SlideShare uma empresa Scribd logo
1 de 37
Automating PeopleSoft Segregation of
Duties: HCM and Financials
PRESENTER:
Kirk Chan, Smart ERP Solutions, Inc.
NOTE: phones/mics are muted. Please submit any
questions using the GoToMeeting QUESTION feature
Smart ERP Solutions
IS THIS YOUR SoD BEST PRACTICE?
Segregation of Duties
Segregation of duties (SoD), or separation of duties, is the
concept of having more than one person required to complete a
task.
To help prevent fraud and error, no one individual should:
• Initiate a transaction
• Approve a transaction
• Record a transaction
• Reconcile balances
• Handle assets
•No single individual should have control
over two or more phases of a transaction or
operation…
•No one individual employee can complete a
significant business transaction in its
entirety…
•Those responsible for physical receipt of
goods should not be responsible for paying
for the goods.
•Those responsible for custody of goods
should not be responsible for maintaining the
records of the assets.
•Those responsible for collection of
receivables should not be responsible for
entries in the book of accounts.
What is Segregation of Duties Examples of Segregation of Duties
What Duties Should be
Segregated?
Purchase an Item
PO Initiator PO Approver PO Receiver
• Financial Duties
– Requisition Initiator
– Requisition Approver
– P.O. Initiator
– P.O. Approver
Workflow/HR Duties
Key Functionality for Automating SoD
• Configurable Data Security
You can employ fine-grained row level security via easy to use configuration options, to secure by any
field, in any application in PeopleSoft.
• Flexible Segregation of Duties
Create policies for multiple SoD models and structure simple or complex SoD rules. You can apply
different models to reflect the different needs of each part of your business.
• Mitigation
Mitigation allows you to cater to temporary or long-term situations where certain users may be
authorized to “violate” your Segregation of Duties policy. This enables you to document such situations
in preparation for your audit. You can then exclude mitigated users from your reports to avoid wasted
effort during the audit.
• Detective Mode
Report of SoD violations at the Component, Permissions List and Role Level.
• Preventative Mode
Enforce SoD by validating security before user access.
• Cater to seasonality
Specify “from” and “to” dates to allow temporary seasonal variations to your normal business control
requirements. This approach creates a very strong Return on Investment during the results analysis
phase by allowing simplified or highly granular approach to SoD analysis.
• Context based security
Allows different security attributes for specific pages. For example, you can allow a user to only view his
own department on an expense reimbursement, while allowing him to access all departments when
entering a journal.
Benefits of Automation with Effective SoD
• Allows you to build robust, proactive, manageable controls
into your live system
• Prevents SoD violations
• Greatly reduces the time needed to manage SoD controls
and achieve SOX compliance
• Reduces the workload needed to prepare for your audits
and clean up afterwards
• Provides the evidence of controls that auditors demand,
reducing the time taken to complete the audit
• Affordable by organizations of all sizes
Top 10 Financials SoD Rules
• Creating a journal entry and opening a closed accounting period
• Maintaining accounts receivable master data and posting receipts
• Depositing cash and reconciling bank statements
• Completing goods transfer and adjusting physical inventory counts
• Approving time cards and distributing pay checks
• Preparing an order and changing a billing document
• Changing an order and creating a delivery
• Creating a journal entry and opening a closed accounting period
• Creating general ledger accounts and posting journal entries
• Maintaining bank account information and posting payments
• Maintaining assets and creating a goods receipt
Top HCM SoD rules
Analysis
Security
Management
Segregation
of Duties
Compliance
Reporting
Auditing
Internal Controls
A key element in the compliance lifecycle
Effective Automated Segregation of Duties
SoD
Proactive
SoD
Reactive
SoD
Mitigation
Characteristics/Benefits of Effective SoD
• Built-in model enables SoD enforcement
– Violations checked BEFORE go-live
– Your decision to enforce rules or allow violations
• Saves time (= money)
– Easy set-up
– Easy testing for violations
– Quick and easy reporting
– Reduces number of compensating controls required
– Reduces auditing effort / costs
• Reduces risk
– Enforcing and reporting SoD violations reduces
opportunity for fraud
SoD – The Issues
• Nothing in PeopleSoft
– Any release
• Do use a Spreadsheet?
• How do you…
– Ensure the actual access control mirrors the
spreadsheet?
– Right people access the right data?
– Manage change control problems?
– Assess impact of changes?
– Manage enforcement of SoD?
Proactive SoD
Aim:
Prevent SoD Violations occurring during security Assignment.
Ensure Security Policy is enforced long term.
SoD Dashboards
Change
Role assignment
Or
Security
without
affecting live security
‘Proactive’ SoD
OK
A/P “Super”
Voucher Clerk Role
1. AP Voucher clerk
2. Secondary role 2
3. Secondary role 3
SoD
Violations
Check
Violations
A/P “Super”
Voucher Clerk Role
1. AP Voucher clerk
2. Secondary role 2
3. Secondary role 6
SoD
Violations
Check
Bank PaymentsInvoice entry (A/P)
Credit NotesVendor Master
Purchase OrderVendor Master
Invoice entry (A/P)Purchase Order
Vendor MasterPurchase Order
Invoicing (A/R)Credit Notes
Credit limitsSales Order Entry
Sales Order EntryCustomer Master
Goods ReceiptPurchase Order
Sales Order EntrySales Pricing
Bank PaymentsVendor Master
Purchase OrderSales Order Entry
From this taskSegregate this task:
Extract from pre-populated,
model
Build Security
Proactive SoD: User Profiles
Reactive SoD
Aim:
Accurately assess existing security for remediation.
Reduce Audit time and cost.
Build case for restructuring security.
‘Reactive’ SoD
Components
(In-depth Audit)
Permission
List
(Process)
Roles
(High-Level)
Reporting directly on
existing security to identify any
Current SoD violations
Creation of PeopleSoft SoD Rules
• Role level
– Create matrix of all active system roles
– Identify all roles that should not be linked to the same user
• Such as HR representative and Payroll Admin
• Permission List / Business Process level
– Include Application security & processing options
– Add to / modify as needed
• Component / Program level
– Add in any custom or modified processing
– If creating your own rules
• Start with most important controls & gradually add to them
Mitigation – The Issues
• Current Economic Climate
– Many redundancies equates to less people doing more.
– Major requirement from Audit to allow remediation
where a user is considered a risk.
– SOX requires that during an audit all risks must at least
be visible and understood by the business.
– With this comes risk assessment and documentation.
• Seasonal Changes
– Staff holidays or time away from office requires other
users be able to perform these additional duties.
• Ability to mitigate users once a validation has
occurred.
• Details of mitigation, including notes get added to
a mitigation table.
• The user gets checked during the next validation
but is not added to the violations table.
• Ability to time out mitigations, i.e. allowing for staff
who are on holiday, etc.
Mitigation Solutions
Mitigation
PeopleSoft SoD Dashboards
PeopleSoft SoD Dashboards
PeopleSoft SoD Dashboards
• The user’s security profile is made up of the assigned roles, the
permission lists assigned to that role and permission lists
assigned directly to the user.
Understanding PeopleSoft Security
Smart SoD Process
Demo:
Smart SoD™
Financials demo
HCM demo
Summary
Value Statement
Security and Segregation of Duties is an important element of your
overall PeopleSoft security and risk management
Key Features of an automated solution can help you maintain
legislative compliance (SoX), meet audit requirements and
reduce the likelihood and impacts of fraud and errors
• Expressly designed for your current PeopleSoft
• Powerful Proactive, Reactive and Mitigation Features
• Automated Workflow Approvals
• Reporting/Dashboards facilitate audits and compliance
• Use pre-packaged built-in security and SoD rules or easily
create your own
• Add-on Architecture Lowers Total Cost of Ownership
– Seamless Integration
– Utilize Best Practices
– Maintenance and Upgrades
Questions?
Submit your question using the GoToMeeting QUESTION feature (any
remaining questions will be addressed via email after the broadcast)
Thank You
Visit www.smarterp.com for information or contact
us at sales@smarterp.com

