Trainings
We provide open class trainings as well as on the job trainings. Knowledge transfer is needed because "users / roles" are a moving target so you need the knowledge in-house. Moreover as already explained security is not a project but a process.
Trainings related to axl & trax methodology and roadmap
Since technology can never solve your problems, you will need training to understand your problems and to improve your security maturity level. This will improve your success when implementing new technology to improve your security process.
Defining procedures
One form of on the job training is developing with you procedures for the security processes. We can give you all input with regard to do's and don'ts. Too many organizations implement procedures that do not map entirely the wanted security processes.
Trainings related to SAP Applications
axl & trax is a licensed SAP Expertise GRC Partner and renowned as a "know-how transfer expert" in security of complex ERP environments. Thanks to our extensive GRC know-how we provide tailor-made trainings in SAP security and controls and SAP GRC applications.
SAP® Security training
Thanks to its extensive GRC know-how, axl & trax provides tailor-made trainings in SAP® security and controls. SAP authorizations, role building, auditing techniques, GRC applications...: no topic has any secrets for axl & trax and constitutes the solid basis for specific training programmes adapted to your company's needs.
Trainings related to CSI tools
axl & trax is also partner of CSI tools, an expert software solution provider specialized in powerful tools for SAP IT architects, SAP key users and SAP auditors who are focused on maximizing GRC project development efficiency in SAP environments. axl & trax can provide you with open-class trainings and in-house trainings to get the most out of CSI tools such as CSI Accelerator, a comprehensive, modular .net/SQL application that can be used PC-based or in a client-server set-up and which allows IT architects (SAP key users, SAP auditors, SAP consultants...) to easily build off-line GRC authorization frameworks for SAP platforms in far less time and at seriously reduced cost which can then be uploaded in the SAP system.
Our axl & trax training instructors use the CSI applications on a daily basis. Not only do they know how to use the applications effectively, but they also proactively support the continuous development of the CSI applications by sending in change requests based on their own experience in the field.
For every CSI in-house application training course, we strongly encourage participants to bring their own PC and own SAP authorization concept data. By doing so, participants can discuss specific needs before, during and after training.
CSI Authorization Auditor®
This PC based MS® Access tool allows you to audit every SAP® authorization concept and report on the gap with regard to what employees can do, should (not) do and actually did. The training course consists out of two workshops:
- SAP® R/3 Authorization Concept. In this way, both instructor and training participant are assured they both speak the same ‘authorization language’. Experience tells us that many participants have misconceptions about the way SAP® authorization checks work, especially within BW, SEM, CRM, APO …
- CSI Authorization Auditor® exercises. People won’t learn unless they do it themselves. That’s why we focus on hands-on exercises rather than presenting what the tool can do. Our instructors will make it their mission that every participant understands how to interpret and to fine-tune queries, how to run queries and how to read their results. Finally, we will teach participants what to report to lower and upper management.
CSI Codification Builder (CSI CB) and CSI Authorization Organizer® (CSI AO)
The combination of these two applications will enable you to construct your complete organization in terms of SAP authorizations. The training course consists out of two workshops:
- CSI Codification Builder exercises. Hands-on exercises will make you understand the basics of how to document your organizational authorization restriction requirements. Such restrictions are expressed by setting up a matrix documenting authorization object fields (how to restrict) and the affected organizational units (where to restrict).
- CSI Authorization Organizer exercises. Now, you’re ready to exercise on what to restrict. You will learn to make and upload a single role with full authorization across the complete company and to construct instances of such a master role with regard to the restrictions that you have documented earlier (how and where). Finally, we will teach you to document which users to assign to what functions (who to restrict) and to run reports for both key-users and upper management.
CSI Accelerator® training
This .NET based client-server oriented application sums up all tools of the CSI application family… and more. Therefore, the CSI AA, CSI CB and CSI AO exercises will be used, but adapted to the CSI Accelerator navigation.
