Sod: Articles & Insights

Articles and insights about Segregation of Duties (SoD) and Critical Access management in ERP systems.

Found 18 articles on this topic.

All Articles Tagged "Sod"

Two Years of Watching Companies Decide How to Handle SAP Access Risk
2026-08-19

MTC Skopos was built to do consulting work at clients who had no access-risk tooling, by a security consultant and a software architect, and it grew to cover the analyses we were rebuilding in Python, SQL and Alteryx on every engagement: did-do, remediation, the authorization matrix, the role bill of materials. Then it started selling, to global firms, Big Four, boutiques, public bodies and S&P 500 companies. This introduces Field Notes, a six-part series on how those organisations actually evaluate and buy SoD tooling.

We Built a Desktop SoD Tool in 2024. Here Is the Boring Reason Why.
2026-08-19

Field Notes article 2. The decision to ship MTC Skopos as a signed portable executable came from the consultant's laptop problem: locked-down client machines where nothing can be installed, so the analysis is either a spreadsheet that stops at transaction level or a SQL, Python or Alteryx build that is correct once and thrown away at the end of the engagement. What portable-and-signed solves, why the product is still sold as a subscription when there is nothing hosted, and where SaaS honestly wins.

IAM Business Role SoD Analysis: Find the SAP Risks Your IAM Grants
2026-07-14

IAM tools assign business roles: named bundles that grant ERP roles across one or more systems. Approval workflows see the bundle name, not the authorizations behind it. MTC Skopos now imports business roles alongside your ERP exports and analyses the access they grant exactly like direct assignments, with full attribution, simulation, and remediation.

Planning SAP GRC or Pathlock? Start With MTC Skopos.
2026-04-05

SAP GRC and Pathlock implementations take months. Your SoD risks are not waiting. MTC Skopos runs risk analysis and remediation from day one, with no infrastructure and no configuration project. Clean your authorization landscape before you automate it, stay clean during rollout, and transfer your validated ruleset to SAP GRC or Pathlock when it goes live. Then keep Skopos for the systems your GRC suite does not reach.

AI Role Designer: SoD-Free SAP Roles in Weeks, Not Months
2026-03-26

Role redesign projects typically stretch across months of consultant workshops, spreadsheet gymnastics, and back-and-forth validation cycles. The AI Role Designer collapses this into an iterative conversation: provide a functional blueprint, let AI analyze historical usage, generate a new role concept, run risk analysis, and refine until clean. Then build the roles, whether manually or through AI connected directly to SAP.

SAP Access Risk Report: What to Include and How to Build One
2025-08-05

An access risk report documents the access risks in an ERP landscape: SoD violations, critical access, over-privileged users, and scope breaches, plus the remediation each one needs. MTC Skopos now ships an interactive Overview dashboard that gives you the executive summary of every analysis on the spot, and still exports the underlying risk models to Power BI, Tableau, or any BI platform for deeper dashboarding shaped around your own priorities.

Want to learn more about ERP access risk management? Explore MTC Skopos features for comprehensive Segregation of Duties analysis and remediation.

MTC Skopos © 2026