Mais conteúdo relacionado

Mais procurados

Oracle Project Financial Management Cloud in 9 Weeks
Oracle Project Financial Management Cloud in 9 WeeksOracle Project Financial Management Cloud in 9 Weeks
Oracle Project Financial Management Cloud in 9 WeeksPerficient, Inc.
 
Oracle Fusion Procurement implementation guide
Oracle Fusion Procurement implementation guideOracle Fusion Procurement implementation guide
Oracle Fusion Procurement implementation guidesahagaurav
 
Oracle Hyperion and Planning Public Sector Budgeting
Oracle Hyperion and Planning Public Sector BudgetingOracle Hyperion and Planning Public Sector Budgeting
Oracle Hyperion and Planning Public Sector BudgetingIssam Hejazin
 
Oracle ebs r12eam part2
Oracle ebs r12eam part2Oracle ebs r12eam part2
Oracle ebs r12eam part2jcvd12
 
Implementing Fusion Cloud Procurement a Real Life Case Study
Implementing Fusion Cloud Procurement a Real Life Case StudyImplementing Fusion Cloud Procurement a Real Life Case Study
Implementing Fusion Cloud Procurement a Real Life Case StudyJade Global
 
Encumbrance accounting in oracle ebs r12
Encumbrance accounting in oracle ebs r12Encumbrance accounting in oracle ebs r12
Encumbrance accounting in oracle ebs r12Sam Elrashedy
 
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...Simplify Complex Consolidations and Close Processes with Oracle Financial Con...
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...Alithya
 
Upgrading to 11.1.2.4 and Other Technical Considerations
Upgrading to 11.1.2.4 and Other Technical ConsiderationsUpgrading to 11.1.2.4 and Other Technical Considerations
Upgrading to 11.1.2.4 and Other Technical Considerationsfinitsolutions
 
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...Jade Global
 
Oracle PPM Cloud Project Financial Management - Oracle Training
Oracle PPM Cloud Project Financial Management - Oracle TrainingOracle PPM Cloud Project Financial Management - Oracle Training
Oracle PPM Cloud Project Financial Management - Oracle TrainingOracleTrainings
 
