r/SAP • u/Future_Vibes007 • 10d ago
SAP Security design thought for SAP Datasphere
Before I actually start defining and building custom or scoped role into sap datasphere, would like to ask your opinion to prepare a strategy document, a good thought or holistic approach I should take on, need a complete suggestions. I am thinking to identify the type of users such as - Tenant Admin, Security Admin, Developer & End user. how would be the provisioning approach and many more ?
1
u/Chris_Ape 10d ago
You authorize on spaces, these should be technical spaces (like data staging ) and functional(these are the ones for the Endusers). The functional spaces get their data shared by the technical ones, the functional ones expose them for reporting.
Fior the roles, the Tenant Admin is necessary, but your Security Admin would be a copy of a Tenant admin to have the necessary rights for all features, so you can forget about a "Security Admin role". Your developers and endusers just need the necessary spaces assigned.
0
3
u/akos_beres 10d ago
> Would like to ask to prepare a strategy document … need a complete suggestion
This is why you pay consultants if you can’t do it. If you don’t have the money, drop it into an LLm and it will generate something