Executive Summary
Solution Overview
Contact Us
Executive Summary
Solution Overview
Contact Us
expanding into multiple markets, but also entering new verticals. While this expansion creates significant opportunity, it also entails tremendous risk. With highly regulated markets and complex compliance requirements and an increase in both internal and external threats to the organization stakeholders are demanding greater transparency and more effective management practices.
Managing risk is no longer an afterthought for organizations. Instead, it must be at the forefront for achieving organizational goals. Organizations need the proper resources, processes, and technology to monitor and manage risk. They must also minimize the duration and impact of any events that do occur.
Noncompliance or regulatory risk Including import and export trade compliance, doing business with restricted or denied parties, or adherence to other industry-specific regulations. Improper employee or third-party behavior risk Including violation of codes of conduct, internal fraud as a result of excessive access granted to transactional systems, collusion, or bribery and corruption. Nonsustainable business practice risk Resulting in damage to an organizations brand and reputation.
68%
Of organizations admit they were caught off guard by an operational surprise in the last five years
Source: Beasley, Branson, and Hancock, July 2012
Enterprise-based or strategic risk Typically 10 to 20 risks managed at this level. Business processbased or operational risk For example, risks associated with procure-to-pay processes or health and safety. Hundreds of risks managed at this level.
2 / 27
Executive Summary
Solution Overview
Contact Us
Driven by the need for greater predictability, greater efficiency, and reduced effort, organizations require integrated solutions and a unified, comprehensive approach to managing risk and compliance. Manual, ad hoc, or individualized responses are no longer adequate. Information and responses cannot be dated or reactive, but must be relevant and timely.
Best-Run Finance
3 / 27
Executive Summary
Solution Overview
Contact Us
SAP solutions for governance, risk, and compliance (GRC) help to reduce the cost and effort of managing GRC while protecting revenue streams and optimizing financial performance. The applications automate GRC activities by leveraging best practices and providing a scalable enterprise platform. This enables proactive prevention of risk events and compliance violations, allowing organizations to embed GRC programs into strategy and planning.
Reduce costs and improve the productivity of compliance, risk, and audit programs to deliver faster time to value and higher ROI Reduce risk and compliance violations, and minimize the impact of risk events on business performance Improve operational efficiency and optimize business operations on an ongoing basis to minimize risk events Improve communication concerning risk and compliance issues between practitioners, managers, and company executives Reduce the number of redundant and duplicative controls by unifying risk responses at the process and strategic levels Reduce the number of manual processes and manual controls with automated workflows, automated controls, and automated risk monitoring
4 / 27
2013 SAP AG or an SAP affiliate company. All rights reserved.
66%
Of executives consider enterprise risk management somewhat or extremely important
Source: SAP insider Research
Executive Summary
Solution Overview
Contact Us
SAP Innovations
Managing Risk and Compliance Unified Approach Protecting Value SAP Innovations
SAP solutions for governance, risk, and compliance leverage the latest technology innovations. The software enables a rapid response where attention is required, real-time visibility into the status of responses and controls, and automated monitoring with real-time alerts. Anywhere access allows staff to respond quickly, whatever their location. Meanwhile, highly scalable yet flexible deployment options empower risk and compliance managers enterprise-wide.
SAP solutions for GRC continue to benefit from technology innovations such as the SAP HANA platform. This allows GRC professionals to monitor high data volumes from various sources through solutions such as the SAP Access Control Role Analytics and SAP Fraud Management analytic applications. This enables exception alerts and supports real-time decision making. Analytics solutions from SAP enable worldclass reporting to cut the cost and effort of audits and allow organizations to visualize the status of risk exposure and compliance. The solutions also report on social, environmental, and economic performance and improvements. Mobile apps from SAP give GRC professionals and others continuous access to reporting and alerts, new-user access requests, and sanctioned-party list screening. This helps ensure a fast response, improves decision making, and reduces risk. Cloud-based software, such as the SAP Carbon Impact OnDemand solution, enables fast, low-risk deployment. It minimizes the IT footprint while helping to ensure long-term scalability and flexibility along with technology and process integration.
5 / 27
Executive Summary
Solution Overview
Contact Us
6 / 27
Executive Summary
Solution Overview
Contact Us
Enterprise GRC Global Trade Compliance Sustainability Reporting Financial Excellence Why SAP?