Oracle Fusion Payments
Oracle Fusion Payments Oracle Fusion Payments
Oracle Fusion Payments Berry Clemens
 
Oracle Fusion Architecture
Oracle Fusion ArchitectureOracle Fusion Architecture
Oracle Fusion ArchitectureVinay Kumar
 
Oracle Applications - R12 Approvals Management Engine - AME Training
Oracle Applications - R12 Approvals Management Engine - AME TrainingOracle Applications - R12 Approvals Management Engine - AME Training
Oracle Applications - R12 Approvals Management Engine - AME TrainingDharmalingam Kandampalayam Shanmugam
 

Mais procurados (20)

One time payment requests in Oracle ERP Cloud
One time payment requests in Oracle ERP CloudOne time payment requests in Oracle ERP Cloud
One time payment requests in Oracle ERP Cloud
 
Oracle Project Financial Management Cloud in 9 Weeks
Oracle Project Financial Management Cloud in 9 WeeksOracle Project Financial Management Cloud in 9 Weeks
Oracle Project Financial Management Cloud in 9 Weeks
 
Tab
TabTab
Tab
 
Oracle Fusion Procurement implementation guide
Oracle Fusion Procurement implementation guideOracle Fusion Procurement implementation guide
Oracle Fusion Procurement implementation guide
 
Oracle Hyperion and Planning Public Sector Budgeting
Oracle Hyperion and Planning Public Sector BudgetingOracle Hyperion and Planning Public Sector Budgeting
Oracle Hyperion and Planning Public Sector Budgeting
 
Oracle ebs r12eam part2
Oracle ebs r12eam part2Oracle ebs r12eam part2
Oracle ebs r12eam part2
 
Implementing Fusion Cloud Procurement a Real Life Case Study
Implementing Fusion Cloud Procurement a Real Life Case StudyImplementing Fusion Cloud Procurement a Real Life Case Study
Implementing Fusion Cloud Procurement a Real Life Case Study
 
Oracle eAM Overview And Integration With E-Business Suite
Oracle eAM Overview And Integration With E-Business SuiteOracle eAM Overview And Integration With E-Business Suite
Oracle eAM Overview And Integration With E-Business Suite
 
Oracle FCCS: A Deep Dive
Oracle FCCS: A Deep DiveOracle FCCS: A Deep Dive
Oracle FCCS: A Deep Dive
 
Encumbrance accounting in oracle ebs r12
Encumbrance accounting in oracle ebs r12Encumbrance accounting in oracle ebs r12
Encumbrance accounting in oracle ebs r12
 
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...Simplify Complex Consolidations and Close Processes with Oracle Financial Con...
Simplify Complex Consolidations and Close Processes with Oracle Financial Con...
 
Order to cash
Order to cashOrder to cash
Order to cash
 
Upgrading to 11.1.2.4 and Other Technical Considerations
Upgrading to 11.1.2.4 and Other Technical ConsiderationsUpgrading to 11.1.2.4 and Other Technical Considerations
Upgrading to 11.1.2.4 and Other Technical Considerations
 
Multiperiod Accounting in Oracle Fusion ERP Cloud
Multiperiod Accounting in Oracle Fusion ERP CloudMultiperiod Accounting in Oracle Fusion ERP Cloud
Multiperiod Accounting in Oracle Fusion ERP Cloud
 
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...
Case study: Managing a Fusion Financials Cloud Implementation with Oracle Uni...
 
Oracle PPM Cloud Project Financial Management - Oracle Training
Oracle PPM Cloud Project Financial Management - Oracle TrainingOracle PPM Cloud Project Financial Management - Oracle Training
Oracle PPM Cloud Project Financial Management - Oracle Training
 
Oracle Fusion Payments
Oracle Fusion Payments Oracle Fusion Payments
Oracle Fusion Payments
 
Oracle Fusion Architecture
Oracle Fusion ArchitectureOracle Fusion Architecture
Oracle Fusion Architecture
 
Oracle fixed assets
Oracle fixed assetsOracle fixed assets
Oracle fixed assets
 
Oracle Applications - R12 Approvals Management Engine - AME Training
Oracle Applications - R12 Approvals Management Engine - AME TrainingOracle Applications - R12 Approvals Management Engine - AME Training
Oracle Applications - R12 Approvals Management Engine - AME Training
 

Destaque

Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Smart ERP Solutions, Inc.
 
Security & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSecurity & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSmart ERP Solutions, Inc.
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...TransWare AG
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties SolutionsAhmed Abdul Hamed
 
Segregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySegregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySriram Narayanan
 
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 CA CISA Jayjit Biswas
 
IT Control Objectives for SOX
IT Control Objectives for SOXIT Control Objectives for SOX
IT Control Objectives for SOXMahesh Patwardhan
 
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsAutomating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsSmart ERP Solutions, Inc.
 
HRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHatem El Houshy
 
Hris data management
Hris data managementHris data management
Hris data managementalexhuq2010
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access ControlNasir Gondal
 
SOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleySOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleyAmarnath Gupta
 
Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)vinaya.hs
 
Human Resource Information System - HRIS
Human Resource Information System - HRIS Human Resource Information System - HRIS
Human Resource Information System - HRIS antonyjosephtharayil
 
Effective Framework for Continuous Auditing
Effective Framework for Continuous AuditingEffective Framework for Continuous Auditing
Effective Framework for Continuous AuditingCaseWare IDEA
 

Destaque (20)

Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23Effective Segregation of Duties for PeopleSoft 2011-02-23
Effective Segregation of Duties for PeopleSoft 2011-02-23
 
Security & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoftSecurity & Segregation of Duties for PeopleSoft
Security & Segregation of Duties for PeopleSoft
 
Government and SOX Compliance for ERP Systems
Government and SOX Compliance for ERP SystemsGovernment and SOX Compliance for ERP Systems
Government and SOX Compliance for ERP Systems
 
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...Profiling for SAP - Compliance Management, Access Control and Segregation of ...
Profiling for SAP - Compliance Management, Access Control and Segregation of ...
 
Segregation of Duties Solutions
Segregation of Duties SolutionsSegregation of Duties Solutions
Segregation of Duties Solutions
 
Segregation of Duties and Continuous Delivery
Segregation of Duties and Continuous DeliverySegregation of Duties and Continuous Delivery
Segregation of Duties and Continuous Delivery
 
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015 Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
Segregation of duties in SAP @ ISACA Pune presentation on 18.4.2015
 
IT Control Objectives for SOX
IT Control Objectives for SOXIT Control Objectives for SOX
IT Control Objectives for SOX
 
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus SolutionsAutomating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
Automating PeopleSoft Segregation of Duties: Financials/HCM/Campus Solutions
 
HRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful TransitionHRIS-The Road Map For A Successful Transition
HRIS-The Road Map For A Successful Transition
 
HRIS
HRISHRIS
HRIS
 
Hris data management
Hris data managementHris data management
Hris data management
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access Control
 
SOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-OxleySOX compliance - Understanding Sarbanes-Oxley
SOX compliance - Understanding Sarbanes-Oxley
 
Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)Sarbanes-Oxley Act (SOX)
Sarbanes-Oxley Act (SOX)
 
Human Resource Information System - HRIS
Human Resource Information System - HRIS Human Resource Information System - HRIS
Human Resource Information System - HRIS
 
Hris ppt
Hris pptHris ppt
Hris ppt
 
Human Resource Information System (HRIS) – Implementation and Control
Human Resource Information System (HRIS) – Implementation and ControlHuman Resource Information System (HRIS) – Implementation and Control
Human Resource Information System (HRIS) – Implementation and Control
 
Hris
HrisHris
Hris
 
Effective Framework for Continuous Auditing
Effective Framework for Continuous AuditingEffective Framework for Continuous Auditing
Effective Framework for Continuous Auditing
 

Semelhante a Automating PeopleSoft Segregation of Duties: HCM and Financials

Sap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online trainingSap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online traininggrconlinetraining
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017Smart ERP Solutions, Inc.
 
Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Panna Visani MBCS ACCA
 
Identity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityIdentity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityHorst Walther
 
2016 BestGRC Product Demo
2016 BestGRC Product Demo2016 BestGRC Product Demo
2016 BestGRC Product DemoGlenn Murphy
 
Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Banu HImawan
 
FF2 Executive Summary
FF2 Executive SummaryFF2 Executive Summary
FF2 Executive Summarybbhart_li
 
Best Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementBest Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementJTLeekley
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12magnificsairam
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12magnificbsr
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12babymagnific
 
Llm Loan Lifecycle Managerv1 6
Llm   Loan Lifecycle Managerv1 6Llm   Loan Lifecycle Managerv1 6
Llm Loan Lifecycle Managerv1 6guest57776a
 
VisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisionet Systems, Inc.
 
Shashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank Kale
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Hisyam
 

Semelhante a Automating PeopleSoft Segregation of Duties: HCM and Financials (20)

IPO Readiness SOX Sod
IPO Readiness SOX SodIPO Readiness SOX Sod
IPO Readiness SOX Sod
 
Sap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online trainingSap GRC Basic Information | GRC 12 online training
Sap GRC Basic Information | GRC 12 online training
 
Implementing security and controls in people soft best practices - may 2017
Implementing security and controls in people soft   best practices - may 2017Implementing security and controls in people soft   best practices - may 2017
Implementing security and controls in people soft best practices - may 2017
 
Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1Adept Change Management_Panna Visani 2015_1
Adept Change Management_Panna Visani 2015_1
 
Identity & Access Governance versus Process Agility
Identity & Access Governance versus Process AgilityIdentity & Access Governance versus Process Agility
Identity & Access Governance versus Process Agility
 
2016 BestGRC Product Demo
2016 BestGRC Product Demo2016 BestGRC Product Demo
2016 BestGRC Product Demo
 
Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?Why Do Banks Spends Millions for Credit Management System?
Why Do Banks Spends Millions for Credit Management System?
 
