Twitter
LinkedIn

Deeper analysis on the use of critical transaction codes using Firefighter!

Deeper analysis on the use of critical transaction codes using Firefighter!

Is your Firefighter Controller reviewing every activity in detail? Does he/she review the most critical business transaction codes?

Firefighter controller log review is the same challenge for one of our clients. The FFID logs will be regularly reviewed, but they want to segregate the FFID usage from the most critical transaction code usage for detailed analysis. They have identified around 100 transaction codes as part of this exercise, and any use of these transaction codes by the FFID must be subjected to additional review after reviewing by the FF Controller.

Due to the lack of routing conditions, the standard process ID – Firefighter Log Report Review Workflow (SAP_GRAC_FIREFIGHT_LOG_REPORT) doesn’t meet this requirement and needs additional customization.

Is there a way to automate firefighter controller log review? Yes, of course. This is what we delivered:

In order to maintain the custom transaction codes, we created a custom table and a TMG. As a result, our customer does not have to modify the Decision table every time.

  1. A BRF+ DB lookup has been created.
  2. Custom BRF+ decision tables have been created to return the value.
  3. Created two different MSMP paths with appropriate stages
  4. Defined MSMP routing conditions according to business needs

The review and approval process is now fully automated, and if the user has executed any critical transaction codes, the Log review request is assigned to the “Internal Review Board (IRB)” after the controller review.

Are there any additional automations that can be performed with the FF Log Review?

Additionally, an enhancement can be provided to identify if the user has entered any critical transaction codes on the Reason code screen.

ToggleNow also implemented BOT-based automation to review logs. Get in touch with our SMEs today! Visit our automation stories to know various automations that are delivered by ToggleNow team.

Meet Raghu Boddu, an expert in SAP Security and Governance, Risk, and Compliance (GRC) with over 20 years of experience. He has a deep understanding of SAP systems and has helped clients across industries implement effective security and GRC strategies to protect data and meet compliance. A respected thought leader, Raghu regularly shares insights through presentations and publications, offering the guidance needed to secure SAP systems and ensure regulatory compliance.

Receive updates on upcoming webinars, the latest case studies, and more directly in your inbox. Stay informed and connected by subscribing to our newsletter.

Learn how we can help you and your enterprise through the GRC transformation journey. Choose the appropriate option and fill out the form. Let’s get started!

Product Demo

Explore our range of SAP Access Governance products.

Detailed Discussion

Engage with our SMEs regarding any challenges in Access Governance.

Partnership Discussions

Interested to be part of ToggleNow
partner network? Let’s discuss!

Product
Demo

Product Demo

Explore our range of SAP Access Governance products.

Detailed Discussion

Engage with our SMEs regarding any challenges in Access Governance.

Partnership Discussions

Interested to be part of ToggleNow partner network? Let’s discuss!