SlideShare una empresa de Scribd logo
1 de 37
Automating PeopleSoft Segregation of
Duties: HCM and Financials
PRESENTER:
Kirk Chan, Smart ERP Solutions, Inc.
NOTE: phones/mics are muted. Please submit any
questions using the GoToMeeting QUESTION feature
Smart ERP Solutions
IS THIS YOUR SoD BEST PRACTICE?
Segregation of Duties
Segregation of duties (SoD), or separation of duties, is the
concept of having more than one person required to complete a
task.
To help prevent fraud and error, no one individual should:
• Initiate a transaction
• Approve a transaction
• Record a transaction
• Reconcile balances
• Handle assets
•No single individual should have control
over two or more phases of a transaction or
operation…
•No one individual employee can complete a
significant business transaction in its
entirety…
•Those responsible for physical receipt of
goods should not be responsible for paying
for the goods.
•Those responsible for custody of goods
should not be responsible for maintaining the
records of the assets.
•Those responsible for collection of
receivables should not be responsible for
entries in the book of accounts.
What is Segregation of Duties Examples of Segregation of Duties
What Duties Should be
Segregated?
Purchase an Item
PO Initiator PO Approver PO Receiver
• Financial Duties
– Requisition Initiator
– Requisition Approver
– P.O. Initiator
– P.O. Approver
Workflow/HR Duties
Key Functionality for Automating SoD
• Configurable Data Security
You can employ fine-grained row level security via easy to use configuration options, to secure by any
field, in any application in PeopleSoft.
• Flexible Segregation of Duties
Create policies for multiple SoD models and structure simple or complex SoD rules. You can apply
different models to reflect the different needs of each part of your business.
• Mitigation
Mitigation allows you to cater to temporary or long-term situations where certain users may be
authorized to “violate” your Segregation of Duties policy. This enables you to document such situations
in preparation for your audit. You can then exclude mitigated users from your reports to avoid wasted
effort during the audit.
• Detective Mode
Report of SoD violations at the Component, Permissions List and Role Level.
• Preventative Mode
Enforce SoD by validating security before user access.
• Cater to seasonality
Specify “from” and “to” dates to allow temporary seasonal variations to your normal business control
requirements. This approach creates a very strong Return on Investment during the results analysis
phase by allowing simplified or highly granular approach to SoD analysis.
• Context based security
Allows different security attributes for specific pages. For example, you can allow a user to only view his
own department on an expense reimbursement, while allowing him to access all departments when
entering a journal.
Benefits of Automation with Effective SoD
• Allows you to build robust, proactive, manageable controls
into your live system
• Prevents SoD violations
• Greatly reduces the time needed to manage SoD controls
and achieve SOX compliance
• Reduces the workload needed to prepare for your audits
and clean up afterwards
• Provides the evidence of controls that auditors demand,
reducing the time taken to complete the audit
• Affordable by organizations of all sizes
Top 10 Financials SoD Rules
• Creating a journal entry and opening a closed accounting period
• Maintaining accounts receivable master data and posting receipts
• Depositing cash and reconciling bank statements
• Completing goods transfer and adjusting physical inventory counts
• Approving time cards and distributing pay checks
• Preparing an order and changing a billing document
• Changing an order and creating a delivery
• Creating a journal entry and opening a closed accounting period
• Creating general ledger accounts and posting journal entries
• Maintaining bank account information and posting payments
• Maintaining assets and creating a goods receipt
Top HCM SoD rules
Analysis
Security
Management
Segregation
of Duties
Compliance
Reporting
Auditing
Internal Controls
A key element in the compliance lifecycle
Effective Automated Segregation of Duties
SoD
Proactive
SoD
Reactive
SoD
Mitigation
Characteristics/Benefits of Effective SoD
• Built-in model enables SoD enforcement
– Violations checked BEFORE go-live
