SlideShare a Scribd company logo
1
Risk Management in Role-based Applications
Segregation of Duties in Oracle
Problem agenda
Introduction
P2P Issues that Impact the Bottom-Line
Oracle Advanced Controls Solution
Use Case: Financial Organization Systems
Q & A
3
Harish Sharma, Senior Consultant
Over 7 years of experience in ERP Implementation, Security and
GRC Design
Problem agenda
Introduction
P2P Issues that Impact the Bottom-Line
Oracle Advanced Controls Solution
Use Case: Financial Organization Systems
Q & A
What Do We Mean by Control ‘Issues’
5
The processes that ensure:
Efficient and effective operations
Reliable and accurate reporting
Fraud resistant operation
Internal
External
Regulatory compliant
Common Issues: Duplicate Vendors in Master Vendor
File
6
 Duplicate payments
 The invoice is submitted for entry twice
 Different options for receipt and payment of invoices, including outsourcing.
 Data entry errors
 Manual checks requests
 Correspondence issues
 Supplier is using a different site/location.
 Duplicate Name problem with Supplier conversion
 Internal control issue
 Controls Inappropriately configured
 Controls are not regularly overridden
 AP processors take shortcuts when creating vendor entries
 Misreading a number or letter (for example: 0 instead of O, or 5 instead of S).
 Transposing numbers (for example: 56 instead of 65)
 Mis-keying (or simply omitting) punctuation (such as hyphens and slashes)
 Omitting leading or trailing zeroes
 Segregation of duties concern
 Standardization and normalization are crucial
 Preventing creating new ones
 Identifying existing duplicate ones
 Rigid coding standards
Problem agenda
Introduction
P2P Issues that Impact the Bottom-Line
Oracle Advanced Controls Solution
Use Case: Financial Organization Systems
Q & A
Advanced Controls
8
Layer of automated controls over ERP controls
Continuously monitor key controls
Detect and Report issues as they occur
Prevent issues from occurring
Quickly see high risk issues with exception based
dashboards
Address issues that affect the bottom line
Reduces operational risk and process effectiveness
9
10Copyright © Capgemini 2013. ll Rights Reserved
10
Oracle Systems & Control  for  Financial Org.
12Copyright © Capgemini 2013. ll Rights Reserved
Oracle Systems & Control  for  Financial Org.
Continuous Monitor – Duplicate Vendor
Incident Management
Control Definition
Preventive Measure
Preventive Measure Cont..
19Copyright © Capgemini 2013. ll Rights Reserved
20Copyright © Capgemini 2013. ll Rights Reserved
Problem agenda
Introduction
P2P Issues that Impact the Bottom-Line
Oracle Advanced Controls Solution
Use Case: Financial Organization Systems
Q & A
22
Oracle Advanced Controls –
Customer Experience
Oracle Systems & Control  for  Financial Org.
24
25
26
Use Case - Scope 27
Security Infrastructure
28
approach to GRC Projects
29
Implementation Approach30
31
Tangible Business Benefits32
Fewer duplicate payments: Vendor master cleanup eliminates the duplicate vendor files and vendor
coding issues that significantly contribute to duplicate payments.
Reduced fraud: The Association of Certified Fraud Examiners estimates that the average company loses 5
percent of its annual revenues to fraud. Cleaning and maintaining a vendor master file provides the visibility
and controls required to help reduce fraudulent payments.
Increased staff productivity: Clean vendor files make it easier to find vendors in your system. This makes
it less likely that staff will create a duplicate vendor record, and ensures that staff does not waste their time
maintaining files that should have been deleted.
Improved analysis and management of spending: By showing which vendors are parts of the same
corporate entity, vendor master cleanup helps companies analyze and manage spending to negotiate
better discount terms and proactively manage their debit balances.
Streamlined regulatory compliance: Vendor master data management drives compliance with regulations
and internal controls, as well as compliance with 1099 tax legislation.
Reduced costs: Compared to traditional manual processes, an ongoing vendor master data maintenance
program significantly reduces the costs of managing supplier information.
33
Thanking You
Q & A
35
36
37

More Related Content

PDF
RPA Infographic (EN) - First Consulting
PPT
Cloud Compliance Use Case Demo
PDF
Transaction Watchdog by Controls Force
PDF
Seal Software datasheet-procurement-and-sourcing
PDF
Supplier Management- HICX Solutions
PPT
What is Employee Spend Management
PDF
Gauge your speed
PDF
Reciprocity_GRC Software Buyers Guide v5
RPA Infographic (EN) - First Consulting
Cloud Compliance Use Case Demo
Transaction Watchdog by Controls Force
Seal Software datasheet-procurement-and-sourcing
Supplier Management- HICX Solutions
What is Employee Spend Management
Gauge your speed
Reciprocity_GRC Software Buyers Guide v5

