What EY can do for you
We independently assess the settings of internal controls during:
- the update or implementation of ERP systems (e.g., SAP S/4HANA),
- migration to a cloud environment.
We focus on key areas:
- Change Governance – management of change processes, approvals, and documentation
- Segregation of Duties – separation of roles and responsibilities to avoid conflicts of interest
- Transport and deployment of changes – including tools such as ChaRM (Change Request Management) or CI/CD (Continuous Integration / Continuous Deployment)
- Quality and completeness of migrated data – we verify that the data has been transferred correctly and without loss
- Readiness for cutover and back-out scenarios – that is, for the actual launch of the new system and potential rollback of changes
In the cloud environment, we evaluate:
- Landing zone – basic architecture and readiness of the environment
- IAM (Identity and Access Management) – management of identities and access rights
- Network segmentation – separation of sensitive parts of the infrastructure
- Logging and backup – including disaster recovery plans
We perform our assessments in line with established standards and benchmarks, such as CIS Controls (Center for Internet Security), to ensure that your environment meets current security and operational requirements.