– Your decision to enforce rules or allow violations
• Saves time (= money)
– Easy set-up
– Easy testing for violations
– Quick and easy reporting
– Reduces number of compensating controls required
– Reduces auditing effort / costs
• Reduces risk
– Enforcing and reporting SoD violations reduces
opportunity for fraud
SoD – The Issues
• Nothing in PeopleSoft
– Any release
• Do use a Spreadsheet?
• How do you…
– Ensure the actual access control mirrors the
spreadsheet?
– Right people access the right data?
– Manage change control problems?
– Assess impact of changes?
– Manage enforcement of SoD?
Proactive SoD
Aim:
Prevent SoD Violations occurring during security Assignment.
Ensure Security Policy is enforced long term.
SoD Dashboards
Change
Role assignment
Or
Security
without
affecting live security
‘Proactive’ SoD
OK
A/P “Super”
Voucher Clerk Role
1. AP Voucher clerk
2. Secondary role 2
3. Secondary role 3
SoD
Violations
Check
Violations
A/P “Super”
Voucher Clerk Role
1. AP Voucher clerk
2. Secondary role 2
3. Secondary role 6
SoD
Violations
Check
Bank PaymentsInvoice entry (A/P)
Credit NotesVendor Master
Purchase OrderVendor Master
Invoice entry (A/P)Purchase Order
Vendor MasterPurchase Order
Invoicing (A/R)Credit Notes
Credit limitsSales Order Entry
Sales Order EntryCustomer Master
Goods ReceiptPurchase Order
Sales Order EntrySales Pricing
Bank PaymentsVendor Master
Purchase OrderSales Order Entry
From this taskSegregate this task:
Extract from pre-populated,
model
Build Security
Proactive SoD: User Profiles
Reactive SoD
Aim:
Accurately assess existing security for remediation.
Reduce Audit time and cost.
Build case for restructuring security.
‘Reactive’ SoD
Components
(In-depth Audit)
Permission
List
(Process)
Roles
(High-Level)
Reporting directly on
existing security to identify any
Current SoD violations
Creation of PeopleSoft SoD Rules
• Role level
– Create matrix of all active system roles
– Identify all roles that should not be linked to the same user
• Such as HR representative and Payroll Admin
• Permission List / Business Process level
– Include Application security & processing options
– Add to / modify as needed
• Component / Program level
– Add in any custom or modified processing
– If creating your own rules
• Start with most important controls & gradually add to them
Mitigation – The Issues
• Current Economic Climate
– Many redundancies equates to less people doing more.
– Major requirement from Audit to allow remediation
where a user is considered a risk.
– SOX requires that during an audit all risks must at least
be visible and understood by the business.
– With this comes risk assessment and documentation.
• Seasonal Changes
– Staff holidays or time away from office requires other
users be able to perform these additional duties.
• Ability to mitigate users once a validation has
occurred.
• Details of mitigation, including notes get added to
a mitigation table.
• The user gets checked during the next validation
but is not added to the violations table.
• Ability to time out mitigations, i.e. allowing for staff
who are on holiday, etc.
Mitigation Solutions
Mitigation
PeopleSoft SoD Dashboards
PeopleSoft SoD Dashboards
PeopleSoft SoD Dashboards
• The user’s security profile is made up of the assigned roles, the
permission lists assigned to that role and permission lists
assigned directly to the user.
Understanding PeopleSoft Security
Smart SoD Process
Demo:
Smart SoD™
Financials demo
HCM demo
Summary
Value Statement
Security and Segregation of Duties is an important element of your
overall PeopleSoft security and risk management
Key Features of an automated solution can help you maintain
legislative compliance (SoX), meet audit requirements and
reduce the likelihood and impacts of fraud and errors
• Expressly designed for your current PeopleSoft
• Powerful Proactive, Reactive and Mitigation Features
• Automated Workflow Approvals
• Reporting/Dashboards facilitate audits and compliance
• Use pre-packaged built-in security and SoD rules or easily
create your own
• Add-on Architecture Lowers Total Cost of Ownership
– Seamless Integration
– Utilize Best Practices
– Maintenance and Upgrades
Questions?
Submit your question using the GoToMeeting QUESTION feature (any
remaining questions will be addressed via email after the broadcast)
Thank You
Visit www.smarterp.com for information or contact
us at sales@smarterp.com

