<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>amuDee.com &#187; GRC</title>
	<atom:link href="http://amudee.com/category/security/grc/feed" rel="self" type="application/rss+xml" />
	<link>http://amudee.com</link>
	<description>Tech Blog for Geeks and Suits, delivers latest technology updates, social media, mobile applications and product reviews</description>
	<lastBuildDate>Sun, 13 May 2012 16:45:36 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Top GRC Vendors</title>
		<link>http://amudee.com/2010/security/grc/top-grc-vendors</link>
		<comments>http://amudee.com/2010/security/grc/top-grc-vendors#comments</comments>
		<pubDate>Sun, 21 Nov 2010 09:45:01 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[governance]]></category>
		<category><![CDATA[grc vendors]]></category>
		<category><![CDATA[providers]]></category>
		<category><![CDATA[regulations]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[services]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=1470</guid>
		<description><![CDATA[Almost every company has started to advertise their security and compliance applications as a full fledged GRC solution, a serious matter of concern for potential buyers. Find out the major pain points and the top GRC vendors.]]></description>
		<wfw:commentRss>http://amudee.com/2010/security/grc/top-grc-vendors/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>GRC Cheat Sheet</title>
		<link>http://amudee.com/2010/security/grc-cheat-sheet</link>
		<comments>http://amudee.com/2010/security/grc-cheat-sheet#comments</comments>
		<pubDate>Mon, 18 Jan 2010 18:37:09 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Corporate Governance]]></category>
		<category><![CDATA[Corporate Social Responsibility]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[EPA Standards]]></category>
		<category><![CDATA[Financial Risk Management]]></category>
		<category><![CDATA[GAPP]]></category>
		<category><![CDATA[General HR Policy]]></category>
		<category><![CDATA[GRC Cheat Sheet]]></category>
		<category><![CDATA[HAZMAT]]></category>
		<category><![CDATA[HIPAA]]></category>
		<category><![CDATA[Hot Line Reporting]]></category>
		<category><![CDATA[Incident Management]]></category>
		<category><![CDATA[J-SOX / C-SOX]]></category>
		<category><![CDATA[OCEG]]></category>
		<category><![CDATA[OSHA]]></category>
		<category><![CDATA[QHSE]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[Sarbanes and Oxley]]></category>
		<category><![CDATA[Sarbanes Oxley Act of 2002 / Sarbox]]></category>
		<category><![CDATA[Whistle-blowing concept]]></category>
		<category><![CDATA[Workforce Training & Awareness]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=1459</guid>
		<description><![CDATA[This post is not a regular blog but a repository of terms related to Governance Risk Management and Compliance. You may  consider it as a GRC cheat sheet. Well the purpose was solely personal but there is no harm in sharing, so here we go.]]></description>
		<wfw:commentRss>http://amudee.com/2010/security/grc-cheat-sheet/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Handling SOX compliance requirements in non-US (esp. Canadian) companies</title>
		<link>http://amudee.com/2009/security/handling-sox-compliance-requirements-in-non-us-esp-canadian-companies</link>
		<comments>http://amudee.com/2009/security/handling-sox-compliance-requirements-in-non-us-esp-canadian-companies#comments</comments>
		<pubDate>Wed, 12 Aug 2009 13:45:10 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[bill 198]]></category>
		<category><![CDATA[canada]]></category>
		<category><![CDATA[Canada's MI 52-111]]></category>
		<category><![CDATA[Canadian Securities Administrators]]></category>
		<category><![CDATA[compliance requirements]]></category>
		<category><![CDATA[Handling SOX]]></category>
		<category><![CDATA[in non-US companies]]></category>
		<category><![CDATA[SOX 404 equivalent]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=585</guid>
		<description><![CDATA[Few weeks back, I came across a question on Linkedin regarding the ways and methods for handling SOX compliance in Non-US companies. Fortunately, I was exploring deep into the subject at that time and posted an answer instantly. This turned out to be the best answer on Linkedin, So decided to share the same with [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/handling-sox-compliance-requirements-in-non-us-esp-canadian-companies/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Sustaining compliance with SAP BusinessObjects Compliant User Provisioning</title>
		<link>http://amudee.com/2009/security/sustaining-compliance-with-sap-businessobjects-compliant-user-provisioning</link>
		<comments>http://amudee.com/2009/security/sustaining-compliance-with-sap-businessobjects-compliant-user-provisioning#comments</comments>
		<pubDate>Fri, 26 Jun 2009 13:40:48 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[2010]]></category>
		<category><![CDATA[access controls suite]]></category>
		<category><![CDATA[access enforcer]]></category>
		<category><![CDATA[compliant user provisioning]]></category>
		<category><![CDATA[continuous compliance with sap cup]]></category>
		<category><![CDATA[featuress]]></category>
		<category><![CDATA[sap businessobjects grc]]></category>
		<category><![CDATA[sustaining compliance]]></category>
		<category><![CDATA[technical blog]]></category>
		<category><![CDATA[workflows]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=1323</guid>
		<description><![CDATA[This blog outlines some of the unique features of Compliant User Provisioning 5.3 and the ways to leverage your current methods of enterprise wide access provisioning with various advantages inherited by the solution.