What's hot (19)

PPTX
GRC Fundamentals
PPTX
Using oracle grc software to automate and proactively monitor your e business...
DOCX
Audit software highlights
PDF
Compliance Management | Compliance Solutions
PPTX
Collaborate_VPASession_CSC_GRC_FINAL v2
PDF
AutoRek - Automated Reconciliation and Exception Management
PDF
AI-based Contract Management for Healthcare
PPTX
Pay Now or Pay Later - 12/2018
PPTX
Pay Now or Pay Later: The Case for Investing in Contractor Qualification & Ma...
PDF
PPTX
Less Risk - That would be NICE. Consumer Compliance in the Age of CFPB
PPTX
Continuous auditing
PPT
Profit Recovery Service - Soft Collections
PPT
PDF
Fulcrum way webinar top 10 advanced control to improve bottomline oct 22 2013
PDF
Optimizing order to-cash (e-business suite) with GRC Advanced Controls
PDF
PPTX
SAP Governance,Risk and Compliance
PPTX
GRC Essentials for Customers using SAP
GRC Fundamentals
Using oracle grc software to automate and proactively monitor your e business...
Audit software highlights
Compliance Management | Compliance Solutions
Collaborate_VPASession_CSC_GRC_FINAL v2
AutoRek - Automated Reconciliation and Exception Management
AI-based Contract Management for Healthcare
Pay Now or Pay Later - 12/2018
Pay Now or Pay Later: The Case for Investing in Contractor Qualification & Ma...
Less Risk - That would be NICE. Consumer Compliance in the Age of CFPB
Continuous auditing
Profit Recovery Service - Soft Collections
Fulcrum way webinar top 10 advanced control to improve bottomline oct 22 2013
Optimizing order to-cash (e-business suite) with GRC Advanced Controls
SAP Governance,Risk and Compliance
GRC Essentials for Customers using SAP
Ad

Similar to Oracle Systems & Control for Financial Org. (20)

PDF
Top 10 P2P Advanced Controls to improve your bottom line!
PPTX
Oow2014 nk 2
PDF
CFO.Com and Oracle - Improving Bottom Line with Advanced Controls
PPS
FulcrumWay GRC Solutions
PPTX
Driving efficiency with invoice processing in complex business environments -...
PDF
Customer Process & Decision Transformations
PPTX
Creating the Case for Enterprise Quality
PDF
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
PPTX
SmartERP Cannon Webinar_2017_Oracle OpenWorld
PDF
Review the five signs that you need a new Segregation of Duties compliance st...
PPTX
Integrated Receivables: 5 Critical Factors For Adoption
PPT
SAP grc
PPTX
10TH ANNUAL CFO ​LEADERSHIP CONFERENCE: Achieving “Touchless” AP Automation
PPTX
"Making Accounts Receivable Automation Work for You" Webinar Slide Deck
PDF
Delivering value with bpm
PPT
Best Practices for the Service Cloud
PDF
How to Get Proactive about your Vendor Master Data: 4 tips for success
PPT
David Caruso Keynote Address
PPTX
ERP SYSTEM POST IMPLEMENTATION AUDIT_TRNG_May,2023 - Part-4.pptx
PPT
ETHICS FRAUD AND INTERNAL CONTROL AND AUDITING COMPUTERIZED FINANCIAL SYSSTEM...
Top 10 P2P Advanced Controls to improve your bottom line!
Oow2014 nk 2
CFO.Com and Oracle - Improving Bottom Line with Advanced Controls
FulcrumWay GRC Solutions
Driving efficiency with invoice processing in complex business environments -...
Customer Process & Decision Transformations
Creating the Case for Enterprise Quality
Thousands of Hours Saved and Risk Reduced for EBS Upgrades & Implementations
SmartERP Cannon Webinar_2017_Oracle OpenWorld
Review the five signs that you need a new Segregation of Duties compliance st...
Integrated Receivables: 5 Critical Factors For Adoption
SAP grc
10TH ANNUAL CFO ​LEADERSHIP CONFERENCE: Achieving “Touchless” AP Automation
"Making Accounts Receivable Automation Work for You" Webinar Slide Deck
Delivering value with bpm
Best Practices for the Service Cloud
How to Get Proactive about your Vendor Master Data: 4 tips for success
David Caruso Keynote Address
ERP SYSTEM POST IMPLEMENTATION AUDIT_TRNG_May,2023 - Part-4.pptx
ETHICS FRAUD AND INTERNAL CONTROL AND AUDITING COMPUTERIZED FINANCIAL SYSSTEM...
Ad

Oracle Systems & Control for Financial Org.

