su53 helps SAP customers with managed security service
By Tom Brewster,
su53 Solutions has launched a new managed security service to help firms keep a closer eye on SAP governance, risk management and compliance (GRC).
The operating and support service for SAP environments is the first ever fully integrated service of its kind for SAP systems, according to su53, and is aimed at firms looking to avoid any problems when an audit comes around.
All different versions of the package offer monthly reporting on activities and a quarterly assessment of what improvements could be made.
Other services include regular or ad-hoc compliance assessments and GRC reviews, consulting services, security advisories and technical support.
Clients can also take advantage of the SAP Security Outsourcing option, so they do not have to worry about managing this area, although su53 said it would only “probably” cost less than controlling this area in-house.
“Most of the big players don’t specialise in this area. They have some general skills, whereas we have very deep skills,” Martyn Proctor, managing director at su53, told IT PRO.
“I think the risk that is most common at the moment and the one that the auditors will tend to pick up on is to do with segregation of duties. This is where people have privileges and access to a system to do things which could be in conflict.”
In this case su53, which is itself an SAP partner, helps identify where such conflicts exist, Proctor added.
The various packages are delivered from Northern Ireland, a country offering some of the lowest operating costs in Europe, su53 said.
The location also provides companies with the confidence that personal data accessed by the managed security service is kept within the regulatory environment of the region.
“We chose to use Northern Ireland as there is a sense amongst a lot of customers that they’d like to have security and risk management looked after fairly close to home,” Proctor said.
A case in point
One company that has already taken advantage of the managed security service is Anglian Water.
The company had found they had around 2.7 million conflicts arising in their segregation of duties, explained Anglian security risk manager Sandra San Vicente.
The in-house team wanted to work on lowering the number of conflicts, but realised they could not do it alone so brought in SU53.
“At Anglian we chose to in-source our SAP security authorisations function from our main IT provider, and configure and manage our own GRC tools. SU53 has been a key partner in enabling us to implement this strategy,” Vincente said.
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
What is your password worth?
Would you be tempted to sell off company passwords for a fee? If not, seems like you're in the minority, acccording to research.
- Macs under attack?
- Intel: security inside
- Are you spending too much on IT security?
- Does the government want to snoop on your data?
- Eurocrats versus the cyber criminals
- The truth about spam
- Google and privacy: What’s the problem?
- Q&A: Symantec’s CISO on the source code hack
- RSA: Back from the breach?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Apple iPad 3 vs iPad 2 head-to-head review
- Dell EqualLogic PS6100XS review
- Chromebooks: What's gone wrong?
- ICO: Fines for cookie law breakers
- UK regulator shuts down Angry Birds scam
- Open source software driving cloud-based innovation
- Fujitsu targets enterprises with Android ICS tablet
- IBM bans use of Siri on iPhones
- Dell PowerEdge R820 review
- BlackBerry 7 OS certified to carry 'Restricted' UK government information
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





