What is the difference between VIRSA Tool and GRC, and does
VIRSA tool support to ECC6.0?
Answer Posted / reddy
What is GRC ?
Governance, Risk, and Compliance.
The goal of GRC is to help a company efficiently put
policies and controls in place to address all its
compliance obligations while at the same time gathering
information that helps proactively run the business.
This means Ethical Business Process should comply with
Effective Process controls as per the related industry
Business Process and accounting Process and Govt Policy .
This GRC process finally Can Conculded with respect to Govt
Orgasnisations and Public Orgaanisation which are
Registered in Local Stock Markets are accountable to have
Effective Governance and Process Controls to Protect the
Share holder rights and Prevent Organised Corporate Fruads
and scams.
GRC Tools and IT applications
There are many GRC AUDIT tools in the Market to Facilitate
Internal and External Audit of the Companies .
What is SAP VIRSA Tool.
focused on 1) Access controls , 2) Process Controls.
It Has 4 Sections to Audit the system.
1. Compliance Caliberator
2. Role Expert
3. Firefighter
4. Access enforcer .
VIRSA systems is now takenover by SAP AG.
It has been aprt of Netwever and add on now .
| Is This Answer Correct ? | 27 Yes | 2 No |
Post New Answer View All Answers
Can you anybody tell me what are the questions frequently asked 3 years of SAP Security experienced level in INFOSYS company.
What is the difference between c (check) and u (unmaintained)?
what is the use of defaults tab in start menu
What appears as the last sentence in sap note 587410?
What is the main purpose of parameters, groups & personalization tabs?
what is the main difference between the derived role and a single role?
Give an example of SOD with object level control & also decide the Risk implication from the Technical standpoint.
What is the Functionality difference between ECC 5 and ECC6? i.e. new functionality in ECC6 which is not in ECC 5.
What are some ap security t codes?
Can you explain document transfer-level security?
What are se10 t-codes used for?
What authorization are required to create and maintain user master records?
how we Restrict the auth groups for table maintain, creating Auth group using SE54 to built new Auth groups to restrict tables via auth object S_TABU_DIS
how to do Reporting and Analysis authorizations
What is the use of su56?