Enterprise Governance, Risk, and Compliance Global Trade Compliance
Restricted-Party Screening Export and Import Electronic Invoicing for Brazil Monitor Special Requirements Respond Reporting
Sustainability Reporting
Economic Performance
Social Performance
Environment Performance
Respond
Reporting
Identify Risk
Analyze
Scope Audits
Manage Policies
Define
Analyze Data
Detect Fraud
Investigate Fraud
SAP offers a comprehensive set of scalable solutions that enable a unified enterprise response to risk and compliance management.
Manage Access
Maintain Roles
Monitor Privileges
7 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
With the SAP Access Control application, organizations can automate key processes to detect, remediate, and prevent access violations, streamline user provisioning, and centralize role management. This helps reduce the cost of access management, audit, and ongoing compliance activities and minimize the risk of internal fraud.
Using manual processes and spreadsheets to manage access risk is not only resource intensive and time consuming. Its also costly and can expose organizations to unnecessary risk. With SAP Access Control, organizations can move beyond manual processes for managing access risk. The application supports the management of segregation of duties, critical and sensitive access, and superuser access. It also automates the compliant provisioning of users, periodic user and role certifications, and the design and maintenance of compliant roles. And because access risk is managed on an exception basis, IT administrators can focus their time and resources on value-adding initiatives.
58%
Find it difficult or very difficult to establish and maintain a comprehensive program to monitor access
Source: Insider Profiles, March 2012
8 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
Access-Risk Analysis With the SAP Access Control application, organizations can accurately identify and remediate violations associated with segregation of duties and critical access in real time. User-Access Management SAP Access Control automates access assignments across SAP and non-SAP software. It also helps to prevent access violations through embedded risk analysis. Role Management Users can define and maintain compliant roles in business-friendly terms and language. Periodic Certification of Authorizations Reporting functionality within SAP Access Control enables organizations to conduct periodic user-access reviews. They can also run checks to help ensure that mitigating action is effective in the case of segregation-of-duty conflicts. Emergency Access Management With SAP Access Control, organizations can confidently authorize users to perform superuser activities outside their role. The software enables them to do this using firefighter login identification in a controlled, auditable environment.
80%
Reduction in the amount of human effort associated with provisioning and deprovisioning at Infosys, a global IT services company
Source: SAP Customer Success Story
9 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
50%
Fewer support calls made to customer service following Naturas deployment of SAP Access Control
Source: SAP Business Transformation Study
Employees request access using a self-service portal, to streamline the process and reduce IT resources required. The application tests for segregation-of-duty and critical-access violations and enforces the assignment of mitigating controls prior to approval.
Organizations can reduce costs by: Maintaining a comprehensive audit trail of user and role management activities Centrally storing all logs and approvals, eliminating the need to search repositories to prove compliance during an audit
Automating compliance reviews of user access, role authorizations, risk violations, and control assignments Delivering a closed-loop process for managing emergency access Automating the process of requesting, approving, and assigning access Providing continued visibility of the access risk management process with multiple reporting options
10 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
A flexible framework enables organizations to leverage existing technology investments. In this way, they can extend the value of SAP solutions for governance, risk, and compliance across the enterprise, reducing total cost of ownership and streamlining GRC processes.
15
Weeks for implementation of automated access controls by itelligence at railcar management services provider TTX Company
Source: itelligence, an SAP partner
SAP HANA Platform With the SAP HANA Analytics Foundation for SAP solutions for GRC and integration with the SAP NetWeaver Business Warehouse application, organizations can create a virtual data model. This enables custom reporting through the SAP BusinessObjects portfolio and other industry-standard tools. As well as providing the transparency required by auditors, this also gives organizations the flexibility to innovate business processes and improve productivity.
Mobile The SAP GRC Access Approver mobile app simplifies approvals, enabling IT staff to address access requests from supported mobile devices. The software not only shows the access requested, but the potential risk associated with assignment as well as any mitigating controls.
11 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
SAP solutions for governance, risk, and compliance integrate risk management activities, optimize control, and support expanding compliance requirements. These solutions drive down costs associated with continuous monitoring, collaborative workflows, and issue management while minimizing the risk of fraud.