Más contenido relacionado

La actualidad más candente

Power BI Full Course | Power BI Tutorial for Beginners | Edureka
Power BI Full Course | Power BI Tutorial for Beginners | EdurekaPower BI Full Course | Power BI Tutorial for Beginners | Edureka
Power BI Full Course | Power BI Tutorial for Beginners | EdurekaEdureka!
 
How to Prepare for a BI Migration
How to Prepare for a BI MigrationHow to Prepare for a BI Migration
How to Prepare for a BI MigrationSenturus
 
Lecture Slides 11 12 08
Lecture Slides 11 12 08Lecture Slides 11 12 08
Lecture Slides 11 12 08danie158
 
Power BI: Introduction with a use case and solution
Power BI: Introduction with a use case and solutionPower BI: Introduction with a use case and solution
Power BI: Introduction with a use case and solutionAlvina Verghis
 
Power BI Architecture
Power BI ArchitecturePower BI Architecture
Power BI ArchitectureArthur Graus
 
SAP Document Management System Integration with Content Servers
SAP Document Management System Integration with Content Servers SAP Document Management System Integration with Content Servers
SAP Document Management System Integration with Content Servers Verbella CMG
 
Business Intelligence tools comparison
Business Intelligence tools comparisonBusiness Intelligence tools comparison
Business Intelligence tools comparisonStratebi
 
SAP Business One & Woogjin Holdings Overview_En
SAP Business One & Woogjin Holdings Overview_EnSAP Business One & Woogjin Holdings Overview_En
SAP Business One & Woogjin Holdings Overview_EnSap Woongjin Holdings
 
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareUse SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareSAP Ariba
 
IBM SAP Ariba Overview
IBM SAP Ariba OverviewIBM SAP Ariba Overview
IBM SAP Ariba OverviewIBM
 
A deep dive session on Tableau
A deep dive session on TableauA deep dive session on Tableau
A deep dive session on TableauVisual_BI
 
Microsoft Power BI Overview
Microsoft Power BI OverviewMicrosoft Power BI Overview
Microsoft Power BI OverviewNetwoven Inc.
 
Moving OBIEE to Oracle Analytics Cloud
Moving OBIEE to Oracle Analytics CloudMoving OBIEE to Oracle Analytics Cloud
Moving OBIEE to Oracle Analytics CloudEdelweiss Kammermann
 
Find out userexits in sap
Find out userexits in sapFind out userexits in sap
Find out userexits in sapDau Thanh Hai
 
Oracle eBS Overview.pptx
Oracle eBS Overview.pptxOracle eBS Overview.pptx
Oracle eBS Overview.pptxssuser9dce1e1
 
Concepts of cutover planning and management
Concepts of cutover planning and managementConcepts of cutover planning and management
Concepts of cutover planning and managementSanjay Choubey
 
Working with Microsoft Power Business Inteligence Tools - Presented by Atidan
Working with Microsoft Power Business Inteligence Tools - Presented by AtidanWorking with Microsoft Power Business Inteligence Tools - Presented by Atidan
Working with Microsoft Power Business Inteligence Tools - Presented by AtidanDavid J Rosenthal
 

La actualidad más candente (20)

Power BI Full Course | Power BI Tutorial for Beginners | Edureka
Power BI Full Course | Power BI Tutorial for Beginners | EdurekaPower BI Full Course | Power BI Tutorial for Beginners | Edureka
Power BI Full Course | Power BI Tutorial for Beginners | Edureka
 
How to Prepare for a BI Migration
How to Prepare for a BI MigrationHow to Prepare for a BI Migration
How to Prepare for a BI Migration
 
Lecture Slides 11 12 08
Lecture Slides 11 12 08Lecture Slides 11 12 08
Lecture Slides 11 12 08
 
Power BI: Introduction with a use case and solution
Power BI: Introduction with a use case and solutionPower BI: Introduction with a use case and solution
Power BI: Introduction with a use case and solution
 
Power BI Architecture
Power BI ArchitecturePower BI Architecture
Power BI Architecture
 
SAP Document Management System Integration with Content Servers
SAP Document Management System Integration with Content Servers SAP Document Management System Integration with Content Servers
SAP Document Management System Integration with Content Servers
 
Business Intelligence tools comparison
Business Intelligence tools comparisonBusiness Intelligence tools comparison
Business Intelligence tools comparison
 
Power bi
Power biPower bi
Power bi
 
SAP Business One & Woogjin Holdings Overview_En
SAP Business One & Woogjin Holdings Overview_EnSAP Business One & Woogjin Holdings Overview_En
SAP Business One & Woogjin Holdings Overview_En
 
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP SoftwareUse SAP Ariba Solutions as a Natural Extension of Your ERP Software
Use SAP Ariba Solutions as a Natural Extension of Your ERP Software
 
IBM SAP Ariba Overview
IBM SAP Ariba OverviewIBM SAP Ariba Overview
IBM SAP Ariba Overview
 
A deep dive session on Tableau
A deep dive session on TableauA deep dive session on Tableau
A deep dive session on Tableau
 
Power bi overview
Power bi overview Power bi overview
Power bi overview
 
Microsoft Power BI Overview
Microsoft Power BI OverviewMicrosoft Power BI Overview
Microsoft Power BI Overview
 