FF2 Executive Summary
FF2 Executive SummaryFF2 Executive Summary
FF2 Executive Summary
 
Xite people management solution introduction
Xite people management solution introductionXite people management solution introduction
Xite people management solution introduction
 
Best Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk ManagementBest Practices in Remote Deposit Capture Risk Management
Best Practices in Remote Deposit Capture Risk Management
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Overview of the financial architecture in oracle e business suite release 12
Overview of the  financial architecture in oracle e business suite release 12Overview of the  financial architecture in oracle e business suite release 12
Overview of the financial architecture in oracle e business suite release 12
 
Loomis Direct
Loomis DirectLoomis Direct
Loomis Direct
 
Llm Loan Lifecycle Managerv1 6
Llm   Loan Lifecycle Managerv1 6Llm   Loan Lifecycle Managerv1 6
Llm Loan Lifecycle Managerv1 6
 
VisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize ShortagesVisiEscrow | Maximize Float - Minimize Shortages
VisiEscrow | Maximize Float - Minimize Shortages
 
oracle Presntation.ppt
oracle Presntation.pptoracle Presntation.ppt
oracle Presntation.ppt
 
DARTS
DARTSDARTS
DARTS
 
Shashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual TestingShashank_Kale_Resume_Manual Testing
Shashank_Kale_Resume_Manual Testing
 
Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)Brief overview on Internal control (Audit)
Brief overview on Internal control (Audit)
 

Mais de Smart ERP Solutions, Inc.

Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Smart ERP Solutions, Inc.
 
Transforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMTransforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMSmart ERP Solutions, Inc.
 
Maximize your Oracle Cloud Investment and Drive Innovation
 Maximize your Oracle Cloud Investment and Drive Innovation Maximize your Oracle Cloud Investment and Drive Innovation
Maximize your Oracle Cloud Investment and Drive InnovationSmart ERP Solutions, Inc.
 
Best Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsBest Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsSmart ERP Solutions, Inc.
 
Smart erp solutions oracle cloud services overview - 2021 - 2022
Smart erp solutions   oracle cloud services overview - 2021 - 2022Smart erp solutions   oracle cloud services overview - 2021 - 2022
Smart erp solutions oracle cloud services overview - 2021 - 2022Smart ERP Solutions, Inc.
 
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorPeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorSmart ERP Solutions, Inc.
 
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSNo One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSSmart ERP Solutions, Inc.
 
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...Smart ERP Solutions, Inc.
 
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Smart ERP Solutions, Inc.
 
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorConfigure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorSmart ERP Solutions, Inc.
 
Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Smart ERP Solutions, Inc.
 
Convert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessConvert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessSmart ERP Solutions, Inc.
 
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...Smart ERP Solutions, Inc.
 
Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Smart ERP Solutions, Inc.
 

Mais de Smart ERP Solutions, Inc. (20)

Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2Navigating HCM Compliance Through Managed Services Part 2
Navigating HCM Compliance Through Managed Services Part 2
 
Transforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPMTransforming Financial Insights with Oracle EPM
Transforming Financial Insights with Oracle EPM
 
Maximize your Oracle Cloud Investment and Drive Innovation
 Maximize your Oracle Cloud Investment and Drive Innovation Maximize your Oracle Cloud Investment and Drive Innovation
Maximize your Oracle Cloud Investment and Drive Innovation
 
SmartERP PeopleSoft Security
SmartERP PeopleSoft  Security SmartERP PeopleSoft  Security
SmartERP PeopleSoft Security
 
SmartERP Oracle Capabilities 2023.pptx
SmartERP Oracle Capabilities 2023.pptxSmartERP Oracle Capabilities 2023.pptx
SmartERP Oracle Capabilities 2023.pptx
 
Best Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle ApplicationsBest Practices to Modernizing your Oracle Applications
Best Practices to Modernizing your Oracle Applications
 
Manufactures whats keeping you up
Manufactures   whats keeping you upManufactures   whats keeping you up
Manufactures whats keeping you up
 
The Fully Automated Enterprise (RPA)
The Fully Automated Enterprise (RPA)The Fully Automated Enterprise (RPA)
The Fully Automated Enterprise (RPA)
 
Smart erp solutions oracle cloud services overview - 2021 - 2022
Smart erp solutions   oracle cloud services overview - 2021 - 2022Smart erp solutions   oracle cloud services overview - 2021 - 2022
Smart erp solutions oracle cloud services overview - 2021 - 2022
 
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field ConfiguratorPeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
PeopleSoft Webinar - Configure vs. Customize Page and Field Configurator
 
Alert framework2021
Alert framework2021Alert framework2021
Alert framework2021
 
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHSNo One Size Fits All - Form I-9 and E-Verify presentation from the DHS
No One Size Fits All - Form I-9 and E-Verify presentation from the DHS
 
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
E-Verify for PeopleSoft - Streamline and automate your Employment Authorizati...
 
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
Pre-board Your New Hires for PeopleSoft - Streamline and automate your pre-bo...
 
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field ConfiguratorConfigure Versus Customize: Using PeopleSoft Page and Field Configurator
Configure Versus Customize: Using PeopleSoft Page and Field Configurator
 
Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...Managed Services - Small, Medium, or Large - what's the best fit for your org...
Managed Services - Small, Medium, or Large - what's the best fit for your org...
 