]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/sustaining-compliance-with-sap-businessobjects-compliant-user-provisioning/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Role of a Security Consultant in an SAP implementation Project</title>
		<link>http://amudee.com/2009/security/role-of-a-security-consultant-in-an-sap-implementation-project</link>
		<comments>http://amudee.com/2009/security/role-of-a-security-consultant-in-an-sap-implementation-project#comments</comments>
		<pubDate>Thu, 21 May 2009 14:21:13 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[SAP Security]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[forensic security expert]]></category>
		<category><![CDATA[phases]]></category>
		<category><![CDATA[Role of a Security Consultant]]></category>
		<category><![CDATA[sap authorizations expert]]></category>
		<category><![CDATA[SAP implementation Project]]></category>
		<category><![CDATA[SAP Security Forensic Consultant]]></category>
		<category><![CDATA[skill set]]></category>
		<category><![CDATA[skills]]></category>
		<category><![CDATA[skillset]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=590</guid>
		<description><![CDATA[Security consultants come from different backgrounds, some from networking, database administration, infrastructure and even development like me. They contribute enormously to any product implementation from scratch (landscape design) to go-live (and continuous maintenance) so they are active on every phase of the implementation.]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/role-of-a-security-consultant-in-an-sap-implementation-project/feed</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Cross-Platform SAP GRC Access Controls</title>
		<link>http://amudee.com/2009/security/cross-platform-access-controls</link>
		<comments>http://amudee.com/2009/security/cross-platform-access-controls#comments</comments>
		<pubDate>Sun, 03 May 2009 18:38:25 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[access controls for oracle apps]]></category>
		<category><![CDATA[controls 5.3]]></category>
		<category><![CDATA[cross-enterprise]]></category>
		<category><![CDATA[cross-platform]]></category>
		<category><![CDATA[Cross-Platform Access Controls]]></category>
		<category><![CDATA[fragmented]]></category>
		<category><![CDATA[integration]]></category>
		<category><![CDATA[point solutions]]></category>
		<category><![CDATA[sap grc access controls]]></category>
		<category><![CDATA[supported business processes]]></category>
		<category><![CDATA[unified access controls]]></category>
		<category><![CDATA[unified grc]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=491</guid>
		<description><![CDATA[Managing access and authorizations across diverse platforms has always been a challenging task. Today’s businesses are running on multi platforms which ultimately demands unified access controls solutions that can manage cross-platform access and authorization requirements.]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/cross-platform-access-controls/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SAP BusinessObjects Enterprise Role Management 5.3</title>
		<link>http://amudee.com/2009/security/sap-businessobjects-enterprise-role-management</link>
		<comments>http://amudee.com/2009/security/sap-businessobjects-enterprise-role-management#comments</comments>
		<pubDate>Sat, 04 Apr 2009 14:00:50 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[article role and sap authorizations]]></category>
		<category><![CDATA[blog]]></category>
		<category><![CDATA[businessobjects]]></category>
		<category><![CDATA[enterprise role management]]></category>
		<category><![CDATA[role expert]]></category>
		<category><![CDATA[role management]]></category>
		<category><![CDATA[sap]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=1284</guid>
		<description><![CDATA[This blog outlines some of the salient features of SAP BusinessObjects GRC Access Controls Suite’s component Enterprise Role Management (ERM) and touch upon various functional scenarios and business requirements that are fulfilled by the solution.]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/sap-businessobjects-enterprise-role-management/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>10 things you need to know to become an SAP Security Forensic Consultant</title>
		<link>http://amudee.com/2009/security/10-things-you-need-to-know-to-become-an-sap-security-forensic-consultant</link>
		<comments>http://amudee.com/2009/security/10-things-you-need-to-know-to-become-an-sap-security-forensic-consultant#comments</comments>
		<pubDate>Fri, 13 Mar 2009 13:46:45 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[SAP Security]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Access Controls]]></category>
		<category><![CDATA[Application Decompilation]]></category>