Moving OBIEE to Oracle Analytics Cloud
Moving OBIEE to Oracle Analytics CloudMoving OBIEE to Oracle Analytics Cloud
Moving OBIEE to Oracle Analytics Cloud
 
Find out userexits in sap
Find out userexits in sapFind out userexits in sap
Find out userexits in sap
 
Power BI Overview
Power BI Overview Power BI Overview
Power BI Overview
 
Oracle eBS Overview.pptx
Oracle eBS Overview.pptxOracle eBS Overview.pptx
Oracle eBS Overview.pptx
 
Concepts of cutover planning and management
Concepts of cutover planning and managementConcepts of cutover planning and management
Concepts of cutover planning and management
 
Working with Microsoft Power Business Inteligence Tools - Presented by Atidan
Working with Microsoft Power Business Inteligence Tools - Presented by AtidanWorking with Microsoft Power Business Inteligence Tools - Presented by Atidan
Working with Microsoft Power Business Inteligence Tools - Presented by Atidan
 

Destacado

Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Smart ERP Solutions, Inc.
 
Security & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSecurity & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSmart ERP Solutions, Inc.
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...TransWare AG
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties SolutionsAhmed Abdul Hamed
 
Segregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySegregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySriram Narayanan
 
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 CA CISA Jayjit Biswas
 
IT Control Objectives for SOX
IT Control Objectives for SOXIT Control Objectives for SOX
IT Control Objectives for SOXMahesh Patwardhan
 
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsAutomating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsSmart ERP Solutions, Inc.
 
HRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHatem El Houshy
 
Hris data management
Hris data managementHris data management
Hris data managementalexhuq2010
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access ControlNasir Gondal
 
SOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleySOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleyAmarnath Gupta
 
Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)vinaya.hs
 
Human Resource Information System - HRIS
Human Resource Information System - HRIS Human Resource Information System - HRIS
Human Resource Information System - HRIS antonyjosephtharayil
 
Effective Framework for Continuous Auditing
Effective Framework for Continuous AuditingEffective Framework for Continuous Auditing
Effective Framework for Continuous AuditingCaseWare IDEA
 

Destacado (20)

Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23
 
Security & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSecurity & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoft
 
Government and SOX Compliance for ERP Systems
Government and SOX Compliance for ERP SystemsGovernment and SOX Compliance for ERP Systems
Government and SOX Compliance for ERP Systems
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties Solutions
 
Segregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySegregation of Duties and Continuous Delivery
Segregation of Duties and Continuous Delivery
 
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
 
IT Control Objectives for SOX
IT Control Objectives for SOXIT Control Objectives for SOX
IT Control Objectives for SOX
 
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsAutomating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
 
HRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful Transition
 
HRIS
HRISHRIS
HRIS
 
Hris data management
Hris data managementHris data management
Hris data management
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access Control
 
SOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleySOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-Oxley
 
Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)
 
Human Resource Information System - HRIS
Human Resource Information System - HRIS Human Resource Information System - HRIS
Human Resource Information System - HRIS
 
Hris ppt
Hris pptHris ppt
Hris ppt
 
Human Resource Information System (HRIS) – Implementation and Control
Human Resource Information System (HRIS) – Implementation and ControlHuman Resource Information System (HRIS) – Implementation and Control
Human Resource Information System (HRIS) – Implementation and Control
 
Hris
HrisHris
Hris
 
Effective Framework for Continuous Auditing
Effective Framework for Continuous AuditingEffective Framework for Continuous Auditing
Effective Framework for Continuous Auditing
 

Similar a Automating PeopleSoft Segregation of Duties: HCM and Financials

Sap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online trainingSap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online traininggrconlinetraining
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017Smart ERP Solutions, Inc.
 
Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Panna Visani MBCS ACCA
 
Identity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityIdentity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityHorst Walther
 
2016 BestGRC Product Demo
2016 BestGRC Product Demo2016 BestGRC Product Demo
2016 BestGRC Product DemoGlenn Murphy
 
Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Banu HImawan
 
FF2 Executive Summary
FF2 Executive SummaryFF2 Executive Summary
FF2 Executive Summarybbhart_li
 
Best Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementBest Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementJTLeekley
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12magnificsairam
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12magnificbsr
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12babymagnific
 
Llm Loan Lifecycle Managerv1 6
Llm   Loan Lifecycle Managerv1 6Llm   Loan Lifecycle Managerv1 6
Llm Loan Lifecycle Managerv1 6guest57776a
 
VisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisionet Systems, Inc.
 
Shashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank Kale
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Hisyam
 

Similar a Automating PeopleSoft Segregation of Duties: HCM and Financials (20)

IPO Readiness SOX Sod
IPO Readiness SOX SodIPO Readiness SOX Sod
IPO Readiness SOX Sod
 
Sap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online trainingSap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online training
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017
 
Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1
 
Identity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityIdentity & Access Governance versus Process Agility
Identity & Access Governance versus Process Agility
 
2016 BestGRC Product Demo
2016 BestGRC Product Demo2016 BestGRC Product Demo
2016 BestGRC Product Demo
 
Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?
 
FF2 Executive Summary
FF2 Executive SummaryFF2 Executive Summary
FF2 Executive Summary
 
Xite people management solution introduction
Xite people management solution introductionXite people management solution introduction
Xite people management solution introduction
 
Best Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementBest Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk Management
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Loomis Direct
Loomis DirectLoomis Direct
Loomis Direct
 
Llm Loan Lifecycle Managerv1 6
Llm   Loan Lifecycle Managerv1 6Llm   Loan Lifecycle Managerv1 6
Llm Loan Lifecycle Managerv1 6
 
VisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize Shortages
 
oracle Presntation.ppt
oracle Presntation.pptoracle Presntation.ppt
oracle Presntation.ppt
 
DARTS
DARTSDARTS
DARTS
 
Shashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual Testing
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)
 

Más de Smart ERP Solutions, Inc.

Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Smart ERP Solutions, Inc.
 
Transforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMTransforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMSmart ERP Solutions, Inc.
 
Maximize your Oracle Cloud Investment and Drive Innovation
 Maximize your Oracle Cloud Investment and Drive Innovation Maximize your Oracle Cloud Investment and Drive Innovation
Maximize your Oracle Cloud Investment and Drive InnovationSmart ERP Solutions, Inc.
 
Best Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsBest Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsSmart ERP Solutions, Inc.
 
Smart erp solutions oracle cloud services overview - 2021 - 2022
Smart erp solutions   oracle cloud services overview - 2021 - 2022Smart erp solutions   oracle cloud services overview - 2021 - 2022
Smart erp solutions oracle cloud services overview - 2021 - 2022Smart ERP Solutions, Inc.
 
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorPeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorSmart ERP Solutions, Inc.
 
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSNo One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSSmart ERP Solutions, Inc.
 
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...Smart ERP Solutions, Inc.
 
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Smart ERP Solutions, Inc.
 
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorConfigure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorSmart ERP Solutions, Inc.
 
Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Smart ERP Solutions, Inc.
 
Convert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessConvert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessSmart ERP Solutions, Inc.
 
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...Smart ERP Solutions, Inc.
 
Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Smart ERP Solutions, Inc.
 

Más de Smart ERP Solutions, Inc. (20)

Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2
 
Transforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMTransforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPM
 
Maximize your Oracle Cloud Investment and Drive Innovation
 Maximize your Oracle Cloud Investment and Drive Innovation Maximize your Oracle Cloud Investment and Drive Innovation
Maximize your Oracle Cloud Investment and Drive Innovation
 
SmartERP PeopleSoft Security
SmartERP PeopleSoft  Security SmartERP PeopleSoft  Security
SmartERP PeopleSoft Security
 
SmartERP Oracle Capabilities 2023.pptx
SmartERP Oracle Capabilities 2023.pptxSmartERP Oracle Capabilities 2023.pptx
SmartERP Oracle Capabilities 2023.pptx
 
Best Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsBest Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle Applications
 
Manufactures whats keeping you up
Manufactures   whats keeping you upManufactures   whats keeping you up
Manufactures whats keeping you up
 
The Fully Automated Enterprise (RPA)
The Fully Automated Enterprise (RPA)The Fully Automated Enterprise (RPA)
The Fully Automated Enterprise (RPA)
 
Smart erp solutions oracle cloud services overview - 2021 - 2022
Smart erp solutions   oracle cloud services overview - 2021 - 2022Smart erp solutions   oracle cloud services overview - 2021 - 2022
Smart erp solutions oracle cloud services overview - 2021 - 2022
 
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorPeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
 
Alert framework2021
Alert framework2021Alert framework2021
Alert framework2021
 
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSNo One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
 
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
 
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
 
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorConfigure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
 
Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...
 
Convert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessConvert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperless
 
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
 
Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...
 
