
The session demonstrates different GRC components and system Add-ons
The session covers the theoretical aspects of the ARA module and the general terms to be understood before starting the ARA session.
The session describes different rule kinds, and also the theory of all the GRC modules.
The session demonstrates post configuration steps, SICF services, and all the standard SAP GRC delivered BC Sets
This session shows different BC sets that needed to be activated for ARA module.
The session demonstrates standard GRC specific roles.
The session demonstrates standard GRC specific roles' authorizations - 1
The session demonstrates standard GRC specific roles' authorizations - 2
The session demonstrates how to do connector configurations -1
The session demonstrates how to do connector configurations -2
The session demonstrates how to do SPRO configuration related to ARA, how to set parameter ID, and different parameter groups.
The session covers relevant SPRO nodes for ARA configuration.
The session demonstrates how to download the SOD rules.
The session analyzes the downloaded SOD rules files - 1
The session analyzes the downloaded SOD rules files - 2
The session show how to insert entries to the downloaded SOD rules' files.
The session demonstrates how to upload SOD rules, generate SOD rules, and transport SOD rules.
This session covers the creation of functions, risks, rule-set from the NWBC -1/3
This session covers the creation of functions, risks, rule-set from the NWBC -2/3
This session covers the creation of functions, risks, rule-set from the NWBC -3/3
The session shows the types of risk types in GRC, different Access risk management reports along with the analysis of the user level risk report- 1/2
The session resumes with the analysis of the user level risk report- 2/2 and covers different simulation reports and their analysis.
This session demonstrates how to
create root organization,
create different mitigation control owners in GRC,
assign appropriate roles to them,
make access control owners in GRC NWBC,
assign owners to the organisation,
create mitigation control, and assign mitigation control of users and roles.
The session demonstrates how to do mass assignment of mitigation control through SE38, along with different Report and Analytics options related to ARA.
The session talks about the theoretical aspect of the ARM, different stages and paths, BRF+, rule kind, and different types of workflows in MSMP configuration.
The session covers the configuration to be done for ARM, for LDAP, and for access request form, as well as covers the user provisioning, and request types in ARM.
The session covers the topic user provisioning through GRC AC, and different request types,
The session demonstrates EUP configuration, and maintain provision settings.
The session covers the user defaults, how to activate end user login, and a brief description on workflow configuration
The session covers the workflow configuration for ARM, BRF+, and how to generate MSMP initiator rules.
The session covers how to develop BRF+ logic for Initiator rule
The session demonstrate how to generate MSMP agent rules, and how to develop BRF+ logic for agent rule.
The session demonstrates how to make MSMP configurations - Step 1/7 and 2/7
The session demonstrates how to make MSMP configurations - Step 3/7 and 4/7
The session demonstrates how to make MSMP configurations - Step 4/7 and 5/7
The session demonstrates how to make MSMP configurations - Step 6/7 and 7/7
The session shows how to submit an access request through the NWBC
The session demonstrates how to set and maintain password self service, and what are different reports and analytics options.
The session demonstrates how to maintain custom notification messages through transaction code SE61.
The session demonstrates MSMP workflow configuration for FF log report process ID
The session covers the theoretical aspect of EAM module
The session covers different types of users in EAM along with different roles to be assigned to them.
The session demonstrates how to setup Access Control owners, map fire fighter IDs to different users, along with different types of notification types for FF Controller.
The session covers how to do a FireFighting session
The session covers different NWBC reports and analytics related to EAM.
This session shows how to configure the reason codes
The session covers introduction to BRM, and configuration settings related to BRM.
The session demonstrates access control and connector group for BRM, and how to make a default connector group for BRM.
The session covers the role management node in SPRO- 1/3, along with different role attributes
The session covers the role management node in SPRO- 2/3
The session covers the role Management node in SPRO - 3/3, role methodology, and a test role creation through BRM -1
The session resumes the test role creation through BRM - 2, and how to do mass role import/export
The session covers different role management reports in Reports and Analytics tab, along with different role mining reports available.
Explore the sap grc ac certification, including test code c_grac_10 and sap business object access control 10.0. Examine exam facts: 80 questions, 180 minutes, 66% passing, english, no negative marking.
Implementation order for SAP GRC Access Control
No or Less theory, only practical,
End to end implementation and configuration,
SAP Security and Basis tips along with the video,
Home work assignments given.
Short video tutorials of up-to 10 mins long to keep the learning engaging.
Learn below topics
Describe tasks performed by a typical SAP Access Control user
Identify authorization risks in typical business processes
Describe the Segregation of Duties Risk Management Process
Describe and configure functionality and features for SAP Access Control 10.1
Use the SAP Access Control 10.1 application to analyze and manage risk, design and manage roles, and provision and manage users
Describe the SAP Access Control 10.1 architecture and landscape, SAP Access Control Repository, and Object Level Security
Describe the Periodic Access Review process
Plan for and manage emergency access
Discuss the reporting framework
Configure workflows, including multi-stage multi- path (MSMP) workflows and BRF+
Describe how the different applications of the SAP GRC Solution integrate with each other
Discuss key steps in the SAP Access Control implementation process
Pass GRC AC certification exam
GRC 12.0 Fiori Apps (standard catalog)
Nowadays, new technologies development has recently brought equally dynamic development of companies and corporations. Enterprises strive to protect themselves against various threats and attacks. Threats are usually identified as external threats but actually there are also, hard to detect, internal threats. Meanwhile, employing many employees and using many systems, one should pay close attention to threats appearing within the organization. This type of risk is most often invisible, but its materialization can also have significant impact on the financial condition of the company.
To enable full control over the process of conflict identification and resolution and to obtain compliance with various Acts e.g. the SOX (Sarbanes-Oxley), the management decides to implement the appropriate GRC class tool. One of such solutions is a dedicated SAP solution - SAP GRC Access Control.