Can anybody explain (short n simple) about SOX & SoDs with 3
examples for each functional module? n ur experience on SoDs.
Answer Posted / sakthi
SOD stands for Segregation of duties.
It helps us to identify frauds and Misstatements.
For example in virsa tool we have critical SOD conflict S017
for SD module where it identifies and checks for user who
could Perform credit approval function and modify cash
received for fraudulent purposes.
SOD conflict F017 for FICO module where it checks for users
who could Maintain a non bona-fide bank account and divert
incoming payments to it.
SOD conflict P001 for PP module where it checks for users
who could Maintain a fictitious vendor and enter a Vendor
invoice for automatic payment
As far my experience concerned we need to avoid critical SOD
conflicts as much as possible and these SOD conflicts are
the ones which the auditor checks and they ask for the
mitigation control that we have outside like trace.
| Is This Answer Correct ? | 3 Yes | 0 No |
Post New Answer View All Answers
Is it possible to change role template? How?
how we can see FFID if firefighter not able to see FFids ?
Hi Experts, can any one let me know the Tables which we use for compliance calibrator & Access enforcer of grc and please let me know the background jobs of grc, Please it's urgent so please answer as soon as possible to these questions , I really appreciate your help, Thanks karunakar
What every changes done exist role in development system that changes are not reflected in quality system, but transport is successfully moved?
what is the difference between usobt_c and usobx_c?
Is there a table for authorizations where I can quickly see the values entered in a group of fields?
You wan to transport user groups from transaction sugr? Would this impact the groups tab in su01? What would you do?
What is the difference between the table buffer and the user buffer?
What does the profile generator do?
what is your ticketing tool? can we give some details about how we are getting tickets
How would you do the 'a user logge into production system, changes a table and logged out'. How would you track him?
how we Set up Central User Administration (CUA) to manage 4 systems/clients
Please let me know if there any vacancies for 3 years of Experienced level in SAP Security
What are se09 t-codes used for?
What is t code?