What happens to transactions that are no longer available?
How do I go about revising my roles?
Why is the use of the profile generator recommended?
How do I integrate new Fiori apps into my authorization concept?
What options do I have when transferring roles?
SAP authorizations are usually created and maintained over years or even decades with great effort. The simplification of processes in SAP S/4HANA leads to the loss of frequently used transactions, which are replaced by new Fiori apps. In addition, depending on the use of the profile generator (SU25) and the authorization default values of SU24, a greater or lesser amount of rework is required. IT managers rightly ask themselves whether and how they can efficiently transfer authorizations to SAP S/4HANA.
Together with you, we analyze your existing authorization structure and related concepts. In doing so, we check how roles have been developed so far and whether the SAP standard has been taken into account. In addition, we identify which processes are affected by the changes and whether new features are introduced. Adding new Fiori apps complements the removal of obsolete transactions and takes you to a new level of user experience.
In our Power Workshop for SAP Authorizations, we review your existing authorization concept together with you to determine whether it covers current requirements. A key focus is on the aspect of future viability, which we realize through maintainability, efficient functionality and maximum security. Whether your authorizations need a redesign or just a revision and what your path to SAP S/4HANA will look like, we work out on the basis of your individual prerequisites and requirements.
Definition of new roles on a job basis in the standard
Analysis of used applications
Predominant use of Fiori apps
Consideration and maintenance of authorization default values (SU24)
Transfer of existing roles to the standard
Consideration and maintenance of authorization default values (SU24)
Consideration of the Simplification List during SAP S/4HANA implementation
Extension with Fiori apps
If necessary, adjustments due to process changes
Observance of the Simplification List
Extension with Fiori apps
If necessary, adjustments due to process changes
Whether redesigning authorizations when migrating to SAP S4/HANA or cleaning up existing authorizations in legacy systems − an efficient authorization and role concept is the basis for secure and functional operation of your SAP systems..
With these methods we do not only support you during the implementation. Afterwards, you will also be able to maintain and manage the solutions independently. Or you can place the operation in our hands trustfully: We call this Customer Success.
Authorization design for SAP S/4HANA
Creation/revision of authorizations and roles
Introduction of the profile generator and authorization default values
Transfer of roles to SAP S/4HANA
SAP Access Control and SAP Cloud Identity Access Governance (IAG) address the management of users and authorizations in compliance with rules and with as little risk as possible. While SAP Access Control is an on-premise solution, SAP IAG is available as a cloud service on SAP Business Technology Platform.
The architecture and database structure of SAP S/4HANA also affect authorization management. Working with Fiori apps requires changes to roles and the associated authorization objects. In the first step, an authorization check provides information about where exactly your company needs to start in this regard.
For more information, simply complete and submit the form. We are looking forward to your request.
Identity lifecycle management is part of enterprise security and describes all processes for assigning roles and authorizations − from when an employee joins the company, through changing responsibilities or even changing department, to when he or she leaves.
Identity & Access Management solutions, individually or in combination, enable efficient and compliant operation of target systems. This includes the detection and minimization of risks as well as the process-based provisioning and removal of users and accesses.
The tools of the SECMENDO product suite extend the capabilities of existing SAP Identity & Access Management (IAM) solutions. The goals are an improved user experience, enhanced functionality and more efficient processes.