New employees are granted access to all the SAP System they need on their first day on the job, and all necessary approval workflows are automated. UserManager also makes it easy for business managers and departments to manage their own users' access needs instead of having to rely on a SAP Security Administrators. When roles change, access rights are updated automatically. And when an employee leaves, access is revoked in real time. With role-based provisioning, systems are never vulnerable, and companies can maintain visibility into how information and resources are being used Give them exactly what they need, when they need it. Throughout their careers in your organization, employees may play many roles. OneAccess- UserManager lets you securely and automatically manage their access needs of all your users, even when they change roles and take on new responsibilities.

The One Access User-Manager plug-ins for SAP Systems create a Site-Based Entitlements area that allows you to create and manage Site based entitlement policies. These policies entitle particular groups of users to memberships and accounts in various connected systems. For example, you might create a Baltimore Site entitlement policy that entitles all users in your company's Baltimore Site Location to a SAP ECC 6.0 and SAP APO

The Site-Based Entitlements feature in One Access UserManager makes provisioning access rights and system access and accounts easier than ever for at least four reasons. You can write rules that instruct SAP UserManager which users to grant which system based on Site location. You need write only one policy to grant several users Access to several connected SAP systems. Users come and users go but, despite this fact of corporate life, you won't necessarily need to touch your site policies. UserManager provisions access and access based on users' site Location