Convert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperlessConvert manual paper-based business processes into automated paperless
Convert manual paper-based business processes into automated paperless
 
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
3 steps to successfully analyzing your PeopleSoft Security for Segregation of...
 
Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...Alert Framework - Alert your organization to errors, changes, and stalled tra...
Alert Framework - Alert your organization to errors, changes, and stalled tra...
 
The 6 Biggest Trends for AP Leaders in 2021
The 6 Biggest Trends for AP Leaders in 2021The 6 Biggest Trends for AP Leaders in 2021
The 6 Biggest Trends for AP Leaders in 2021
 

Último

How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...
How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...
How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...Hector Del Castillo, CPM, CPMM
 
Psychic Reading | Spiritual Guidance – Astro Ganesh Ji
Psychic Reading | Spiritual Guidance – Astro Ganesh JiPsychic Reading | Spiritual Guidance – Astro Ganesh Ji
Psychic Reading | Spiritual Guidance – Astro Ganesh Jiastral oracle
 
Rakhi sets symbolizing the bond of love.pptx
Rakhi sets symbolizing the bond of love.pptxRakhi sets symbolizing the bond of love.pptx
Rakhi sets symbolizing the bond of love.pptxRakhi Bazaar
 
EUDR Info Meeting Ethiopian coffee exporters
EUDR Info Meeting Ethiopian coffee exportersEUDR Info Meeting Ethiopian coffee exporters
EUDR Info Meeting Ethiopian coffee exportersPeter Horsten
 
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...Operational Excellence Consulting
 
Customizable Contents Restoration Training
Customizable Contents Restoration TrainingCustomizable Contents Restoration Training
Customizable Contents Restoration TrainingCalvinarnold843
 
Pitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckPitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckHajeJanKamps
 
WSMM Media and Entertainment Feb_March_Final.pdf
WSMM Media and Entertainment Feb_March_Final.pdfWSMM Media and Entertainment Feb_March_Final.pdf
WSMM Media and Entertainment Feb_March_Final.pdfJamesConcepcion7
 
Implementing Exponential Accelerators.pptx
Implementing Exponential Accelerators.pptxImplementing Exponential Accelerators.pptx
Implementing Exponential Accelerators.pptxRich Reba
 
Neha Jhalani Hiranandani: A Guide to Her Life and Career
Neha Jhalani Hiranandani: A Guide to Her Life and CareerNeha Jhalani Hiranandani: A Guide to Her Life and Career
Neha Jhalani Hiranandani: A Guide to Her Life and Careerr98588472
 
Welding Electrode Making Machine By Deccan Dynamics
Welding Electrode Making Machine By Deccan DynamicsWelding Electrode Making Machine By Deccan Dynamics
Welding Electrode Making Machine By Deccan DynamicsIndiaMART InterMESH Limited
 
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdftrending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdfMintel Group
 
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdfSherl Simon
 
Andrii Rodionov: What can go wrong in a distributed system – experience from ...
Andrii Rodionov: What can go wrong in a distributed system – experience from ...Andrii Rodionov: What can go wrong in a distributed system – experience from ...
Andrii Rodionov: What can go wrong in a distributed system – experience from ...Lviv Startup Club
 
Ivey Leveraging Information Technology MBA 2024
Ivey Leveraging Information Technology MBA 2024Ivey Leveraging Information Technology MBA 2024
Ivey Leveraging Information Technology MBA 2024Nihal Nishadul
 
Excvation Safety for safety officers reference
Excvation Safety for safety officers referenceExcvation Safety for safety officers reference
Excvation Safety for safety officers referencessuser2c065e
 
WSMM Technology February.March Newsletter_vF.pdf
WSMM Technology February.March Newsletter_vF.pdfWSMM Technology February.March Newsletter_vF.pdf
WSMM Technology February.March Newsletter_vF.pdfJamesConcepcion7
 
Fundamentals Welcome and Inclusive DEIB
Fundamentals Welcome and  Inclusive DEIBFundamentals Welcome and  Inclusive DEIB
Fundamentals Welcome and Inclusive DEIBGregory DeShields
 

Último (20)

How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...
How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...
How Generative AI Is Transforming Your Business | Byond Growth Insights | Apr...
 
Psychic Reading | Spiritual Guidance – Astro Ganesh Ji
Psychic Reading | Spiritual Guidance – Astro Ganesh JiPsychic Reading | Spiritual Guidance – Astro Ganesh Ji
Psychic Reading | Spiritual Guidance – Astro Ganesh Ji
 
Rakhi sets symbolizing the bond of love.pptx
Rakhi sets symbolizing the bond of love.pptxRakhi sets symbolizing the bond of love.pptx
Rakhi sets symbolizing the bond of love.pptx
 
EUDR Info Meeting Ethiopian coffee exporters
EUDR Info Meeting Ethiopian coffee exportersEUDR Info Meeting Ethiopian coffee exporters
EUDR Info Meeting Ethiopian coffee exporters
 
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...
The McKinsey 7S Framework: A Holistic Approach to Harmonizing All Parts of th...
 
