I worked with smartGRC as a recipient of its segregation-of-duties reports for our system, and what I valued most is that the findings arrived in a form I could understand and act on without being a SAP authorisations specialist. Conflicts were described in business terms: for example, that the same person could both post and approve, rather than as raw authorisation objects, so I could see the risk in our accounting processes and follow up with the right people. Review collected by and hosted on G2.com.
I received the reports rather than running the analysis myself, so when I wanted to dig into a specific conflict I had to go back to the team. A bit more self-serve access to drill into an individual finding would have been handy on my side. Review collected by and hosted on G2.com.