{"id":139959,"date":"2024-03-02T10:00:00","date_gmt":"2024-03-02T09:00:00","guid":{"rendered":"http:\/\/e3mag.com\/?p=139959"},"modified":"2024-03-07T08:18:40","modified_gmt":"2024-03-07T07:18:40","slug":"soterions-report-on-grc-trends-a-new-grc-era-for-sap-customers","status":"publish","type":"post","link":"https:\/\/e3mag.com\/en\/soterions-bericht-ueber-grc-trends-eine-neue-grc-aera-fuer-sap-kunden\/","title":{"rendered":"Soterion's report on GRC trends - a new GRC era for SAP customers"},"content":{"rendered":"<p>As companies working with SAP undertake major digital transformation projects, including the move to SAP S\/4HANA, customers increasingly need to ensure their data is protected in the face of rapidly evolving business processes.<\/p>\n\n\n\n<p>Security incidents such as cyberattacks and data fraud have increased over the last ten years. The financial and reputational consequences can be considerable for the companies affected. The need to increase security is therefore obvious.<\/p><div id=\"great-3104051136\" class=\"great-fullsize-content-en great-entity-placement\" style=\"margin-bottom: 20px;\"><a data-no-instant=\"1\" href=\"https:\/\/www.youtube.com\/watch?v=6ZGXMPyM-nU\" rel=\"noopener\" class=\"a2t-link\" target=\"_blank\" aria-label=\"banner_26-04_29_1200x150\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1.jpg\" alt=\"\"  srcset=\"https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1.jpg 1200w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-400x50.jpg 400w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-768x96.jpg 768w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-100x13.jpg 100w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-480x60.jpg 480w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-640x80.jpg 640w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-720x90.jpg 720w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-960x120.jpg 960w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-1168x146.jpg 1168w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-18x2.jpg 18w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-600x75.jpg 600w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" width=\"1200\" height=\"150\"  style=\" max-width: 100%; height: auto;\" \/><\/a><\/div>\n\n\n\n<p>With audit firms and regulators increasingly focusing on SAP control environments and imposing stringent measures to ensure compliance, it is more important than ever that customers take steps to secure their SAP environments and implement appropriate GRC (Government, Risk and Compliance) measures to safeguard their future.<\/p>\n\n\n\n<p><a href=\"https:\/\/soterion.com\/\" target=\"_blank\" rel=\"noreferrer noopener\">Soterion<\/a> specializes in helping companies to make their access risk management more effective with its business-oriented GRC solutions. Soterion recently launched a <a href=\"https:\/\/soterion.com\/wp-content\/uploads\/2024\/02\/Trend-Report_German_20240212.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">Report on GRC trends<\/a> with the title <a href=\"https:\/\/soterion.com\/wp-content\/uploads\/2024\/02\/Trend-Report_German_20240212.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">A New Era of GRC for SAP Customers<\/a> published. In this report, <a href=\"https:\/\/soterion.com\/wp-content\/uploads\/2024\/02\/Trend-Report_German_20240212.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">which you can read in full length here<\/a>we outline four key findings and predictions that are likely to shape the future of GRC for companies using SAP.<\/p>\n\n\n\n<p><strong><b style=\"font-size: revert; color: initial;\"><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\">1. scarcity of qualified SAP security resources can increase risk exposure.<\/span><\/b> <\/strong><\/p>\n\n\n\n<p>The expected increase in SAP security complexity combined with the global skills shortage may increase the risk of organizations struggling to find sufficiently skilled SAP security resources.<\/p>\n\n\n\n<p>The already challenging management of SAP authorizations is further complicated by significant changes to security management in SAP S\/4HANA (Fiori Catalogs, Spaces, Pages, etc.). This additional complexity may lead to the implementation of inferior role designs and role methodologies and\/or the recommendation to use standard business roles. As a result, SAP users may be assigned broad and inappropriate access.<\/p>\n\n\n\n<p>The added complexity of security management in SAP S\/4HANA means that it now takes even longer to train a suitably competent SAP security resource. In addition, many projects are being worked on remotely due to home office guidelines. This can have a negative impact on the training\/learning process.