and how to best exploit them? Does a SAP Security Score exist? 

Read More

Topics: User Access Management, autorizzazioni sap, sap custom, Statistiche security SAP

Consultants with production environment access? 5 actions to remember!

Posted by Marta Ortona on Mar 11, 2022 12:00:00 AM

 

Is it really possible that external consultants do not have any access to SAP production systems? 

 

Clearly there are various case studies, occasional or ongoing consultants, for example for maintenance contracts.

 

Is it really necessary to release an access to the production systems even in this last case? Can we control what happens and why it is requested?

Read More

Topics: pfcg, gdpr, sap_all, sod, SAP GRC, consulenti

Change management SAP Security

Posted by Marta Ortona on Feb 18, 2022 12:00:00 AM

Are you an auditor? Or an IT manager who wants to monitor the data of his own SAP systems? 

 

Is it possible to assign privileges without leaving traces or almost?

 

 

That’s why you need to know what are the potential risks in the SAP system and how you can mitigate them!

 

 

Read More

Topics: ABAP, programmazione sicura, sicurezza codice ABAP

10 Tips for a ticket management system!

Posted by Marta Ortona on Jan 28, 2022 12:00:00 AM

Do you have to choose or change the help desk or ticket management system? 

Here are the focus points to consider, based on our experience.

Read More

Topics: ticket management system, security ams

SAP Security Audit Log

Posted by Marta Ortona on Jan 21, 2022 12:00:00 AM

What is it for?

This tool allows you to trace the activities of one or more SAP users at application level. Can also be used to connect SAP to a third SIEM (Security Information and Event Management) or the solution SAP Enterprise Threat Detection (ETD).

Read More

Topics: security audit log, SAP Security, SAP ECC, governance

10 Tips after installing SAP GRC

Posted by Marta Ortona on Jan 7, 2022 12:00:00 AM

 

Have you installed one of SAP GRC Systems? Here you are 10 helpful tips on how to improve the usage of the SAP Governance suite.

 

 

Different systems are covered by the SAP GRC area (Governance, Risk and Compliance). The main ones are:  

  • SAP GRC Access Control
  • SAP GRC Process Control
  • SAP GRC Risk Management
  • SAP Global Trade Services (GTS)
  • SAP Environment, Health and Safety (EHS)
  • SAP Cloud Identity Access Governance

 

10 focus points that you might want to apply! 

Read More

Topics: sod, SAP GRC, identity management system, HANA Security

Basic Role, what is it and what should it contain?

Posted by Marta Ortona on Oct 17, 2019 12:00:00 AM

 

What is the basic role? 

The basic role is a container of some of the permissions that all users should have. 

 

 

It is a set of utilities, not critical and useful in some moments. How should it be build up and what should it contain? 

Read More

Topics: pfcg, gdpr, SAP GRC, access management, ruoli

Yes Subscribe!

Blog Aglea, what you could find out?

Every Friday a new post, interview or content related to SAP Security.

  • Tips on how to design SAP Security
  • How to
  • Checklist
  • Common error and pitfall on security SAP
  • Interview with experts
  • Who we are and Aglea vision on SAP Security

Recent Posts

Post By Topic

See all