cancel
Showing results for 
Search instead for 
Did you mean: 

Rule Set

0 Kudos

Hi All,

I am new to SAP field, I need a clarification in GRC. Kindly advice is there any rule set designs to get risk due to conflict in org values ?

Also please clarify - assume i have a parent maintanance role, I am making 3 derived role with various org values. No role level risk is seen in role, but i am getting heavy user Level SOD's !  Experts please clarify me

Accepted Solutions (0)

Answers (3)

Answers (3)

0 Kudos

Hi Baithi and Banzer,

Thanks for your time, Exactly this is being faced by us !

Former Member
0 Kudos

Hi,

Watch out for False positives, which are removed by Org. rule ids. On top of that, check out for Mit. controls, for org. levels.you need to carefully design Org. rule id, create Mitg. controls for Risk, and then apply Mit. Controls to user ids, for chosen org. rule ids

Regards

Plaban

alessandr0
Active Contributor
0 Kudos

Hello,

regarding org values check the following document:

User level SODs come from different role assignments a user have. Role level analysis only analyzes the role, not the user assignments. Hence it is possible that a user has risks as he has several assignment that conflict together.

If you require more details then please share some more information including screenshots.

Thanks and regards,

Alessandro

former_member197694
Active Contributor
0 Kudos

Hello Ashwinth,

Check the below document in link for clarification

Regards

Baithi