TrustRadius: an HG Insights company

SAP Access Control

Score8.9 out of 10

446 Reviews and Ratings

What is SAP Access Control?

SAP Access control streamlines the process of managing and validating user access to applications and data with minimal support from IT, with the goal of giving employees the applications and services they need without exposing data and processes to unauthorized use.

SAP Access Control

Use Cases and Deployment Scope

The SAP Access Control module helped us to work on User SOD (Segregation of Duty) cleanly without hampering any running processes. It helped us clean roles, which is very helpful from an audit perspective. It also helped us a lot with process control and Risk Management due to unauthorised access to critical tcodes.

Pros

  • User access requst Management through work flow
  • Risk Management due to SOD
  • Audit & complaince proof

Cons

  • Details reporting object wise
  • Resource consuming while running the background job
  • Dashboard can be improved

Return on Investment

  • SAP Access Control will reduce efforts of sap secuirty team

Usability

SAP Access Control review

Use Cases and Deployment Scope

We are using SAP Access Control for access request management and SOD analysis. It helps us enable access governance and minimize the risk by doing UAR (User Access Review).

Pros

  • Access Request Management
  • Privilege/ Emergency Access Management
  • Access Request Analysis

Cons

  • So far looks good. It would be better if SAP Access Control make connection with Cloud and non SAP Solution

Return on Investment

  • Positive impact - Good governance on access provisioning
  • Negative - Unable to connect with Non-sap solution and cloud Solution

Usability

SAP Access Control - The right solution for SAP on-premise access management

Use Cases and Deployment Scope

We use if for general access management, privileged access management and access risk analysis.

SAP Access Control helps us to ensure that no accesses are provisioned without the due approvals and prevents/identifies which SoD risks are currently assigned to users.

Regardind Privileged Access Management, we use it to have detailed reports about usage details.

Pros

  • Access Provisioning
  • Access Risk Analysis
  • Privileged Access Management

Cons

  • Movers/Leavers management
  • Approvers/Owners review
  • Access Management for SAP Cloud solutions without additional middlewares
  • Access management for non-SAP solutions

Return on Investment

  • Centralized maintenance
  • Rework reduction
  • Risk reduction

Other Software Used

SAP Process Control, 4me.com

User Provisioning Simplified!!

Use Cases and Deployment Scope

We use SAP Access Control for automatic user provisioning and ensure access to terminated employees is no longer available. We have it integrated with Service now to reduce the manual effort for the creation of users and also to prevent fraudulent access to SAP applications integrated via SAP Access control.

Pros

  • Provisioning user access
  • Automatic role management of users
  • Analyze enterprise-wide risk

Cons

  • Integration with third parties
  • Composite role risk assessment
  • Better interface for fire fighter access provisioning

Most Important Features

  • Provisioning users
  • Certify authorizations
  • Monitoring of privileges

Return on Investment

  • Extremely positive impact by reduction of manual user provisioning
  • Cannot quantify the ROI made but definitely has a positive impact
  • Addition of business value by reduction of human effort and turnaround time for requests

Alternatives Considered

SAP Business Technology Platform

Other Software Used

SAP Business Technology Platform, OpenText Content Suite Platform, OpenText AppWorks

Best tool to manage users in large scale with out audit ramifications in long term

Use Cases and Deployment Scope

We have been using SAP access control for 8 plus years with a lot of automation which is adopted for hr integration hr triggers, automation of workflows for provisioning of access.

Pros

  • Workflow based provisioning process.
  • Hr trigger automation and integration with hr.
  • Risk analysis of sod risks is inherent in workflows which makes it a good product.

Cons

  • Firefighter log review logs should be made more detailed and the extent of log depth is limited.
  • Product integration into cloud products is limited even with iag integration as it does not have firefighter functionality for some cloud products like S4.

Most Important Features

  • Hr triggers
  • Elevated access or previlege access management
  • Risk analysis integration

Return on Investment

  • Handling 17k users by just 4 full-time and 4 part-time resources is only possible because of SAP ac.
  • Risk mitigation has helped the company have clean audit cycles year after year.
  • Firefighter procedure help in manga shock requirements.
  • Quick adoption of new business scenarios for roles and having workflow setup for business scenarios are made possible.