<\/p>\n\n\n\n<p><p class=\"MsoNormal\" style=\"margin-top:15.0pt;margin-right:0cm;margin-bottom:15.0pt;margin-left:0cm\"><b><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\">2. the pursuit of standardized business processes will lead to an expansion of access.<\/span><\/b><\/p><\/p>\n\n\n\n<p>Amid the push to introduce standard business processes and predefined roles, organizations may be forced to assign multiple default business roles to users. This expands access and increases business risk.<\/p>\n\n\n\n<p>Because SAP takes a fit-to-standard approach to help its customers get the most value from their investment in SAP technology, organizations with unique business processes and requirements may not be well suited to predefined business roles. To avoid potential operational bottlenecks, users are assigned multiple business roles so that they have the necessary access to perform all of their functions. However, this can lead to unnecessarily broad access rights. This increases the risk of fraud within the company.<\/p>\n\n\n\n<p><p class=\"MsoNormal\" style=\"margin-top:15.0pt;margin-right:0cm;margin-bottom:15.0pt;margin-left:0cm\"><b><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\">3. as cloud usage increases, the clarity of ownership and risk exposure blurs.<\/span><\/b><span style=\"color: revert; font-size: revert; font-weight: revert; background-color: rgb(255, 255, 255);\"> <\/span><\/p><\/p>\n\n\n\n<p>The increasing use of cloud solutions brings additional security challenges, as all of these solutions have very different security concepts. Access control solutions are often unable to perform a comprehensive access risk analysis for cloud solutions. It is therefore essential that security teams are aware of the security protocols for all the solutions used in their organization and have the resources to manage them effectively.<\/p>\n\n\n\n<p>SAP is offering customers incentives to transition to SAP cloud hosting via RISE. Soterion also sees challenges ahead in terms of ownership and responsibilities for various activities: from basic system administration to security between SAP and RISE customers.<\/p>\n\n\n\n<p><p class=\"MsoNormal\" style=\"margin-top:15.0pt;margin-right:0cm;margin-bottom:15.0pt;margin-left:0cm\"><b><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\">4. the emergence of the hybrid IAM\/GRC model.<\/span><\/b><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\"><\/span><\/p><\/p>\n\n\n\n<p>When weighing up the benefits of Identity and Access Management (IAM) and Governance, Risk and Compliance (GRC) solutions, more and more organizations will consider a hybrid model that leverages the strengths of both systems.<\/p>\n\n\n\n<p>While there are IAM solutions for managing identities in an IT environment that enable workflows, provisioning and user access, many of these solutions are not able to analyze SAP access at a detailed or technical level or assess the risk impact of assigned roles. To define business roles, organizations may therefore be inclined to consider GRC solutions that are better able to display detailed risk information.<\/p>\n\n\n\n<p>Soterion's report highlights the fact that migrating to SAP S\/4HANA is not just a technology upgrade, but also a significant shift in processes and control. It is therefore critical that organizations using SAP put security at the heart of project planning and execution so that business users can navigate the future of their SAP environments securely and responsibly.<\/p>\n\n\n\n<p><a href=\"https:\/\/soterion.com\/wp-content\/uploads\/2024\/02\/Trend-Report_German_20240212.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">\" Download the Soterion trend report here.<\/a><\/p>\n\n\n\n<div class=\"wp-block-stackable-divider stk-block-divider stk-block stk-e903c23\" data-block-id=\"e903c23\"><hr class=\"stk-block-divider__hr\"\/><\/div>\n\n\n\n<p>An advertorial by:<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><a href=\"https:\/\/soterion.com\/\" target=\"_blank\" rel=\"noreferrer noopener\"><img loading=\"lazy\" decoding=\"async\" width=\"480\" height=\"90\" src=\"https:\/\/e3mag.com\/wp-content\/uploads\/2024\/03\/sorterion-logo.png\" alt=\"\" class=\"wp-image-140141\" style=\"width:301px;height:auto\" srcset=\"https:\/\/e3mag.com\/wp-content\/uploads\/2024\/03\/sorterion-logo.png 480w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/03\/sorterion-logo-400x75.png 400w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/03\/sorterion-logo-100x19.png 100w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/03\/sorterion-logo-18x3.png 18w\" sizes=\"auto, (max-width: 480px) 100vw, 480px\" \/><\/a><\/figure>\n\n\n\n<p><p class=\"MsoNormal\" style=\"margin-top:15.0pt;margin-right:0cm;margin-bottom:15.0pt;margin-left:0cm\"><span lang=\"DE\" style=\"font-family: Arial, sans-serif;\"><\/span><\/p> <\/p>","protected":false},"excerpt":{"rendered":"<p>The way forward: Soterion's GRC trends report highlights four key findings and predictions that we believe will shape the future of GRC for organizations using SAP.