axl & trax

Audit

Auditing / reviewing SAP authorizations: our auditing services range from very detailed audits (including detailed lists of who can do what, detailed and understandable risk descriptions, conceptual and procedural findings, relevant recommendations, Sarbanes-Oxley internal control impact) to quick scans. Our consultants have a leading knowledge about authorizations in the newest SAP® releases (up to mySAP® ERP 2005) based on the SAP® NetWeaver platform and in the mySAP® Business Suite applications (CRM, SRM…)

Authorizations Quick Scan

Because axl & trax has a "one-to-one-step-by-step-no-nonsense" approach, we always prefer to start by employing our proven Authorizations Quick Scan method. This analysis, which is performed from an audit perspective, enables us to rapidly get a global insight into the actual state of your authorizations. We especially focus on the conceptual aspects of the authorizations setup which informs us as to which procedures must be put in place or must be optimized. Based on the quick scan results we can then distil a detailed project plan featuring all the steps to be taken in order to get you fully compliant.

Authorizations Audits

In case of more formal reporting, our customers rely on axl & trax's full SAP® authorizations and controls audits which are all supervised by Certified Information Systems Auditors (CISA). When supporting internal audit departments, axl & trax provides the specific audit and SAP® security know-how that may not be available at your internal audit department.

Quality assurance during SAP authorizations implementations and redesigns

In cases where a company decides to perform most of the work themselves or in cases where the company wants an independent view on the work done by another third party, the expertise of axl & trax can be hired to ensure that good implementation practices are applied.

Auditing the technical infrastructure of SAP®

One security aspect is to ensure that no backdoors can be used to intrude or to interfere with the functioning of a business-critical system like an SAP® enterprise software application. axl & trax performs security audits on the IT infrastructure underneath the SAP® environment. This service can range from a high-level review of the network topology to a detailed inspection where all SAP®-relevant network components (like firewalls, routers and operating system settings) are considered. Reviewing the change management procedures in and around SAP® In order to ensure the continuity and integrity of an SAP® enterprise software application that supports your business processes, adequate change management needs to be in place. axl & trax can audit the change management process in your company by reviewing the organization, procedures and implementation of this process.