Customizable Contents Restoration Training
Customizable Contents Restoration TrainingCustomizable Contents Restoration Training
Customizable Contents Restoration Training
 
Pitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckPitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deck
 
WSMM Media and Entertainment Feb_March_Final.pdf
WSMM Media and Entertainment Feb_March_Final.pdfWSMM Media and Entertainment Feb_March_Final.pdf
WSMM Media and Entertainment Feb_March_Final.pdf
 
Implementing Exponential Accelerators.pptx
Implementing Exponential Accelerators.pptxImplementing Exponential Accelerators.pptx
Implementing Exponential Accelerators.pptx
 
Neha Jhalani Hiranandani: A Guide to Her Life and Career
Neha Jhalani Hiranandani: A Guide to Her Life and CareerNeha Jhalani Hiranandani: A Guide to Her Life and Career
Neha Jhalani Hiranandani: A Guide to Her Life and Career
 
Welding Electrode Making Machine By Deccan Dynamics
Welding Electrode Making Machine By Deccan DynamicsWelding Electrode Making Machine By Deccan Dynamics
Welding Electrode Making Machine By Deccan Dynamics
 
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdftrending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
 
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf
5-Step Framework to Convert Any Business into a Wealth Generation Machine.pdf
 
WAM Corporate Presentation April 12 2024.pdf
WAM Corporate Presentation April 12 2024.pdfWAM Corporate Presentation April 12 2024.pdf
WAM Corporate Presentation April 12 2024.pdf
 
Andrii Rodionov: What can go wrong in a distributed system – experience from ...
Andrii Rodionov: What can go wrong in a distributed system – experience from ...Andrii Rodionov: What can go wrong in a distributed system – experience from ...
Andrii Rodionov: What can go wrong in a distributed system – experience from ...
 
Ivey Leveraging Information Technology MBA 2024
Ivey Leveraging Information Technology MBA 2024Ivey Leveraging Information Technology MBA 2024
Ivey Leveraging Information Technology MBA 2024
 
Excvation Safety for safety officers reference
Excvation Safety for safety officers referenceExcvation Safety for safety officers reference
Excvation Safety for safety officers reference
 
Authentically Social - presented by Corey Perlman
Authentically Social - presented by Corey PerlmanAuthentically Social - presented by Corey Perlman
Authentically Social - presented by Corey Perlman
 
WSMM Technology February.March Newsletter_vF.pdf
WSMM Technology February.March Newsletter_vF.pdfWSMM Technology February.March Newsletter_vF.pdf
WSMM Technology February.March Newsletter_vF.pdf
 
Fundamentals Welcome and Inclusive DEIB
Fundamentals Welcome and  Inclusive DEIBFundamentals Welcome and  Inclusive DEIB
Fundamentals Welcome and Inclusive DEIB
 