<\/p>","protected":false},"author":5530,"featured_media":139983,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"pmpro_default_level":"0","footnotes":""},"categories":[26405],"tags":[],"coauthors":[43850],"class_list":["post-139959","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-advertorial","pmpro-has-access"],"acf":[],"featured_image_urls_v2":{"full":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229.png",1920,864,false],"thumbnail":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-150x150.png",150,150,true],"medium":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-400x180.png",400,180,true],"medium_large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-768x346.png",768,346,true],"large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1200x540.png",1200,540,true],"image-100":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-100x45.png",100,45,true],"image-480":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-480x216.png",480,216,true],"image-640":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-640x288.png",640,288,true],"image-720":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-720x324.png",720,324,true],"image-960":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-960x432.png",960,432,true],"image-1168":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1168x526.png",1168,526,true],"image-1440":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1440x648.png",1440,648,true],"image-1920":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1920x864.png",1920,864,true],"1536x1536":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1536x691.png",1536,691,true],"2048x2048":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229.png",1920,864,false],"trp-custom-language-flag":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-18x8.png",18,8,true],"bricks_large_16x9":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1200x675.png",1200,675,true],"bricks_large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1200x540.png",1200,540,true],"bricks_large_square":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-1200x900.png",1200,900,true],"bricks_medium":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-600x270.png",600,270,true],"bricks_medium_square":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-600x600.png",600,600,true],"profile_24":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-24x24.png",24,24,true],"profile_48":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-48x48.png",48,48,true],"profile_96":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-96x96.png",96,96,true],"profile_150":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-150x150.png",150,150,true],"profile_300":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/02\/Trends-Report_Cover-Image_DE_2000-x-900px_20240229-300x300.png",300,300,true]},"post_excerpt_stackable_v2":"<p>Der Weg in die Zukunft: Soterions Bericht \u00fcber GRC-Trends hebt vier zentrale Erkenntnisse und Vorhersagen hervor, die unserer Ansicht nach die Zukunft von GRC f\u00fcr Unternehmen, die SAP einsetzen, pr\u00e4gen werden.<\/p>\n","category_list_v2":"<a href=\"https:\/\/e3mag.com\/en\/category\/advertorial\/\" rel=\"category tag\">Advertorial<\/a>","author_info_v2":{"name":"Dudley Cartwright, Soterion","url":"https:\/\/e3mag.com\/en\/author\/dudley-cartwright\/"},"comments_num_v2":"0 comments","_links":{"self":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/139959","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/users\/5530"}],"replies":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/comments?post=139959"}],"version-history":[{"count":13,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/139959\/revisions"}],"predecessor-version":[{"id":140142,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/139959\/revisions\/140142"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/media\/139983"}],"wp:attachment":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/media?parent=139959"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/categories?post=139959"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/tags?post=139959"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/coauthors?post=139959"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}