Challenges
- Design in, rather than retrofit, security and controls as part of the R12 implementation
- Ensure segregation-of-duties and configuration issues do not become a material weakness or a bottleneck at go-live
- Mitigate risk through embedded real-time enforcement and prevention
- Build better, more compliant roles
- Ensure consistency of application configurations during implementation and after go-live
- Automate and error-proof the setup and documentation of BR100 configurations
Results
- Internal and external audit costs related to security reduced 40%
- Help-desk resource needed to provision security resets reduced 28%
- Post-implementation remediation and rework reduced 100%
- Configuration change management effort reduced 80%
- Time spent testing authorisation manager approvals reduced 75%
- Consultant fees for form and workflow customisation reduced 60%
- Time spent on SOX segregation-of-duties testing reduced 55%
- Efficiency of profile management practices improved 40%
- Time spent on management review of access and manual SoD grids reduced 40%
- Time spent on design, build and test for compliant security roles reduced 20%