		<category><![CDATA[Backdoor Access]]></category>
		<category><![CDATA[Database Security]]></category>
		<category><![CDATA[digital signatures]]></category>
		<category><![CDATA[E-mail Security]]></category>
		<category><![CDATA[eCATT Security]]></category>
		<category><![CDATA[https]]></category>
		<category><![CDATA[Keyloggers]]></category>
		<category><![CDATA[RSA]]></category>
		<category><![CDATA[SAP Security Forensic Consultant]]></category>
		<category><![CDATA[SAProuter]]></category>
		<category><![CDATA[Scripting]]></category>
		<category><![CDATA[SNC]]></category>
		<category><![CDATA[Spoofing]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[SSO]]></category>
		<category><![CDATA[Stealth Programming]]></category>
		<category><![CDATA[tokens]]></category>
		<category><![CDATA[trusted RFCs]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=378</guid>
		<description><![CDATA[10 things you need to know to become an SAP Security Forensic Consultant]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/10-things-you-need-to-know-to-become-an-sap-security-forensic-consultant/feed</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Handling emergency with SAP BusinessObjects Superuser Privilege Management</title>
		<link>http://amudee.com/2009/security/handling-emergency-with-sap-businessobjects-superuser-privilege-management</link>
		<comments>http://amudee.com/2009/security/handling-emergency-with-sap-businessobjects-superuser-privilege-management#comments</comments>
		<pubDate>Wed, 11 Feb 2009 14:28:34 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[blogging on grc]]></category>
		<category><![CDATA[businessobjects grc]]></category>
		<category><![CDATA[controller]]></category>
		<category><![CDATA[dedicated blog on sap grc]]></category>
		<category><![CDATA[ff]]></category>
		<category><![CDATA[firefighter]]></category>
		<category><![CDATA[firefighter id]]></category>
		<category><![CDATA[governance]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[sap bo]]></category>
		<category><![CDATA[sap superuser privilege management]]></category>
		<category><![CDATA[sap. grc]]></category>
		<category><![CDATA[solutions]]></category>
		<category><![CDATA[spm]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=1092</guid>
		<description><![CDATA[This Blog attempts to identify the ways and give examples of how SAP BusinessObjects GRC Superuser Privilege Management (SPM) can enable privileged access for regular users to perform emergency activities outside the parameters of their standard role. I will also briefly walkthrough a few scenarios where SPM can bring benefits to surveillance teams and allow Superuser to operate within a controlled and fully auditable environment. These benefits include Superuser activity audit trail, quality of reporting, and also the opportunity to review a company’s emergency situations and enhance the efficiency of all financial and operating departments. Some of the frequently asked questions are also provided in the end.]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/handling-emergency-with-sap-businessobjects-superuser-privilege-management/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Access Controls 5.3 Business Information Content Objects</title>
		<link>http://amudee.com/2009/security/access-controls-53-business-information-content-objects</link>
		<comments>http://amudee.com/2009/security/access-controls-53-business-information-content-objects#comments</comments>
		<pubDate>Thu, 05 Feb 2009 15:01:03 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Access Controls 5.3]]></category>
		<category><![CDATA[access enforcer business information objects]]></category>
		<category><![CDATA[Business Content 7.03 SP 09 for SAP GRC]]></category>
		<category><![CDATA[Business Information content objects]]></category>
		<category><![CDATA[compliance calibrator business information objects]]></category>
		<category><![CDATA[grc 5.3 bi content]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=267</guid>
		<description><![CDATA[This blog outlines the business information content objects for the GRC Access Controls 5.3 Suite. So far I know, business information content objects are available for two applications. Namely , Compliant User Provisioning (formerly Access Enforcer) and Risk Analysis and Remediation (formerly Compliance Calibrator) The SAP Business Information Warehouse-Compliance Calibrator (BI-CC) Business Content 7.03 SP 09 for [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/access-controls-53-business-information-content-objects/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SAP GRC Risk Management 2.0 BI Content</title>
		<link>http://amudee.com/2009/security/sap-grc-risk-management-20-bi-content</link>
		<comments>http://amudee.com/2009/security/sap-grc-risk-management-20-bi-content#comments</comments>
