Unplugged: Organizations in this maturity level will not have any control on the system. Least importance is given to processes and procedures, and also the authorization setup. In this level, you may see majority of the users with access to critical profiles/authorizations such as SAP_ALL, SAP_NEW etc., User IDs also might be shared between the users. Users will even get the required access very easily.
Edge Intelligence: This is the next level of the maturity curve! In this level, organizations will have minimal level of compliance and gives very least preference to Governance, Risk and Compliance. Periodic audits are conducted, authorization management is better than the UNPLUGGED maturity level. However, organizations in the “Edge Intelligence” level are normally okay to have more number of internal controls and accepts majority of the intra and extra level violations.
Remote Monitoring: This is the most common level where 60-70% of the organizations are operating in. This stands in the mid position of the maturity level bell curve. Organizations give utmost importance to governance, risk and compliance and implement various solutions such as SAP GRC to have a better management and control on the critical & segregation of duty risks in the system. Risks will be managed by the Monitoring teams such as Monitors & Controllers. However, the approach that is being followed in this level is termed as “Reactive” approach, since the management teams will act afterwards instead of before the risk is exploited.
Predictive: This level is also being referred as “Smart Intelligence” level. This involves triangulating patterns from historical data, and the current data validating with the critical controls. At this level, the systems will be managed with a variety of solutions that will help the management and audit teams with proactive alerting. For Eg: The system will alert when SUPER users are available for direct login etc., This enables the teams to have good control on the critical areas and reduces the non-conformance during the audits.
Facebook of Machines: The next and the most effective and intelligent level on the maturity curve. Very few organizations exist in this level where all the SAP systems are proactively monitored from a central system. Lot of customization and integrations are required to make the monitoring more effective. In other words this level enables the organizations to monitor all the critical systems in real-time seamlessly.