Do You Really Want to Make Me Cry?
I’m sure you heard this kind of dialog before:“We need to remove one of your authorizations immediately”“Why?!”“Because it violates a segregation of duties rule”“Which rule???”“Something to do with...
View ArticleHow Much Money Do You Have?
Imagine the following scenario: you’re about to go to the supermarket, your wallet is in your pocket with a $50 bill in it. Just before you leave the house, your spouse asks you to buy something from...
View ArticleMany Enterprises Negotiate With SAP and You Can Too
Believe it or not, SAP wants you to be its customer. Moreover, SAP wants you to be a satisfied customer so that your company will purchase other SAP management solutions in the future. If you have...
View ArticleCISO Advice: Shooting Might Not Be The Best Option
One of the perks of being a Senior Implementation Advisor at Xpandion is hearing our customers describe their many juicy company stories. And let me tell you, there are some doozies. This most recent...
View ArticleSAP Licenses - How Many Different Types Do You Know?
When you ask the average SAP customer or novice license consultant how many SAP license types they know of, they will probably answer “Professional,” “Limited Professional,” “Employee” and maybe even...
View ArticleEliminating the Wrong Guy…
A couple of years ago, we included a “Lock User” button feature into our security product. If you received a “very high” alert, you could log into the system, catch the fraud in action, press the “Lock...
View ArticleHow to Understand SAP Authorizations in 10 Minutes or Less
If you’re like most CIOs, CISOs or internal auditors that work in a company that has implemented SAP, every day you have to contend with overloaded terms like “Profile,” “Authorization Role” and...
View ArticleSUIM: The Pitfalls of Analyzing SAP Authorizations During an Audit
(This is the short version of an article regarding the most popular T-Code used to analyze SAP Authorizations. Download the full SUIM article including examples and screenshots).When it comes to SAP...
View ArticleThe Dreaded SAP_ALL Power Profile
How you can maintain GRC compliance if you have users with dangerous SAP_ALL(This is the short version of an article regarding the pervasive SAP_ALL Authorization Profile. Download the full article...
View ArticleThe Winning Combination: Merging SAP Licensing into Your Workflow Processes
The Gate Keeper for SAP LicensingWho’s in charge of SAP licensing in your organization? Is it you? A dedicated Licensing Manager (aka Software Asset Manager, aka SAM)? Maybe it’s the IT manager or the...
View ArticleThe SAP Security Paradox: Irregular User Activity
“How Many Times?”We, and our partners, often ask ourselves that very question after hearing case after case of employee fraud being committed at an enterprise. How many times will these companies...
View ArticleDo You Understand the Meaning of Behavior-Based Profiling?
Xpandion creates “behavior-based profiling” for business applications. Sounds impressive, huh? However, do you know what it means, exactly?Our customers often understand the benefits of our products:...
View Article10 Ways to Make Your Upcoming SAP Licensing Audit Easier
Tis’ The Season. SAP Licensing Audit Season, that is.As things in the office are heating up in anticipation of the imminent 2013 year-end SAP Licensing Audit, many hard decisions for Licensing Managers...
View ArticleIt's Time to Turn on the Lights to SAP Licensing
This week, our blog is a bit out of the ordinary.As the marketing manager of Xpandion, I often deal with our communications strategy, which includes overseeing blog publications, email and messages we...
View ArticleTwo Simple Ways to Change a User’s SAP License Type – in Detail
Assigning SAP License Types to usersWhen a user is created in the SAP system, or when you conduct an SAP licensing analysis, you must assign a suitable license type to the user. First, you must know...
View ArticleUsing ST03N as a Foundation for SAP Licensing
Don’t overlook all of the functions of SAP T-Code ST03N. Some of them can be very useful for classifying users to SAP license types according to their de-facto behavior.When the average SAP person...
View ArticleXpandion and the Cloud: Compliance in Loosely-Connected Environments
I recently had a meeting with a group of CIOs about monitoring users in the cloud. Here’s my take-away. For the last couple of years, the cloud has proven to be both an obstacle and an opportunity for...
View Article10 Things They Never Told You About SAP Licensing
10 Things They Never Told You About SAP Licensing from Xpandion
View ArticleTake Your Hands off of SAP T-Code SU01!
In many organizations, the access to the sensitive SAP T-Code SU01 is much wider than needed. Let’s explore why.SU01 is used for different purposes, most commonly to create new user accounts, reset...
View Article6 Shocking Discoveries about SAP Authorizations
Here are 6 harsh realities that we discovered from our customers:1. Users are still using SAP_ALL Power ProfilesAlthough SAP doesn't recommend using the power profile SAP_ALL, many organizations are...
View Article
More Pages to Explore .....