		<pubDate>Thu, 05 Feb 2009 14:07:08 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[BI Content]]></category>
		<category><![CDATA[Business Intelligence]]></category>
		<category><![CDATA[Characteristics]]></category>
		<category><![CDATA[DataStore Object]]></category>
		<category><![CDATA[ERM 2.0]]></category>
		<category><![CDATA[ERM Role]]></category>
		<category><![CDATA[Info cubes]]></category>
		<category><![CDATA[Key Figures]]></category>
		<category><![CDATA[MultiProviders]]></category>
		<category><![CDATA[Queries]]></category>
		<category><![CDATA[reports]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[SAP Risk Management]]></category>
		<category><![CDATA[SAP_BW_GRC_RM_ROLE]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=258</guid>
		<description><![CDATA[If you are looking for generating BI reports based on the business information content objects for the GRC Risk Management application then this blog is for you. As of SAP NetWeaver 7.0 BI Content Add-On 3 SP09, new business content is available for the Risk Management function. This Blog lists the BI Content objects for SAp [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/sap-grc-risk-management-20-bi-content/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Impact of SOX on non American companies</title>
		<link>http://amudee.com/2009/security/impact-of-sox-on-non-american-companies-short-note</link>
		<comments>http://amudee.com/2009/security/impact-of-sox-on-non-american-companies-short-note#comments</comments>
		<pubDate>Sun, 01 Feb 2009 14:18:47 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[11 titles]]></category>
		<category><![CDATA[2002 act]]></category>
		<category><![CDATA[clause 49]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[cobit 4.1]]></category>
		<category><![CDATA[corporate accountability]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[Impact of SOX on non American companies]]></category>
		<category><![CDATA[pcaob]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[sec]]></category>
		<category><![CDATA[section 302]]></category>
		<category><![CDATA[section 309]]></category>
		<category><![CDATA[section 404]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[Short note on Sarbanes Oxley]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[united states federal law]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=237</guid>
		<description><![CDATA[The Sarbanes-Oxley Act (SOX) impacts directly on companies that are listed on the US stock exchanges, but it has standard setting implications for any company that may go pubic or that might be acquired by a public company. I was recently contacted by an Australia based Business Analyst whose company is getting privatized with 50% [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/impact-of-sox-on-non-american-companies-short-note/feed</wfw:commentRss>
		<slash:comments>13</slash:comments>
		</item>
		<item>
		<title>Consumer Products Safety Improvement Act</title>
		<link>http://amudee.com/2009/security/consumer-products-safety-improvement-act</link>
		<comments>http://amudee.com/2009/security/consumer-products-safety-improvement-act#comments</comments>
		<pubDate>Wed, 14 Jan 2009 08:24:13 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[act]]></category>
		<category><![CDATA[congress]]></category>
		<category><![CDATA[consumer]]></category>
		<category><![CDATA[improvement]]></category>
		<category><![CDATA[manufacturing]]></category>
		<category><![CDATA[products]]></category>
		<category><![CDATA[quality]]></category>
		<category><![CDATA[safety]]></category>
		<category><![CDATA[standards]]></category>
		<category><![CDATA[toy]]></category>
		<category><![CDATA[usa]]></category>

		<guid isPermaLink="false">http://codergeek82.wordpress.com/?p=59</guid>
		<description><![CDATA[We’re all for strengthening the safety standards of mass-produced toys, clothes, and accessories made in China, and banning toxins like phthalates and lead. But this year, congress (USA’s) passed the ill-conceived Consumer Products Safety Improvement Act, a law which goes into effect in two months and will absolutely decimate the small toy manufacturers, independent artisans, and [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/consumer-products-safety-improvement-act/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>A question about Scope of GRC and possible amendments in Compliance Regulations</title>
		<link>http://amudee.com/2009/security/a-question-about-scope-of-grc-and-possible-amendments-in-compliance-regulations</link>
		<comments>http://amudee.com/2009/security/a-question-about-scope-of-grc-and-possible-amendments-in-compliance-regulations#comments</comments>
		<pubDate>Sun, 04 Jan 2009 21:20:11 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[controls]]></category>
		<category><![CDATA[management]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[sap]]></category>
