Integrating SAP into an IGA solution is a complex undertaking due to the inherent compexity of SAP installations themselves as well as the need of a lot of control over SAP entitlements and roles in terms of identity governance:
-
Complexity: SAP is a complex system with many components and modules, which can make it challenging to integrate with an IDM system. Shall the SAP Central User Admin (CUA) be used or is an system by system integration better.
-
Customization: SAP user management might need custom user parameters for different groups of persons. This can make integration with an IDM system more challenging.
-
Multiple SAP version: Large organizations are in the process of adopting SAP 5 HANA and will probably have multiple instances of SAP, with different versions and configurations. Integrating these instances into a single IDM system can be a complex task, requiring careful planning and coordination.
-
User provisioning: SAP GRC may require unique user provisioning workflows, which can be difficult to integrate with an IDM system. For example, SAP GRC integrations often require custom workflows to be launched when on- or offboarding users.
-
Governance: SAP provides their own IGA module, SAP GRC which might need to be integrated tightly with the compliance and governance part of the IGA system. In addition most SAP installations already provide their own role model which also needs integration into the IGA access request process.
Ventum Digital Identity Services can provide expert services for their IGA partner products to analyse the possiblities to integrate your IGA with your SAP landscape and plan the integration process. We can also provide experts familiar with the out of the box SAP connectors for IGA systems and the different customization options.