Show TOC

Procedure documentationPerforming a Risk Analysis Locate this document in the navigation structure

Procedure

You can use this procedure to perform a Risk Analysis for the user, role, and HR levels, and for user organizational reporting.

  1. Select a system from the dropdown list.

  2. You use the next group of selection criteria to indicate the type of analysis that you want to execute. For example, if you select a user level report then the next three items are User, User Group, and Custom Group.

  3. Select a Risk by Process from the dropdown list.

  4. Enter a Risk ID or a range of Risk IDs.

  5. Select a Risk Level from the dropdown list: All, Critical, High, Medium, and Low.

  6. Select a Rule Set.

  7. Select a Report Type. For more information, see Risk Analysis Reports.

  8. Select Report Format.

  9. Select the More Options link to display four additional fields.

    • Select a standard SAP User Type from the dropdown list.

    • Select what type of users to exclude as Ignored Users. The options are None, Locked, Expired, and Locked and Expired.

    • In the Exclude Mitigated Risks field, select Yes to exclude from your analysis any mitigated risks. If you select No, you include mitigated risks in the final report.

    • To perform Offline Analysis, select Yes.

      Note Note

      Offline analysis:

      • reports the stored data from the last Batch Risk Analysis.

      • provides you with the same data you would see if you drilled down in the Management Report section, including all the details.

      • does not require calls to the back-end system and therefore executes much faster than an online analysis.

      • can retrieve SoD and critical action reports.

      Offline analysis permission level detail for Critical Actions or Critical Permissions is not available from the offline table.

      End of the note.
  10. Determine whether you want to execute the report in foreground or background.