		<category><![CDATA[sox]]></category>

		<guid isPermaLink="false">http://codergeek82.wordpress.com/?p=37</guid>
		<description><![CDATA[Looking at the world economic slowdown, do you think the compliance regulations like SOX, CLERP 9, Bill 198, JSOX, Clause49 or similar regulations would require further amendments?  So far what I have learnt is that, SOX does not define uniform principles, standards, or report forms for the examination of public companies. Ultimately we have to [...]]]></description>
		<wfw:commentRss>http://amudee.com/2009/security/a-question-about-scope-of-grc-and-possible-amendments-in-compliance-regulations/feed</wfw:commentRss>
		<slash:comments>16</slash:comments>
		</item>
		<item>
		<title>SAP Firefighter ID stuck in session</title>
		<link>http://amudee.com/2008/security/sap-firefighter-id-stuck-in-session</link>
		<comments>http://amudee.com/2008/security/sap-firefighter-id-stuck-in-session#comments</comments>
		<pubDate>Sun, 21 Dec 2008 09:38:59 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[5.2]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[controls]]></category>
		<category><![CDATA[ff]]></category>
		<category><![CDATA[firefighter]]></category>
		<category><![CDATA[firefighterid]]></category>
		<category><![CDATA[sap. grc]]></category>
		<category><![CDATA[session]]></category>
		<category><![CDATA[sm04]]></category>
		<category><![CDATA[stuck]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=133</guid>
		<description><![CDATA[Problem: A firefighter ID has logged out, however it still shows up as if it is being used. Solution: Basically &#8220;Time out&#8221; of service ID&#8217;s typically relates to the fact that their passwords don’t &#8220;time out&#8221; like dialog users do. Expiry of a session which is &#8220;hanging&#8221; for some reason is a different type of &#8220;time [...]]]></description>
		<wfw:commentRss>http://amudee.com/2008/security/sap-firefighter-id-stuck-in-session/feed</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>SAP Enterprise Risk Management Team Outing &#8211; Healthy Memories</title>
		<link>http://amudee.com/2008/security/sap-enterprise-risk-management-team-outing-healthy-memories</link>
		<comments>http://amudee.com/2008/security/sap-enterprise-risk-management-team-outing-healthy-memories#comments</comments>
		<pubDate>Fri, 14 Nov 2008 18:34:33 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[healthy memories]]></category>
		<category><![CDATA[Risk Management photos]]></category>
		<category><![CDATA[SAP enterprise risk management team]]></category>
		<category><![CDATA[SAP on youtube]]></category>
		<category><![CDATA[SAP RM team]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=403</guid>
		<description><![CDATA[SAP Enterprise Risk Management team Outing, Our special guest &#8220;Tomas Burger&#8221; [youtube bRVs36XA-Sc SAP ERM Team] This video is dedicated to all my team members who have always inspired me and lift me up in hard times. This is a team which seriously never sleeps. Winner of SAP Code Olympics 2007. These are my healthy [...]]]></description>
		<wfw:commentRss>http://amudee.com/2008/security/sap-enterprise-risk-management-team-outing-healthy-memories/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Which JCO destination to use for Access Controls</title>
		<link>http://amudee.com/2008/security/which-jco-destination-to-use-for-access-controls</link>
		<comments>http://amudee.com/2008/security/which-jco-destination-to-use-for-access-controls#comments</comments>
		<pubDate>Tue, 24 Jun 2008 10:30:25 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[data]]></category>
		<category><![CDATA[destination]]></category>
		<category><![CDATA[jco]]></category>
		<category><![CDATA[meta]]></category>
		<category><![CDATA[model]]></category>
		<category><![CDATA[VIRSAR3_01_METADATA]]></category>
		<category><![CDATA[VIRSAR3_01_MODEL]]></category>
		<category><![CDATA[VIRSAXSR3_01_METADATA]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=137</guid>
		<description><![CDATA[Question: What is the Difference between VIRSAR3_01_METADATA / VIRSAR3_01_MODEL and VIRSAXSR3_01_METADATA / VIRSAXSR3_01_MODEL Answer: Basically There are 3 different kinds of JCO destinations available. 1• If there is CC4.0 SP2 or greater installed at the backend on SAP HR system then configure JCo destinations starting with VIRSAHR_MODEL and VIRSAHR_METADATA 2• If there is CC4.0 SP2 or [...]]]></description>
		<wfw:commentRss>http://amudee.com/2008/security/which-jco-destination-to-use-for-access-controls/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Section 302 &#8211; Disclosure and Section 404 &#8211; Internal Controls</title>
		<link>http://amudee.com/2008/security/section-302-disclosure-and-section-404-internal-controls</link>
		<comments>http://amudee.com/2008/security/section-302-disclosure-and-section-404-internal-controls#comments</comments>
