cancel
Showing results for 
Search instead for 
Did you mean: 

How To Run SOD Analysis in GRC AC 10 between ECC & Employee Central ( Success Factors)

Former Member
0 Kudos

Hello Friends,

We are planning to integrate GRC AC 10 with Employee Central to run SOD Risk Analysis for Users who have access in both ECC and Employee Central (Success Factors). The issue we have here is, the User ID's are not consistent in ECC and EC. For Example - In ECC the user ID is U12345 and in EC the user ID is 12345. So how do we run risk analysis when the User ID information is not consistent across different systems connected to GRC. Please advise if anyone has involved in such similar requirement to run SOD Risk analysis for Users existing in SAP and other applications (not necessarily Employee Central, it could be Oracle/Peoplesoft etc) where the User U ID's are not consistent.

Let me know if you need any additional information and I would be glad to provide.

Any kind of assistance will be of great help.

Regards,

Surakshith Reddy

Accepted Solutions (0)

Answers (5)

Answers (5)

former_member608647
Discoverer
0 Kudos

Dear

Could you please share the sample GRC ruleset for SF??

lashele_harris
Explorer
0 Kudos

I'm currently in the process of connecting GRC to SF and would like to know if the ruleset information was shared.

Regards,

Lashele

Former Member
0 Kudos

Thanks for the information. That could be one of the option but that wont help run SOD analysis between GRC and Employee Central, As the user/role/permission data available in the form of standard API's in EC have to called periodically(Full sync daily atleast) and modelled in HCI (is being used to integrate SAP & EC and adjust User ID inconsistency) in a way that GRC can understand the data and fill the GRAC tables to be able to run SOD analysis between SAP and Employee Central. We are in the process of implementing this and will keep posted with more updates as we progress.

Keep Sharing your thoughts!

Former Member

Hi Surak,

I am at the moment working on defining GRC technical ruleset for Success Factors and would like to speak to you in that regards

Thanks and look forward to your message.

Thanks

Amit

siddharthrajora
Product and Topic Expert
Product and Topic Expert
0 Kudos

are you not using Person id or user to run the analysis?

You can use the User Mapping functionality of GRC 10.1 to perform risk analysis where you can designate a back end system as the Master User ID system and maintain the mappings of other back end systems to the Master User ID system.

To navigate to this screen in SPRO go to: SPRO > Governance, Risk and Compliance > Access Control > Maintain Master User ID mapping.

.

Former Member
0 Kudos

Thanks for your reply. We have implemented SAP Cloud Platform Integration also called HCI to integrate ECC and Employee Central so we want to want to leverage the same for integrating GRC as well. We have found standard API's related to Role/Permission/User metadata which could be used to run cross application SOD. It would be great If anyone can provide a roadmap for integrating GRC with Employee Central for running cross application SOD. Any inputs related to this are very valuable and will be highly appreciated. Thank You!

former_member252006
Discoverer
0 Kudos

Hi Surakshith,

You would SAP AVM to run risk analysis in GRC directly for Successfactors EC module.

Best Regards,

Kesava