The 6 Biggest Trends for AP Leaders in 2021
The 6 Biggest Trends for AP Leaders in 2021The 6 Biggest Trends for AP Leaders in 2021
The 6 Biggest Trends for AP Leaders in 2021
 

Último

MAHA Global and IPR: Do Actions Speak Louder Than Words?
MAHA Global and IPR: Do Actions Speak Louder Than Words?MAHA Global and IPR: Do Actions Speak Louder Than Words?
MAHA Global and IPR: Do Actions Speak Louder Than Words?Olivia Kresic
 
PSCC - Capability Statement Presentation
PSCC - Capability Statement PresentationPSCC - Capability Statement Presentation
PSCC - Capability Statement PresentationAnamaria Contreras
 
Call Us 📲8800102216📞 Call Girls In DLF City Gurgaon
Call Us 📲8800102216📞 Call Girls In DLF City GurgaonCall Us 📲8800102216📞 Call Girls In DLF City Gurgaon
Call Us 📲8800102216📞 Call Girls In DLF City Gurgaoncallgirls2057
 
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!Doge Mining Website
 
Market Sizes Sample Report - 2024 Edition
Market Sizes Sample Report - 2024 EditionMarket Sizes Sample Report - 2024 Edition
Market Sizes Sample Report - 2024 EditionMintel Group
 
Organizational Structure Running A Successful Business
Organizational Structure Running A Successful BusinessOrganizational Structure Running A Successful Business
Organizational Structure Running A Successful BusinessSeta Wicaksana
 
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCRashishs7044
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Kirill Klimov
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfrichard876048
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...ssuserf63bd7
 
Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Seta Wicaksana
 
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deck
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deckPitch Deck Teardown: Geodesic.Life's $500k Pre-seed deck
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deckHajeJanKamps
 
Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Anamaria Contreras
 
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort Service
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort ServiceCall US-88OO1O2216 Call Girls In Mahipalpur Female Escort Service
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort Servicecallgirls2057
 
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607dollysharma2066
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfRbc Rbcua
 
Darshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfDarshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfShashank Mehta
 
Global Scenario On Sustainable and Resilient Coconut Industry by Dr. Jelfina...
Global Scenario On Sustainable  and Resilient Coconut Industry by Dr. Jelfina...Global Scenario On Sustainable  and Resilient Coconut Industry by Dr. Jelfina...
Global Scenario On Sustainable and Resilient Coconut Industry by Dr. Jelfina...ictsugar
 
Guide Complete Set of Residential Architectural Drawings PDF
Guide Complete Set of Residential Architectural Drawings PDFGuide Complete Set of Residential Architectural Drawings PDF
Guide Complete Set of Residential Architectural Drawings PDFChandresh Chudasama
 

Último (20)

MAHA Global and IPR: Do Actions Speak Louder Than Words?
MAHA Global and IPR: Do Actions Speak Louder Than Words?MAHA Global and IPR: Do Actions Speak Louder Than Words?
MAHA Global and IPR: Do Actions Speak Louder Than Words?
 
PSCC - Capability Statement Presentation
PSCC - Capability Statement PresentationPSCC - Capability Statement Presentation
PSCC - Capability Statement Presentation
 
Call Us 📲8800102216📞 Call Girls In DLF City Gurgaon
Call Us 📲8800102216📞 Call Girls In DLF City GurgaonCall Us 📲8800102216📞 Call Girls In DLF City Gurgaon
Call Us 📲8800102216📞 Call Girls In DLF City Gurgaon
 
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!
Unlocking the Future: Explore Web 3.0 Workshop to Start Earning Today!
 
Market Sizes Sample Report - 2024 Edition
Market Sizes Sample Report - 2024 EditionMarket Sizes Sample Report - 2024 Edition
Market Sizes Sample Report - 2024 Edition
 
Organizational Structure Running A Successful Business
Organizational Structure Running A Successful BusinessOrganizational Structure Running A Successful Business
Organizational Structure Running A Successful Business
 
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
8447779800, Low rate Call girls in New Ashok Nagar Delhi NCR
 
Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024Flow Your Strategy at Flight Levels Day 2024
Flow Your Strategy at Flight Levels Day 2024
 
No-1 Call Girls In Goa 93193 VIP 73153 Escort service In North Goa Panaji, Ca...
No-1 Call Girls In Goa 93193 VIP 73153 Escort service In North Goa Panaji, Ca...No-1 Call Girls In Goa 93193 VIP 73153 Escort service In North Goa Panaji, Ca...
No-1 Call Girls In Goa 93193 VIP 73153 Escort service In North Goa Panaji, Ca...
 
Innovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdfInnovation Conference 5th March 2024.pdf
Innovation Conference 5th March 2024.pdf
 
International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...International Business Environments and Operations 16th Global Edition test b...
International Business Environments and Operations 16th Global Edition test b...
 
Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...Ten Organizational Design Models to align structure and operations to busines...
Ten Organizational Design Models to align structure and operations to busines...
 
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deck
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deckPitch Deck Teardown: Geodesic.Life's $500k Pre-seed deck
Pitch Deck Teardown: Geodesic.Life's $500k Pre-seed deck
 
Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.
 
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort Service
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort ServiceCall US-88OO1O2216 Call Girls In Mahipalpur Female Escort Service
Call US-88OO1O2216 Call Girls In Mahipalpur Female Escort Service
 
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607FULL ENJOY Call girls in Paharganj Delhi | 8377087607
FULL ENJOY Call girls in Paharganj Delhi | 8377087607
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdf
 
Darshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfDarshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdf
 
Global Scenario On Sustainable and Resilient Coconut Industry by Dr. Jelfina...
Global Scenario On Sustainable  and Resilient Coconut Industry by Dr. Jelfina...Global Scenario On Sustainable  and Resilient Coconut Industry by Dr. Jelfina...
Global Scenario On Sustainable and Resilient Coconut Industry by Dr. Jelfina...
 
Guide Complete Set of Residential Architectural Drawings PDF
Guide Complete Set of Residential Architectural Drawings PDFGuide Complete Set of Residential Architectural Drawings PDF
Guide Complete Set of Residential Architectural Drawings PDF
 

