End User Development - Governance and Risk Management

Post on 24-May-2015

577 views 2 download

Tags:

description

My personal point of view of how Microsoft technologies could help address the End User Development governance & compliance requirements called out by MAS IBTRM

transcript

User/Admin

Experience Immutability

Data

Governance eDiscovery

Multiple versions impact decision making.

Errors can cause material financial misstatements.

Spreadsheets are easy to alter for fraudulent purposes.

Microsoft EUD control technology enables

organizations to get the full power of EUD tools

with less risk.

EUD tools help users make better decisions, get more

done, and perform complex analyses quickly.

Brokenlink

Broken

link

Negative formulas

Invisible

cells

Very

hidden

sheet

Invisible

cells

Negative

formulas

Very

hidden

sheet

Integrated monitoring, auditing

and security framework

Discovery, consolidation, and

central management

Risk assessment, error detection &

code quality

Comparison & version control

Managed RAD tools & platforms

with agile practices

Which contain errors or fraudulent

data?

How many EUD apps? Where?

Who has access?

Are there multiple versions in use?

How do we track and report EUD

apps for audit purposes?

How can we empower our people

to use EUD while minimizing risk?

Issue detection

Document identification Solution management

Deployment

Office Telemetry enables

Report detected issues

& performance

Determine frequency of

documents & solutions usedManage add-ins

& solutions

Track

deployments

How Office Telemetry Works

Microsoft Confidential

ActiveX Macros ScopeBuilds

Mining Data from the Dashboard

Skype acquisition plan.docx

Hide Filter Threshold

Obfuscate

the file properties

Specify

Office solutions / file type

Threshold of use by

specified limit

Sk********(1).docx

Privacy Solutions

PWC White Paper

on Spreadsheet

Controls & SOX

Early Adopters Begin

to Implement Manual

Inventory, Controls

Technology

Vendors Respond

with Automated

Solutions (v1.0)

Early Implementations

of Automated Controls

Technology Vendors

Up the Ante (v2.0)

Financial Markets Collapse,

Driving Increased Scrutiny

and Regulation

Leaders & Best

Practices Emerge

2004 2005 2006 2007 2008 2009 2010 2011 2012 2013

Innovators Early Adopters Early Majority

Microsoft acquires the

Prodiance Corporation

Microsoft incorporates

Spreadsheet Controls into

the new Office

Assess and categorize spreadsheets and

databases based on relevance, materiality,

complexity and business impact

Compare spreadsheets side

by side

Nonintrusive auditing of changes made to Excel spreadsheets and Access databases

Compare Access databases

side by side

Analyze, document,

understand and diagnose

spreadsheets

Microsoft Best Practices, Domain Expertise, and World-Class Support

Microsoft Office

Discovery and Risk Assessment

Microsoft Office Audit and Control

Managementserver

Microsoft Reporting Services and BI tools

Inventory Risk assessment Control ReportingOptimization

Microsoft Excel 2013

Spreadsheet Compare Microsoft Access

Database

Microsoft Excel 2013 Spreadsheet Inquire

Discover and assesses EUCs across file shares and SharePoint libraries

Highlights risk, materiality, complexity, and more based on configurable criteria

Track changes in spreadsheets and Access databases

Versioning for UNC files

Easily compare spreadsheets side-by-side to identify and categorize differences

In-depth reports on over 40 diagnostics

Dependency tracking at workbook, worksheet, or cell level

• Request

• Denied

• Go Solo

• Result

• Clean-up

• Repeat

1

2

3

4

5

6

The Slippery Slope

Often time the business goes without, resulting in inefficiencies

Faster Delivery Time (if OOB)

Lower OOB Business Fit (Change

Business to Fit)

Narrow Scope of Available

Applications (Buy Multiple)

Broadest Scope of Possibilities

Slower Delivery Time

Higher Potential Business Fit

Resource/Time Intensive

Difficult to Deliver Complete

Build Custom

Applications

Faster Lower

Higher

Buy Packaged

Apps

Scope of available applications

Slower

Application Stack

User Experience

Application & Database Services

Physical Environment &

Resources

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Line of Business Context / IP

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Business IP

Application & Database

Services

Physical Environment & Resources

User Experience

Most large organizations have hundreds of LOB applications

Development

Tools

Development

Frameworks

Packaged

Applications

Build Buy

Managed

RAD

Platform

Lower total cost of

ownership (TCO)

Rapidly innovate

and grow your

business

Shared Application and Data Services

Vendor

Management

Asset

Management

Employee

Management

Program

ManagementBUILD

many LOB

applications

ON

a single

platform

WITH

shared

resources

Supplier

Management

Property

Management

Recruit

Management

Project

Management

Contractor

Management

Fleet

Management

Resource

Management

Product

Management

Partnership

Management

Contract

Management

Lifecycle

Management

Constituent

Management

Grant

Management

Licensing

Management

Legislation

Management

Task / Activity

Management

Shared Environments & Resources

Consistent and Complete User Experience

ууущщйццззййз

360O View

ууущщйццззййз

Microsoft

Technologies(Outlook, Office, SQL Server, .NET)

xRM Application Platform rapidly

adapt to fit your application

requirements

Adaptable to fit the unique needs of

every application

Range from simple to complex options

Comprehensive application

development environment

Powerful and intuitive point & click allows organizations to rapidly build entire applications

For technical and non-technical users

Enables lightning fast deployments and agile iterative design and feedback

Completely define each unique application through point & click

Less developers focused on building infrastructure

Point & Click Customization Components Relational Data Schema Forms Designer & Navigation Feature Functionality Role-based Security

Business Logic Process Automation Reporting Application Configuration

Simplify user administration with role-based access controls and data security logic

Rapidly add multiple users directly from Active Directory

Create role profiles and assign appropriate security access

Export and use security roles across all environments (Dev, Test, Staging, Production)

Control operations on all relevant custom entities

Access & Security Components Active Directory Access Controls / Authentication VPN-less Accessible (SSL) Bulk User Management

Role Management Role-based Security Hierarchical Security Deep data controls

Supplier Management Property Management Benefits Management

Product Management Contractor Management

Asset Management

Extensibility Components Microsoft SQL Server/SRS/SAS Microsoft Excel Report Creation Wizard Scheduled & Offline Reporting

Ad Hoc Analytics Dashboards / KPIs OLAP Predictive / Data Mining