		<pubDate>Thu, 06 Mar 2008 18:55:20 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[11 titles]]></category>
		<category><![CDATA[2002 act]]></category>
		<category><![CDATA[clause 49]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[cobit 4.1]]></category>
		<category><![CDATA[corporate accountability]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[internal controls]]></category>
		<category><![CDATA[pcaob]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[sec]]></category>
		<category><![CDATA[section 302]]></category>
		<category><![CDATA[section 309]]></category>
		<category><![CDATA[section 404]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[united states federal law]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=230</guid>
		<description><![CDATA[Ok so let&#8217;s start with SOX Sections related to Internal Controls and Disclosure. After the SOX legislation came into existenance, A significant amount of attention was given to Section 302 (Disclosure) and Section 404 (Internal Controls). Sarbanes-Oxley Sections 302 and 404 are specifically designed to ensure information required to be disclosed is initiated, processed, recorded, [...]]]></description>
		<wfw:commentRss>http://amudee.com/2008/security/section-302-disclosure-and-section-404-internal-controls/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Controls from SOX Perspective &#8211; Excerpts of discussion with Ankur Tandon</title>
		<link>http://amudee.com/2008/security/a-short-note-on-sox-perspective</link>
		<comments>http://amudee.com/2008/security/a-short-note-on-sox-perspective#comments</comments>
		<pubDate>Wed, 16 Jan 2008 13:15:28 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[11 titles]]></category>
		<category><![CDATA[2002 act]]></category>
		<category><![CDATA[amol bharti]]></category>
		<category><![CDATA[ankur tandon]]></category>
		<category><![CDATA[clause 49]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[cobit 4.1]]></category>
		<category><![CDATA[corporate accountability]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[pcaob]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[sec]]></category>
		<category><![CDATA[section 302]]></category>
		<category><![CDATA[section 309]]></category>
		<category><![CDATA[section 404]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[sox discussion]]></category>
		<category><![CDATA[SOX perspective]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[united states federal law]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=233</guid>
		<description><![CDATA[Last Wednesday,  I had some healthy discussion with Ankur Tandon about his perspective on SOX and Internal Controls. Its&#8217; been almost a week, that I was thinking about writing what we discussed on a busy scrum day. About Ankur Tandon: Ankur Tandon is a key developer of SAP Enterprise Risk management solution. He can be described as a person [...]]]></description>
		<wfw:commentRss>http://amudee.com/2008/security/a-short-note-on-sox-perspective/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Define an Internal Control</title>
		<link>http://amudee.com/2007/security/define-an-internal-control</link>
		<comments>http://amudee.com/2007/security/define-an-internal-control#comments</comments>
		<pubDate>Wed, 14 Nov 2007 07:45:49 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[11 titles]]></category>
		<category><![CDATA[2002 act]]></category>
		<category><![CDATA[clause 49]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[cobit 4.1]]></category>
		<category><![CDATA[corporate accountability]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[define internal control]]></category>
		<category><![CDATA[internal control]]></category>
		<category><![CDATA[internal controls]]></category>
		<category><![CDATA[pcaob]]></category>
		<category><![CDATA[samples of financial control self assessment checklists]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[sec]]></category>
		<category><![CDATA[section 302]]></category>
		<category><![CDATA[section 309]]></category>
		<category><![CDATA[section 404]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[united states federal law]]></category>
		<category><![CDATA[what is an internal control]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=226</guid>
		<description><![CDATA[An effective internal control is the basic foundation of safe and sound organizational financial policy. Internal control means different things to different people. ]]></description>
		<wfw:commentRss>http://amudee.com/2007/security/define-an-internal-control/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Short note on SOX</title>
		<link>http://amudee.com/2007/security/sarbanes-oxley-act-of-2002</link>
		<comments>http://amudee.com/2007/security/sarbanes-oxley-act-of-2002#comments</comments>