Automating PeopleSoft Segregation of Duties: HCM and Financials

  • 1. Automating PeopleSoft Segregation of Duties: HCM and Financials PRESENTER: Kirk Chan, Smart ERP Solutions, Inc. NOTE: phones/mics are muted. Please submit any questions using the GoToMeeting QUESTION feature
  • 3. IS THIS YOUR SoD BEST PRACTICE?
  • 4. Segregation of Duties Segregation of duties (SoD), or separation of duties, is the concept of having more than one person required to complete a task. To help prevent fraud and error, no one individual should: • Initiate a transaction • Approve a transaction • Record a transaction • Reconcile balances • Handle assets
  • 5. •No single individual should have control over two or more phases of a transaction or operation… •No one individual employee can complete a significant business transaction in its entirety… •Those responsible for physical receipt of goods should not be responsible for paying for the goods. •Those responsible for custody of goods should not be responsible for maintaining the records of the assets. •Those responsible for collection of receivables should not be responsible for entries in the book of accounts. What is Segregation of Duties Examples of Segregation of Duties
  • 6. What Duties Should be Segregated? Purchase an Item PO Initiator PO Approver PO Receiver • Financial Duties – Requisition Initiator – Requisition Approver – P.O. Initiator – P.O. Approver
  • 8.
  • 9. Key Functionality for Automating SoD • Configurable Data Security You can employ fine-grained row level security via easy to use configuration options, to secure by any field, in any application in PeopleSoft. • Flexible Segregation of Duties Create policies for multiple SoD models and structure simple or complex SoD rules. You can apply different models to reflect the different needs of each part of your business. • Mitigation Mitigation allows you to cater to temporary or long-term situations where certain users may be authorized to “violate” your Segregation of Duties policy. This enables you to document such situations in preparation for your audit. You can then exclude mitigated users from your reports to avoid wasted effort during the audit. • Detective Mode Report of SoD violations at the Component, Permissions List and Role Level. • Preventative Mode Enforce SoD by validating security before user access. • Cater to seasonality Specify “from” and “to” dates to allow temporary seasonal variations to your normal business control requirements. This approach creates a very strong Return on Investment during the results analysis phase by allowing simplified or highly granular approach to SoD analysis. • Context based security Allows different security attributes for specific pages. For example, you can allow a user to only view his own department on an expense reimbursement, while allowing him to access all departments when entering a journal.
  • 10. Benefits of Automation with Effective SoD • Allows you to build robust, proactive, manageable controls into your live system • Prevents SoD violations • Greatly reduces the time needed to manage SoD controls and achieve SOX compliance • Reduces the workload needed to prepare for your audits and clean up afterwards • Provides the evidence of controls that auditors demand, reducing the time taken to complete the audit • Affordable by organizations of all sizes
  • 11. Top 10 Financials SoD Rules • Creating a journal entry and opening a closed accounting period • Maintaining accounts receivable master data and posting receipts • Depositing cash and reconciling bank statements • Completing goods transfer and adjusting physical inventory counts • Approving time cards and distributing pay checks • Preparing an order and changing a billing document • Changing an order and creating a delivery • Creating a journal entry and opening a closed accounting period • Creating general ledger accounts and posting journal entries • Maintaining bank account information and posting payments • Maintaining assets and creating a goods receipt
  • 12. Top HCM SoD rules
  • 14. Effective Automated Segregation of Duties SoD Proactive SoD Reactive SoD Mitigation
  • 15. Characteristics/Benefits of Effective SoD • Built-in model enables SoD enforcement – Violations checked BEFORE go-live – Your decision to enforce rules or allow violations • Saves time (= money) – Easy set-up – Easy testing for violations – Quick and easy reporting – Reduces number of compensating controls required – Reduces auditing effort / costs • Reduces risk – Enforcing and reporting SoD violations reduces opportunity for fraud
  • 16. SoD – The Issues • Nothing in PeopleSoft – Any release • Do use a Spreadsheet? • How do you… – Ensure the actual access control mirrors the spreadsheet? – Right people access the right data? – Manage change control problems? – Assess impact of changes? – Manage enforcement of SoD?
  • 17. Proactive SoD Aim: Prevent SoD Violations occurring during security Assignment. Ensure Security Policy is enforced long term.
  • 19. Change Role assignment Or Security without affecting live security ‘Proactive’ SoD OK A/P “Super” Voucher Clerk Role 1. AP Voucher clerk 2. Secondary role 2 3. Secondary role 3 SoD Violations Check Violations A/P “Super” Voucher Clerk Role 1. AP Voucher clerk 2. Secondary role 2 3. Secondary role 6 SoD Violations Check Bank PaymentsInvoice entry (A/P) Credit NotesVendor Master Purchase OrderVendor Master Invoice entry (A/P)Purchase Order Vendor MasterPurchase Order Invoicing (A/R)Credit Notes Credit limitsSales Order Entry Sales Order EntryCustomer Master Goods ReceiptPurchase Order Sales Order EntrySales Pricing Bank PaymentsVendor Master Purchase OrderSales Order Entry From this taskSegregate this task: Extract from pre-populated, model Build Security
  • 21. Reactive SoD Aim: Accurately assess existing security for remediation. Reduce Audit time and cost. Build case for restructuring security.
  • 22. ‘Reactive’ SoD Components (In-depth Audit) Permission List (Process) Roles (High-Level) Reporting directly on existing security to identify any Current SoD violations
  • 23. Creation of PeopleSoft SoD Rules • Role level – Create matrix of all active system roles – Identify all roles that should not be linked to the same user • Such as HR representative and Payroll Admin • Permission List / Business Process level – Include Application security & processing options – Add to / modify as needed • Component / Program level – Add in any custom or modified processing – If creating your own rules • Start with most important controls & gradually add to them
  • 24. Mitigation – The Issues • Current Economic Climate – Many redundancies equates to less people doing more. – Major requirement from Audit to allow remediation where a user is considered a risk. – SOX requires that during an audit all risks must at least be visible and understood by the business. – With this comes risk assessment and documentation. • Seasonal Changes – Staff holidays or time away from office requires other users be able to perform these additional duties.
  • 25. • Ability to mitigate users once a validation has occurred. • Details of mitigation, including notes get added to a mitigation table. • The user gets checked during the next validation but is not added to the violations table. • Ability to time out mitigations, i.e. allowing for staff who are on holiday, etc. Mitigation Solutions
  • 30. • The user’s security profile is made up of the assigned roles, the permission lists assigned to that role and permission lists assigned directly to the user. Understanding PeopleSoft Security
  • 34. Value Statement Security and Segregation of Duties is an important element of your overall PeopleSoft security and risk management Key Features of an automated solution can help you maintain legislative compliance (SoX), meet audit requirements and reduce the likelihood and impacts of fraud and errors • Expressly designed for your current PeopleSoft • Powerful Proactive, Reactive and Mitigation Features • Automated Workflow Approvals • Reporting/Dashboards facilitate audits and compliance • Use pre-packaged built-in security and SoD rules or easily create your own • Add-on Architecture Lowers Total Cost of Ownership – Seamless Integration – Utilize Best Practices – Maintenance and Upgrades
  • 35.
  • 36. Questions? Submit your question using the GoToMeeting QUESTION feature (any remaining questions will be addressed via email after the broadcast)
  • 37. Thank You Visit www.smarterp.com for information or contact us at sales@smarterp.com