We have added search box. Key in SAP issue keyword to search
TopBottom

Announcement: wanna exchange links? contact me at sapchatroom@gmail.com.

RE:[sap-security] Does a SOD (Segragation Of Duties) Conflict Exist Between SAP VF01 and MB1B Transactions?

Posted by Admin at
Share this post:
Ma.gnolia DiggIt! Del.icio.us Yahoo Furl Technorati Reddit

Reply from Carlos on Feb 5 at 10:50 PM
Potential risk would be for someone to create a fictitious invoice and cover it up with a transfer posting. Why someone would do that? An example could be a sales rep trying to meet period end sales quota and transfers a non relevant material to cover it up with. It is really easy to cover up inventory movements with a material that may not even have value in books, i.e. Discarded furniture, obsolete it or comm equipment, etc.

The way to mitigate is to use the standard mm-pur functionality where instead of using mb1b, you use a PO (transfer posting option) via me21n, authorize via workflow, and transfer using migo. If you must use mb1b you can limit by restricting storage location/warehouse, at the role or user group level.

Now, that being said, I would love to hear why you have a user that needs both tcodes to do their job?

---------------Original Message---------------
From: SAPSOD
Sent: Thursday, February 05, 2015 6:30 AM
Subject: Does a SOD (Segragation Of Duties) Conflict Exist Between SAP VF01 and MB1B Transactions?

We currently have a SOX matrix which identified a conflict of segregation of duties between VF01 (Billing) and MB1B (Warehouse Transfer) transactions.

We want to understand what would be the conflict so we can establish mitigation actions if necessary.

 
Reply to this email to post your response.
 
__.____._
Manage Settings | Unsubscribe | Create FAQ | Send Feedback
  
Copyright © 2015 Ziff Davis, LLC. and message author.
Ziff Davis, LLC. 28 E 28th Street New York, NY 10016
Carlos  
 
Mark as helpful
View this online
Ask a new question
 
In the Spotlight
Become a blogger at Toolbox.com and share your expertise with the community. Start today.

_.____.__

0 comments:

Post a Comment

T r a n s l a t e to your language