SAP solutions for GRC allow management to focus on business value drivers. The solutions identify key activities and processes that create business value. Organizations can then set and manage objectives for optimizing and protecting this value. Our software enables organizations to optimize control management by identifying and, in some cases, automating control and compliance activities across business systems. The solutions link these activities to initiatives and compliance programs so that control responses are shared and not duplicated. SAP solutions for GRC also help to reduce fraud with earlier, more accurate detection. The software uses rules and predictive analytics to adapt to changing fraud patterns.
90%
Of companies that have integrated governance, risk, and compliance have had results that met or exceeded their expectations
Source: OCEG 2012 Maturity Survey
12 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
With SAP solutions for governance, risk, and compliance, users can define business value or revenue drivers in terms of organizational and geographic factors, processes, and related strategic initiatives. They can also identify and assess enterprise risk in the context of the impact on value or revenue drivers. Organizations can focus audit, compliance, control, and policy management on areas of critical value, pinpointing revenue-adding activities. They can then model business outcomes with scenario analysis and simulations to predict patterns and efficiently manage responses. Users gain a 360-degree view of risk, control, and compliance management across all business systems. Organizations can manage residual risk by embedding policies and controls into business processes. They can also define a fraud protection program through simulation and calibration.
5%
Of revenues are lost to fraud each year by a typical organization
Source: ACFE Report, 2012
Collaborative surveys and assessments help ensure that all risks are identified and assessed by business and subject matter experts and that controls are tested. Issue management functionality then enables users to make effective action plans and assign accountabilities.
13 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
SAP solutions for governance, risk, and compliance help ensure better protection of value and increase gains from opportunities. They provide a basis for more effective reporting on policies and controls and help organizations to reduce fraud, waste, and abuse with efficient fraud management functionality.
50%
Of companies are using outdated risk management solutions
Source: SAP insider Research
Better Protection of Value Gain a better understanding of cause-andeffect relationships between risk drivers, risk events, and their consequences. Organizations reduce the impact of loss events and recover faster from unplanned events. They can also exploit emerging opportunities earlier. Effective Reporting on Policies and Controls Achieve increased consistency in control information across the enterprise, with more
effective control automation and policy management. Users benefit from increased transparency and visibility into compliance status. In addition, the cost and effort of compliance and internal control management and audit is cut. External audit fees are also reduced. Reduction in Fraud, Waste, and Abuse Leverage the power and speed of the SAP HANA platform to reduce fraud, waste, and abuse. Users can identify and detect fraud more effectively over large sets of data and make notifications or take follow-up steps at an earlier stage.
2013 SAP AG or an SAP affiliate company. All rights reserved.
14 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
60%
Of companies indicated that integrating processes reduced gaps in risk and compliance procedures
Source: OCEG Maturity Survey, 2012
Applications SAP solutions for GRC monitor transactions, configuration, master data, and risk thresholds within the application layer to provide users with timely alerts and exceptions. SAP HANA Platform Using the SAP HANA platform, SAP solutions for GRC benefit from greater and timelier access to data for monitoring and reporting purposes.
Mobile The SAP GRC Policy Survey mobile app simplifies the policy receipt and acknowledgement process even further, allowing the distribution of policy surveys using mobile devices. Unlike other mobile approval products, SAP GRC Policy Survey not only shows the policy being requested for acknowledgement, but allows for testing of knowledge if desired.
15 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
The SAP Global Trade Services application helps companies to manage global trade operations, improve ongoing trade compliance, and streamline crossborder supply chain activity, including automation of compliant import and export processes.
80%
Less time spent on vendor data maintenance at Allied Mills
Source: SAP Business Transformation Study
With direct integration throughout the supply chain, SAP Global Trade Services helps organizations to accelerate and optimize trade processes. So they can cut costs, reduce the risk of trade penalties and fines, and clear outbound and inbound customs faster.
Organizations can increase supply chain efficiency by automating global trade business processes and helping to ensure compliance with an extensive, integrated library of trade regulations. They can also maximize global trade profitability by automatically identifying and leveraging the broadest possible set of trade agreements, duty-suspension programs, and cost-saving opportunities.
