000 05154nam a22005775i 4500
001 978-3-642-35302-4
003 DE-He213
005 20200421112043.0
007 cr nn 008mamaa
008 130410s2013 gw | s |||| 0|eng d
020 _a9783642353024
_9978-3-642-35302-4
024 7 _a10.1007/978-3-642-35302-4
_2doi
050 4 _aQA76.76.A65
050 4 _aTA345-345.5
072 7 _aJPP
_2bicssc
072 7 _aUB
_2bicssc
072 7 _aCOM018000
_2bisacsh
072 7 _aPOL017000
_2bisacsh
082 0 4 _a004
_223
100 1 _aChuprunov, Maxim.
_eauthor.
245 1 0 _aAuditing and GRC Automation in SAP
_h[electronic resource] /
_cby Maxim Chuprunov.
264 1 _aBerlin, Heidelberg :
_bSpringer Berlin Heidelberg :
_bImprint: Springer,
_c2013.
300 _aXXXII, 525 p.
_bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _aonline resource
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
505 0 _aPART I - From Legislation to Concept: ICS and Compliance in the ERP Environment -- Legal Requirements in ICS Compliance -- The Auditor Is Coming: When, Why, and How to Cope -- ICS Requirements and ERP Systems: Basic Principles, Frameworks, Structure -- How Does SAP Deal with Risk- and Compliance-Related Topics? -- PART II - From Concept to Content: Audit Guide for SAP ERP -- Audit-Relevant SAP Basics -- IT General Controls in SAP ERP -- General Application Controls in SAP ERP -- Controls in Financial Accounting -- Control Mechanisms in the SAP ERP-Supported Procure to Pay Process -- Control Mechanisms in the SAP ERP-Supported Order to Cash Process -- Data Protection Compliance in SAP ERP Human Capital Management -- Fraud in an SAP System -- Excursion: FDA Compliance and Controls in SAP -- Examples of Efficiency-Oriented and Profitability-Oriented Analysis Scenarios in SAP ERP -- PART III - From Concept and Content to Implementation: Automation of an Internal Control System -- ICS Automation: How to Set the COSO Cube in Motion -- ICS Automation Using SAP Process Control -- Implementation of Automated Test and Monitoring Scenarios in the SAP ERP Environment -- Experiences from Practice and Projects.
520 _aOver the last few years, financial statement scandals, cases of fraud and corruption, data protection violations, and other legal violations have led to numerous liability cases, damages claims, and losses of reputation. As a reaction to these developments, several regulations have been issued: Corporate Governance, the Sarbanes-Oxley Act, IFRS, Basel II and III, Solvency II and BilMoG, to name just a few. In this book, compliance is understood as the process, mapped not only in an internal control system, that is intended to guarantee conformity with legal requirements but also with internal policies and enterprise objectives (in particular, efficiency and profitability). The current literature primarily confines itself to mapping controls in SAP ERP and auditing SAP systems. Maxim Chuprunov not only addresses this subject but extends the aim of internal controls from legal compliance to include efficiency and profitability and then well beyond, because a basic understanding of the processes involved in IT-supported compliance management processes are not delivered along with the software. Starting with the requirements for compliance (Part I), he not only answers compliance-relevant questions in the form of an audit guide for an SAP ERP system and in the form of risks and control descriptions (Part II), but also shows how to automate the compliance management process based on SAP GRC (Part III). He thus addresses the current need for solutions for implementing an integrated GRC system in an organization, especially focusing on the continuous control monitoring topics. Maxim Chuprunov mainly targets compliance experts, auditors, SAP project managers and consultants responsible for GRC products as readers for his book. They will find indispensable information for their daily work from the first to the last page. In addition, MBA, management information system students as well as senior managers like CIOs and CFOs will find a wealth of valuable information on compliance in the SAP ERP environment, on GRC in general and its implementation in particular.
650 0 _aComputer science.
650 0 _aAccounting.
650 0 _aBookkeeping.
650 0 _aManagement information systems.
650 0 _aApplication software.
650 0 _aComputers.
650 0 _aLaw and legislation.
650 1 4 _aComputer Science.
650 2 4 _aComputer Appl. in Administrative Data Processing.
650 2 4 _aAccounting/Auditing.
650 2 4 _aLegal Aspects of Computing.
650 2 4 _aManagement of Computing and Information Systems.
650 2 4 _aBusiness IT Infrastructure.
650 2 4 _aBusiness Information Systems.
710 2 _aSpringerLink (Online service)
773 0 _tSpringer eBooks
776 0 8 _iPrinted edition:
_z9783642353017
856 4 0 _uhttp://dx.doi.org/10.1007/978-3-642-35302-4
912 _aZDB-2-SCS
942 _cEBK
999 _c56782
_d56782