  • 1. 1 Risk Management in Role-based Applications Segregation of Duties in Oracle
  • 2. Problem agenda Introduction P2P Issues that Impact the Bottom-Line Oracle Advanced Controls Solution Use Case: Financial Organization Systems Q & A
  • 3. 3 Harish Sharma, Senior Consultant Over 7 years of experience in ERP Implementation, Security and GRC Design
  • 4. Problem agenda Introduction P2P Issues that Impact the Bottom-Line Oracle Advanced Controls Solution Use Case: Financial Organization Systems Q & A
  • 5. What Do We Mean by Control ‘Issues’ 5 The processes that ensure: Efficient and effective operations Reliable and accurate reporting Fraud resistant operation Internal External Regulatory compliant
  • 6. Common Issues: Duplicate Vendors in Master Vendor File 6  Duplicate payments  The invoice is submitted for entry twice  Different options for receipt and payment of invoices, including outsourcing.  Data entry errors  Manual checks requests  Correspondence issues  Supplier is using a different site/location.  Duplicate Name problem with Supplier conversion  Internal control issue  Controls Inappropriately configured  Controls are not regularly overridden  AP processors take shortcuts when creating vendor entries  Misreading a number or letter (for example: 0 instead of O, or 5 instead of S).  Transposing numbers (for example: 56 instead of 65)  Mis-keying (or simply omitting) punctuation (such as hyphens and slashes)  Omitting leading or trailing zeroes  Segregation of duties concern  Standardization and normalization are crucial  Preventing creating new ones  Identifying existing duplicate ones  Rigid coding standards
  • 7. Problem agenda Introduction P2P Issues that Impact the Bottom-Line Oracle Advanced Controls Solution Use Case: Financial Organization Systems Q & A
  • 8. Advanced Controls 8 Layer of automated controls over ERP controls Continuously monitor key controls Detect and Report issues as they occur Prevent issues from occurring Quickly see high risk issues with exception based dashboards Address issues that affect the bottom line Reduces operational risk and process effectiveness
  • 9. 9
  • 10. 10Copyright © Capgemini 2013. ll Rights Reserved 10
  • 12. 12Copyright © Capgemini 2013. ll Rights Reserved
  • 14. Continuous Monitor – Duplicate Vendor
  • 19. 19Copyright © Capgemini 2013. ll Rights Reserved
  • 20. 20Copyright © Capgemini 2013. ll Rights Reserved
  • 21. Problem agenda Introduction P2P Issues that Impact the Bottom-Line Oracle Advanced Controls Solution Use Case: Financial Organization Systems Q & A
  • 22. 22 Oracle Advanced Controls – Customer Experience
  • 24. 24
  • 25. 25
  • 26. 26
  • 27. Use Case - Scope 27
  • 29. approach to GRC Projects 29
  • 31. 31
  • 32. Tangible Business Benefits32 Fewer duplicate payments: Vendor master cleanup eliminates the duplicate vendor files and vendor coding issues that significantly contribute to duplicate payments. Reduced fraud: The Association of Certified Fraud Examiners estimates that the average company loses 5 percent of its annual revenues to fraud. Cleaning and maintaining a vendor master file provides the visibility and controls required to help reduce fraudulent payments. Increased staff productivity: Clean vendor files make it easier to find vendors in your system. This makes it less likely that staff will create a duplicate vendor record, and ensures that staff does not waste their time maintaining files that should have been deleted. Improved analysis and management of spending: By showing which vendors are parts of the same corporate entity, vendor master cleanup helps companies analyze and manage spending to negotiate better discount terms and proactively manage their debit balances. Streamlined regulatory compliance: Vendor master data management drives compliance with regulations and internal controls, as well as compliance with 1099 tax legislation. Reduced costs: Compared to traditional manual processes, an ongoing vendor master data maintenance program significantly reduces the costs of managing supplier information.
  • 34. Q & A
  • 35. 35
  • 36. 36
  • 37. 37