16 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
25%
Year-on-year productivity increase reaching 100% for Fonterra in 4 years
Source: Fonterra
Sanctioned-party screening Automate the screening of third parties, employees, and contractors to help ensure you are not conducting business with persons on denied or sanctioned-party lists.
2013 SAP AG or an SAP affiliate company. All rights reserved.
17 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
By automating global trade compliance processes, organizations can accelerate trade. They can reduce compliance violations, and minimize delays at national borders. Companies can improve profitability by staying compliant with global regulations, reducing duties and landed cost, and lowering inventory carrying costs.
With the SAP Global Trade Services application, organizations can control costs, reduce the risk of trade penalties and fines, and clear inbound and outbound customs faster. The software can help automate and streamline trade processes for improved international operations, ongoing compliance, and tight integration throughout the cross-border supply chain regardless of industry or business size. The solution helps organizations to: Reduce the cost and effort of global trade compliance Eliminate time-consuming, manual tasks and boost productivity with automation Minimize fines and penalties from trade compliance violations Protect company brand and image and avoid trade with sanctioned or denied parties Speed outbound and inbound customs clearance, reducing unnecessary delays Increase customer satisfaction and exceed partner expectations
18 / 27
2013 SAP AG or an SAP affiliate company. All rights reserved.
35%
Increase in internal trade compliance rating for Applied Biosystems
Source: Applied Biosystems
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
Innovative technology from SAP improves the speed, agility, and accuracy of global trade, special customs procedures, and sanctioned-party screening. It does this by processing large amounts of data, linking closely to enterprise resource planning and customs regimes e-filing systems, and enabling the mobile workforce.
Applications The SAP Global Trade Services application integrates at key points within transactional as well as country-specific e-filing systems, to streamline the trade process. SAP HANA Platform Leveraging SAP HANA, organizations using SAP solutions for governance, risk, and compliance benefit from greater and timelier access to data for monitoring and reporting purposes. Mobile Mobile functionality to enable sanctioned-party list screening simplifies the screening process of internal and external parties even further, allowing positive hits to be viewed and supported from mobile devices. The software not only shows the positive hit with related details, it also allows users to take decisive action.
2x
The amount of international shipments processed in a day by Pelican
Source: Pelican
19 / 27
Executive Summary
Solution Overview
Contact Us
Sustainability Reporting
Solution Overview Sustainability Reporting
Capabilities
Benefits
SAP Innovations
The SAP Sustainability Performance Management analytic application ties key business information from SAP solutions to sustainability objectives. This means that companies can focus on strategic execution and achieving sustainability goals instead of data collection.
100%
Of the top ten companies on the Dow Jones Sustainability Index run better with SAP software
Source: SAP Sustainability Report for 2011
With greater focus on sustainability and higher expectations for transparency and performance improvement, companies must manage large amounts of data. Many companies find it difficult to analyze their progress in sustainability due to: An inability to align operations with sustainability objectives A lack of reliable sustainability data resulting from manual processes Excessive time and cost spent with no improvement to sustainability performance
SAP Sustainability Performance Management ties information from operational systems to sustainability, enabling: Credible sustainability disclosures Efficient data collection and calculation Goal setting and targeting of profitable new initiatives Performance management analysis Integration with other SAP solutions
2013 SAP AG or an SAP affiliate company. All rights reserved.
20 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
The SAP Sustainability Performance Management analytic application enables companies to report social, environmental, and economic performance and manage key performance indicators (KPIs). They also support the efficient collection of data from business users and business process owners as well as collecting KPI data from enterprise systems. Workflow, data requests, validation, and approval processes facilitate collection of data. Organizations can establish sustainability initiatives at the corporate, subsidiary, or site levels and determine return on investment from those initiatives from social, community, energy, greenhouse-gas emissions reduction, and water-conservation programs to financial, product, and safety programs. Powerful analytic functionality enables users to aggregate results and examine performance across multiple dimensions. Dashboards and scorecards provide clear and insightful graphical displays. SAP Sustainability Performance Management synchronizes with key master data in SAP Business Suite applications and incorporates data from operational SAP software.
