4 April 2023

Mitigating controls – is this a cure for “all evil” in excessive authorization risks in SAP? Part #3/5: How to build a mitigating controls repository?

Building a repository of mitigating controls requires a good understanding of the access risk, the system, and, above all, the context, i.e. business processes (and not […]
26 January 2023

Mitigating controls – is this a cure for “all evil” in excessive authorizations risks in SAP? Part #2/5 – When is it worth creating and when should mitigating controls be avoided?

In the previous part of our series part link, we concluded that managers responsible for business operations must decide when and in what situations the system […]
27 November 2022

Mitigating controls – is this a cure for “all evil” in excessive authorizations risks in SAP? Part # 1/5 – The challenge for mitigating controls

Mitigating controls are control mechanisms implemented in business processes, for the purpose of limiting the access risk coming from the user excessive authorizations granted in ERP […]