Automating PeopleSoft Segregation of Duties: HCM and Financials

  • 1. Automating PeopleSoft Segregation of Duties: HCM and Financials PRESENTER: Kirk Chan, Smart ERP Solutions, Inc. NOTE: phones/mics are muted. Please submit any questions using the GoToMeeting QUESTION feature
  • 3. IS THIS YOUR SoD BEST PRACTICE?
  • 4. Segregation of Duties Segregation of duties (SoD), or separation of duties, is the concept of having more than one person required to complete a task. To help prevent fraud and error, no one individual should: • Initiate a transaction • Approve a transaction • Record a transaction • Reconcile balances • Handle assets
  • 5. •No single individual should have control over two or more phases of a transaction or operation… •No one individual employee can complete a significant business transaction in its entirety… •Those responsible for physical receipt of goods should not be responsible for paying for the goods. •Those responsible for custody of goods should not be responsible for maintaining the records of the assets. •Those responsible for collection of receivables should not be responsible for entries in the book of accounts. What is Segregation of Duties Examples of Segregation of Duties
  • 6. What Duties Should be Segregated? Purchase an Item PO Initiator PO Approver PO Receiver • Financial Duties – Requisition Initiator – Requisition Approver – P.O. Initiator – P.O. Approver
  • 8.
  • 9. Key Functionality for Automating SoD • Configurable Data Security You can employ fine-grained row level security via easy to use configuration options, to secure by any field, in any application in PeopleSoft. • Flexible Segregation of Duties Create policies for multiple SoD models and structure simple or complex SoD rules. You can apply different models to reflect the different needs of each part of your business. • Mitigation Mitigation allows you to cater to temporary or long-term situations where certain users may be authorized to “violate” your Segregation of Duties policy. This enables you to document such situations in preparation for your audit. You can then exclude mitigated users from your reports to avoid wasted effort during the audit. • Detective Mode Report of SoD violations at the Component, Permissions List and Role Level. • Preventative Mode Enforce SoD by validating security before user access. • Cater to seasonality Specify “from” and “to” dates to allow temporary seasonal variations to your normal business control requirements. This approach creates a very strong Return on Investment during the results analysis phase by allowing simplified or highly granular approach to SoD analysis. • Context based security Allows different security attributes for specific pages. For example, you can allow a user to only view his own department on an expense reimbursement, while allowing him to access all departments when entering a journal.
  • 10. Benefits of Automation with Effective SoD • Allows you to build robust, proactive, manageable controls into your live system • Prevents SoD violations • Greatly reduces the time needed to manage SoD controls and achieve SOX compliance • Reduces the workload needed to prepare for your audits and clean up afterwards • Provides the evidence of controls that auditors demand, reducing the time taken to complete the audit • Affordable by organizations of all sizes
  • 11. Top 10 Financials SoD Rules • Creating a journal entry and opening a closed accounting period • Maintaining accounts receivable master data and posting receipts • Depositing cash and reconciling bank statements • Completing goods transfer and adjusting physical inventory counts • Approving time cards and distributing pay checks • Preparing an order and changing a billing document • Changing an order and creating a delivery • Creating a journal entry and opening a closed accounting period • Creating general ledger accounts and posting journal entries • Maintaining bank account information and posting payments • Maintaining assets and creating a goods receipt
  • 12. Top HCM SoD rules
  • 14. Effective Automated Segregation of Duties SoD Proactive SoD Reactive SoD Mitigation
  • 15. Characteristics/Benefits of Effective SoD • Built-in model enables SoD enforcement – Violations checked BEFORE go-live – Your decision to enforce rules or allow violations • Saves time (= money) – Easy set-up – Easy testing for violations – Quick and easy reporting – Reduces number of compensating controls required – Reduces auditing effort / costs • Reduces risk – Enforcing and reporting SoD violations reduces opportunity for fraud
  • 16. SoD – The Issues • Nothing in PeopleSoft – Any release • Do use a Spreadsheet? • How do you… – Ensure the actual access control mirrors the spreadsheet? – Right people access the right data? – Manage change control problems? – Assess impact of changes? – Manage enforcement of SoD?
  • 17. Proactive SoD Aim: Prevent SoD Violations occurring during security Assignment. Ensure Security Policy is enforced long term.
  • 19. Change Role assignment Or Security without affecting live security ‘Proactive’ SoD OK A/P “Super” Voucher Clerk Role 1. AP Voucher clerk 2. Secondary role 2 3. Secondary role 3 SoD Violations Check Violations A/P “Super” Voucher Clerk Role 1. AP Voucher clerk 2. Secondary role 2 3. Secondary role 6 SoD Violations Check Bank PaymentsInvoice entry (A/P) Credit NotesVendor Master Purchase OrderVendor Master Invoice entry (A/P)Purchase Order Vendor MasterPurchase Order Invoicing (A/R)Credit Notes Credit limitsSales Order Entry Sales Order EntryCustomer Master Goods ReceiptPurchase Order Sales Order EntrySales Pricing Bank PaymentsVendor Master Purchase OrderSales Order Entry From this taskSegregate this task: Extract from pre-populated, model Build Security
  • 21. Reactive SoD Aim: Accurately assess existing security for remediation. Reduce Audit time and cost. Build case for restructuring security.
  • 22. ‘Reactive’ SoD Components (In-depth Audit) Permission List (Process) Roles (High-Level) Reporting directly on existing security to identify any Current SoD violations
  • 23. Creation of PeopleSoft SoD Rules • Role level – Create matrix of all active system roles – Identify all roles that should not be linked to the same user • Such as HR representative and Payroll Admin • Permission List / Business Process level – Include Application security & processing options – Add to / modify as needed • Component / Program level – Add in any custom or modified processing – If creating your own rules • Start with most important controls & gradually add to them
  • 24. Mitigation – The Issues • Current Economic Climate – Many redundancies equates to less people doing more. – Major requirement from Audit to allow remediation where a user is considered a risk. – SOX requires that during an audit all risks must at least be visible and understood by the business. – With this comes risk assessment and documentation. • Seasonal Changes – Staff holidays or time away from office requires other users be able to perform these additional duties.
  • 25. • Ability to mitigate users once a validation has occurred. • Details of mitigation, including notes get added to a mitigation table. • The user gets checked during the next validation but is not added to the violations table. • Ability to time out mitigations, i.e. allowing for staff who are on holiday, etc. Mitigation Solutions
  • 30. • The user’s security profile is made up of the assigned roles, the permission lists assigned to that role and permission lists assigned directly to the user. Understanding PeopleSoft Security
  • 34. Value Statement Security and Segregation of Duties is an important element of your overall PeopleSoft security and risk management Key Features of an automated solution can help you maintain legislative compliance (SoX), meet audit requirements and reduce the likelihood and impacts of fraud and errors • Expressly designed for your current PeopleSoft • Powerful Proactive, Reactive and Mitigation Features • Automated Workflow Approvals • Reporting/Dashboards facilitate audits and compliance • Use pre-packaged built-in security and SoD rules or easily create your own • Add-on Architecture Lowers Total Cost of Ownership – Seamless Integration – Utilize Best Practices – Maintenance and Upgrades
  • 35.
  • 36. Questions? Submit your question using the GoToMeeting QUESTION feature (any remaining questions will be addressed via email after the broadcast)
  • 37. Thank You Visit www.smarterp.com for information or contact us at sales@smarterp.com