GRC is a online tool which is used to create/modify any user requests. For our Stellar program we are restricted to only RCS-WP1 and GTS-WGP systems.

Link: http://pyjsapr3.ibm.be.solvay.com/AE/index.jsp

The above link will get to the GRC tool. We have to connect to VPN before going to the link in order to open GRC application.

When you get to the GRC tool, below is the  initial screen which would appear on the screen.

 

 

 

 

 

 

 

 

 

There are many request types  which can be done through GRC tool.

Out of which we only work on four request types. Below  is a detailed way on how to work on each of the request type.

Step-by-step guide

Here we shall learn on how to work on the request types in a step by step procedure.

Click on New Account tab in the initial GRC screen for creation of a new user in WP1 system.

It will prompt you to the login page which is shown in the screen below.

Enter your user id on the pointed area and also check the box which says Requesting for other User. Then Click on Logon.

The Initial screen of the GRC tool appears after clicking Logon like below.

 

We can also change the request type in the initial screen only by clicking the drop down pointed in Yellow for changing the request type to Change Account/Lock Account/Unlock Account.

We can change the Application by clicking on the Search button which is pointed in the above screen in Red.Once we click on the search button you will find a option to select the required application as per the request from the user.

Once the Search Button pointed in the RED is clicked it will prompt to the below screen where we can select the application and click on Continue.

Note: For CGI Access Management we only work on two applications GTS-WGP and RCS-WP1.

Below are the screens which show for Lock Account and Unlock Account Request types.

Lock Account Screen:

Unlock Account Screen:

GRC Request Form:

This is the GRC form which is filled by the user and sent for a user creation/modification. There are few mandatory information which should be found in the form (User ID, Reference user ID, Application Name, Manager Name, Company Name, User Group).

As per the information provided by the user in this GRC form we fill in the data into GRC tool as in the below screen.

To find the user click on the search button pointed in Yellow and there you can enter the user id and find the user. Once clicked on the search button you will get the below screen.

Enter the User id of the user provided in the GRC Form and click on Search.

Once we select the user then the data of the user will be directly entered by the system in the user data as in the below screen.

After verifying the user data from the user form we fill in the rest of the missing data especially all the mandatory data. After filling the data click on Select Roles/Groups at the bottom of the page. It will send you to the next screen where we find the roles to be provided for the user based on the reference user.

We have an option where we can enter the roles if we know the roles or we can find the roles by entering the reference user id. Click on the dropdown pointed in the above screen and select   Model My Access By.

Click on the search button and enter the reference user id from whom we copy the roles to the user. The process of finding the reference user is similar to as of the finding the user which is the shared earlier. Once we get the user click on GO, then all the roles which are present for the reference user will be shown as in the below image.

We can select the roles by clicking the check box and then click on Submit at the bottom.

If we cannot find the reference user then we can directly proceed by typing the role in the section pointed in the below image. And before entering the role make sure that the Search the Type of Access is Roles.

We can select the role by checking the checkbox and then we can proceed to submit the request.

In case if we want to find the already existing roles of the user we can click on the tab at the bottom of the page which says Existing Roles/Groups as in the below screen.

Then if we want to modify any roles like if we want some existing roles to be removed or add we can click on the dropdown as shown in the below screen.

Once we select Remove option from the Dropdown it will be shown as in the below screen.

At the end after all the adding/removing of roles we can click on the Submit button which will complete the request and provide a GRC request number as below.

The above screen provides the GRC Request Number which can be updated to the user where user can check with the respective manager who has to approve the request in GRC.

We can also check the status of the ticket by clicking Request Status on the Left hand side of the Screen as shown in the below screen.

Click on Request Status and it will prompt to login screen and there we will be able to see the requests raised by the member whether the status of the request is open/closed/on hold/Rejected/cancelled.

This how the screen appears with the status of the requests. With the dropdown which is pointed in the above screen we can sort the request type and check the request. 

If we click on any request we can see the number of approvers and also who has to approve.

Only when we get all the approvals in GRC then only user will be having the accesses requested and the status of the ticket in GRC goes to CLOSED state.