on 01-12-2015 3:08 PM
Dear all,
I would like to create a mitigation control.
For this,
- I have created an organization in SPRO
- I have created Access Control Owners in NWBC -> Setup -> AC Owners (2 mitigation approvers, 2 mitigation monitors, 1 risk owner)
When I try to add an owner to my organization, in NWBC --> Setup --> organizations. I select the organization I have created and all is disable. I cannot change. I select "Request change" and I have the following warning message "No Approver Found. Request Change is not possible" but I cannot add owners.
Could you help me please?
Thanks and regards
Mélanie
I am in GRC AC 10.0
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi,
I am viewing your document.
and in step 2,
"NWBC- Master Data – Organization - Assign user in Owner tab. After assigning the user to the organization then user can be maintained as Mitigation Approver/Monitor during Mitigation Control creation workflow." --> I cannot change. I select "Request change" and I have the following warning message "No Approver Found. Request Change is not possible" but I cannot add owners.
Maybe a parameter ? in your screen you have only the button "Save" and "Cancel". I have also "Request Change"...
Regards,
Mélanie
Hi ,
you cannot see this because workflow have been enabled for mitigation controls (see parameter 1061).
You can disable the workflow and make the change or assign an owner to mitigation control (owners tabs - you need to have authorization for this) and select request change. Of course this will depend on your workflow settings, how approve for control change/creation is being identified.
Filip
Hi Melanie,
all workflow available in SAP GRC 10 are being customized in transaction code: GRFNMW_CONFIGURE_WD you can there see if any configuration for Mitigation control maintenance or assignment was done. This can be also accessed via spro/grc/Access control / workflow for access control / MSMP maintenance.
Others workflow in Access Control enabled via parametres (1063,1064) are for function and risk maintenance. Others are being activated by above mentioned tcode.
What SP are you on? Is this 10.0 or 10.1?
Filip
Hi Filip,
I will request to the other team to disable all workflows related to mitigation control to do my part of customizing. With this, it will be ok for you ?
parameter 1063 : NO
parameter 1064 : NO
I am in GRC 10.0.
Component Release SP Level Support Package
SAP_BASIS 702 0014 SAPKB70214
SAP_ABA 702 0014 SAPKA70214
GRCFND_A V1000 0016 SAPK-V1016INGRCFNDA
GRCPINW V1000_700 0016 SAPK-10316INGRCPINW
Thanks
Mélanie
I found !!!!!!!
In the point "Activate Workflow for Master Data Changes" the organization was activated.
I deactivate and now it works!!!!
Do you know what is doing this parameter ?
Another question: to done my tests, I have deleted and recreated my organization. Now I would like to have a clean system with an organization beginning with 50000000. What can I do?
Thanks a lot.
Mélanie
HI Melanie,
this is why I have asked if you are using RM or PC as this settings is mostly relevant to this modules. With this settings you can configure the settings required to activate the workflow for making master data changes in the Process Control and Risk Management applications. To enforce accountability for the changes, you can trigger approval workflows for the master data objects.This enforces an approval process before any change is made to the configured objects.
You can switch it off as this have very limited impact on Access Control.
I am glad I could help.
As per your second question - just setup you organization structure in the way to reflect your need.
Filip
Hi,
thanks for marking my input as helpful:)
For the second question - are you referring to organization name? what you mean to have 5000000 first?
If you refer to name go to spro and to Master data / Create Root Organization Hierarchy
Use as in this Customizing activity, you create the root of the organizational hierarchy.
Next go to NWBC / Master Data / organizations and continue to create as per your need.
Filip
My question is whether the organization structure in ECC system and the GRC organization structure we create are same?
If both are same can we sync the ECC org structure to the GRC system so that it will populate the manager lookup for approval process?
If not same how it differs in GRC comparing to ECC? kindly explain and also suggest how to create a new ORG structure in GRC and populate the managers?
Regards,
NRLK
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.