85%
Of the quantitative key performance indicators available in the solution have integration touch points with other SAP solutions
Source: SAP Consulting organization
21 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
85%
Of companies take environmental, health, and safety issues into account during core business planning
Source: SAP Performance Benchmarking
Increase credibility with stakeholders and strengthen their brand through better global transparency and accountability
Focus on strategic execution and target profitable business opportunities
22 / 27
Executive Summary
Solution Overview
Contact Us
Benefits
SAP Innovations
New technologies are transforming the way that organizations and stakeholders interact across the value chain. These innovations promote better organizational alignment on key objectives, more efficient data collection from systems and people, and more robust tools to drive performance improvements.
33%
Of companies have environment, health, and safety performance dashboards that employees and some customers can access centrally
Source: SAP Performance Benchmarking
Mobile Mobile apps from SAP promote a culture of transparency and enable professionals on the go to have access to key information at all times. Analytics Embedded analytics, as well as analytics extensions to solutions, support improved decision making at all levels of the organization with role-relevant information. They also enable the sharing of best practices.
SAP HANA Platform In-memory database solutions such as SAP HANA can process large volumes of raw quantitative and qualitative data from numerous sources. Tying this data to objectives provides companies with better performance insights. Linking information with initiative scenarios enables better decisions based on a more robust analysis of ROI.
23 / 27
Executive Summary
Solution Overview
Contact Us
Receivables Management
Travel Management
Sustainability Reporting
24 / 27
Executive Summary
Solution Overview
Contact Us
Why SAP?
Solution Overview Access Risk Management Enterprise GRC Global Trade Compliance Sustainability Reporting Financial Excellence Why SAP? Reduce Cost and Effort to Manage Risk and Compliance SAP solutions for governance, risk, and compliance enable organizations to automate risk and compliance activities while leveraging best practices and a scalable enterprise platform. Confidently Protect Revenue Streams, Shareholder Value, and Reputation Leveraging powerful functionality within SAP solutions for GRC, organizations can take proactive steps to minimize risk events and fraud and prevent compliance violations from occurring. Optimize Performance and Results Supported by SAP solutions for GRC, organizations can optimize their results by embedding risk and compliance programs into business processes and sustainability performance objectives.
Riskier business. Tougher regulations. Higher stakeholder expectations. Leverage the real-time risk visibility needed to meet financial management challenges headon. Protect profitability by automating risk and controls, monitoring and helping ensure regulatory compliance, and establishing clear board oversight.
25 / 27
Executive Summary
Solution Overview
Contact Us
Find Out More About How Your Organization Can Become Best-Run
Benchmark Your Performance Position your organization for dominance in this new economy with the business performance benchmarking program from SAP available free to SAP customers and select prospects. The SAP benchmarking program has helped more than 3,000 organizations assess their strengths, uncover areas for improvement, and identify best practices and IT strategies that generate clear, tangible value not someday, but today.
Visit valuemanagement.sap.com >>
Go Live in Weeks
Heres the fastest way to run your business better: our rapid-deployment solutions. In one package, you get everything you need to be up and running quickly including preconfigured software and implementation services in just weeks. With a defined scope and predictable costs, there are no surprises.
Visit sap.com/solutions/rds >>
Join Your Community of Practices Every day, SAP Community Network (SCN) changes the way that thousands of SAP users work. It lets members help one another solve problems, learn, and invent new ways to get things done faster. Find out how to connect with people, content, and resources.
Visit scn.sap.com >>
26 / 27
Executive Summary
Solution Overview
Contact Us
Learn how CFOs are gaining the visibility to lead: http://www.sap.com/campaigns/2012_02_cfo-lob/index.epx Join the SAP GRC Community: http://scn.sap.com/community/grc SAP Compliance Resource Center: http://www28.sap.com/mk/get/SEA12RC Join the sustainability conversation: http://scn.sap.com/community/sustainability Facebook: http://www.facebook.com/SAPGRCConnect
2013 SAP AG or an SAP affiliate company. All rights reserved. No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP AG. The information contained herein may be changed without prior notice. Some software products marketed by SAP AG and its distributors contain proprietary software components of other software vendors. National product specifications may vary. These materials are provided by SAP AG and its affiliated companies (SAP Group) for informational purposes only, without representation or warranty of any kind, and SAP Group shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP Group products and services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as constituting an additional warranty. SAP and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP AG in Germany and other countries. Please see http://www.sap.com/corporate-en/legal/copyright/index.epx#trademark for additional trademark information and notices.