		<pubDate>Sun, 11 Nov 2007 12:37:04 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[11 titles]]></category>
		<category><![CDATA[2002 act]]></category>
		<category><![CDATA[corporate accountability]]></category>
		<category><![CDATA[financial transparency]]></category>
		<category><![CDATA[legislation]]></category>
		<category><![CDATA[oxley]]></category>
		<category><![CDATA[pcaob]]></category>
		<category><![CDATA[sarbanes]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[sec]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[sox]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[united states federal law]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=223</guid>
		<description><![CDATA[Sarbanes Oxley Act of 2002 is also known as the Public Company Accounting Reform and Investor Protection Act of 2002 and commonly called SOX or Sarbox. SOX is a United States federal law enacted on July 30, 2002 in response to a number of major corporate and accounting scandals including those affecting Enron, Tyco International, [...]]]></description>
		<wfw:commentRss>http://amudee.com/2007/security/sarbanes-oxley-act-of-2002/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sarbanes Oxley Act of 2002</title>
		<link>http://amudee.com/2007/security/how-sox-helps-in-financial-transparency-of-an-organization</link>
		<comments>http://amudee.com/2007/security/how-sox-helps-in-financial-transparency-of-an-organization#comments</comments>
		<pubDate>Sun, 11 Nov 2007 09:11:34 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[cobit]]></category>
		<category><![CDATA[control framework]]></category>
		<category><![CDATA[coso]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[internal controls]]></category>
		<category><![CDATA[public company accounting reform]]></category>
		<category><![CDATA[sarbanes oxley act]]></category>
		<category><![CDATA[sarbanes oxley act of 2002]]></category>
		<category><![CDATA[sarbox]]></category>
		<category><![CDATA[section 302]]></category>
		<category><![CDATA[section 404]]></category>
		<category><![CDATA[sox]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=141</guid>
		<description><![CDATA[Posted on Nov 11, 2007 Summary: An effective internal control is the basic foundation of safe and sound organizational financial policy, indeed it’s now the law (Section 404 and Section 302 of SOX). This blog introduces you to Sarbanes Oxley Act of 2002 specifically covering Section 302 (Disclosure) and Section 404 (Internal Controls), COSO, COBIT Control framework. [...]]]></description>
		<wfw:commentRss>http://amudee.com/2007/security/how-sox-helps-in-financial-transparency-of-an-organization/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>COSO and COBIT</title>
		<link>http://amudee.com/2007/security/coso-and-cobit</link>
		<comments>http://amudee.com/2007/security/coso-and-cobit#comments</comments>
		<pubDate>Mon, 02 Apr 2007 19:25:51 +0000</pubDate>
		<dc:creator>Amol Bharti</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Control Objectives for Information and related Technology]]></category>
		<category><![CDATA[coso and cobit]]></category>
		<category><![CDATA[securities and exchange commission]]></category>
		<category><![CDATA[The Committee of Sponsoring Organization]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=539</guid>
		<description><![CDATA[ The Committee of Sponsoring Organization of the Treadwell Commission (COSO) defined Internal Controls in a broad fashion that can be described as a process ..]]></description>
		<wfw:commentRss>http://amudee.com/2007/security/coso-and-cobit/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Sarbanes Oxley Compliance &#8211; Will Tighter Controls Work?</title>
		<link>http://amudee.com/2006/security/sarbanes-oxley-compliance-will-tighter-controls-work</link>
		<comments>http://amudee.com/2006/security/sarbanes-oxley-compliance-will-tighter-controls-work#comments</comments>
		<pubDate>Sat, 27 May 2006 09:09:17 +0000</pubDate>
		<dc:creator>Earl Powers</dc:creator>
				<category><![CDATA[GRC]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[controls]]></category>
		<category><![CDATA[Sarbanes Oxley Compliance]]></category>
		<category><![CDATA[Will Tighter Controls Work]]></category>

		<guid isPermaLink="false">http://amudee.com/?p=625</guid>
		<description><![CDATA[Sarbanes Oxley act had been levied for tighter controls and stricter regulations for company's internal controls. According to the Sarbanes Oxley compliance companies with market capitalization of more than $75 million need to file their financial reports by the June 15th. This date was alter amended up to 15th November. All other companies need to files their financial return for any fiscal year by 15th July.]]></description>
		<wfw:commentRss>http://amudee.com/2006/security/sarbanes-oxley-compliance-will-tighter-controls-work/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

