Sap Security Grc Consultant Resume
Chicago, IL
SUMMARY:
- Around 8.5 Years of IT Experience in SAP technology as R/3 Security
- Experience in SAP Application Security Development and administration of R/3 environment for the modules SAP ERP, BI 7.0
- Good experience in SAP security maintenance activities, Transport System and Performance monitoring,
- Extensive experience with resolving ticket issues and troubleshooting the problems while adhering to Service Level Agreements (SLA).
- Strong Experience to manage multiple tasks of production support
- Worked Extensively on R/3, ECC 6.0, CRM, BW 3.5/BI 4.0 Security, and Ability to work in security for new dimensional Net weaver product.
- To identify and resolve issues related to SAP Security, Role naming convention, approval process
- User Creation, Deletion, Restriction of regular and temporary user id’s authorizations.
- Expertise in SAP Security (Single roles, Composite roles), Strong experience on ERP Authorizations, security aspects, authorization profiles and profile generation.
- Strong Experience with 24*7 supports.
- Good experience with on call support
- Good Knowledge on BPC
- Experience in setting up User authorizations in Enterprise portal
- Good Experience with Implementation and upgrade activities
- Worked Extensively with SAP Business Process, Transactions, Financial reporting Process.
- Creation, modification and deletion of role and profiles based on business needs.
- Experience on GRC10.0 to create the requests using Provision and Manage Users
- Assigning user groups to the Business users in Production systems.
- Sound Knowledge on SAP HR
- Good experience with ECATT, LSMW
- Strong Experience on SoX Compliance
- Good Experience with Fire Fighter administration
- Technically performed activities on User Maintenance, Authorization Objects, assisting internal security, Report Generation and Role Maintenance.
- Updated the SNC details whenever created the new user for the secure communication
- Excellent problem solving skills, good communication skills, team player and collaborate with other team members and business representatives to ensure that security settings meet the requirements of the business and align with the standards.
TECHNICAL SKILLS:
ERP: SAP R/3 Enterprise 4.7EE/ 4.6C/ 4.6B/ 4.6A, ECC 5.0/ 6.0/BI4
Specialization: HR Administration, Security (R/3), GRC, BI security.
Databases: Oracle. MS - SQL
Tools: GRC 5.3/10.0, Remedy,SM 7
Packages: M.S. Office, Lotus Notes
Operating Systems: All Platforms of Windows, HP-UX.
PROFESSIONAL EXPERIENCE:
Confidential, Chicago, IL
SAP Security GRC Consultant
Responsibilities:
- User Administration - This includes user creation, deletion, changing user access for different systems and environments, Mass user administration and mass locking using SU10 Mass user comparison using PFUD
- Performed the Risk Identification, Role Analysis, Risk Remediation and mitigating controls.
- Running risk analysis on role level and user level
- Good Experience on GRC Access Control implementation process
- Strong Experience on Sox Compliance
- Handled the 24*7 On call support on weekends
- Updated the SNC details whenever created the new user for the secure communication
- Involved in Audit calls
- Provided the Authorization as per the SOX compliance
- Good Experience on User Provisioning as part of User administration
- Supporting as a user admin for ECC,HR,BW Systems
- Implemented the Authorization concept of Standard and Analysis authorizations in BI.
Environment: SAP BI 7.1, ECC 6.0, Active Directory, Remedy, GRC 10.0, APO, SCM, HR, FICO, Portal, LDAP, SM7
Confidential, Des Moines, IASAP Security GRC Consultant
Responsibilities:
- Performed the Risk Identification, Role Analysis, Risk Remediation and mitigating controls.
- Running risk analysis on role level and user level
- Developed various SOD reports for users
- Defined Role owners & approvers
- Defined User access approvers and Risk owners
- Defined Mitigation monitors and approvers
- Good Experience on User Provisioning as part of User administration
- Supporting as a user admin for ECC,HR,BW Systems
- User Administration - This includes user creation, deletion, changing user access for different systems and environments, Mass user administration and mass locking using SU10 Mass user comparison using PFUD
- Implemented the Authorization concept of Standard and Analysis authorizations in BI.
Environment: SAP BI 7.1, ECC 6.0, Remedy, GRC 10.0, Bex Reports, HR, FICO, Portal, LDAP, SM7
ConfidentialTechnical Lead
Responsibilities:
- Responsible for designing, developing and testing authorization roles in SAP ERP, BW/BI and HR Reports.
- Responsible for day-to-day user administration tasks. Worked extensively on Authorization Objects, Fields and Authorization profile.
- Good Experience on User Provisioning as part of User administration
- Supporting as a user admin for ECC,HR,BW Systems
- Responsible for Day to Day Dispatching of the incidents to the team members
- Supported to role designing team to eliminate violations for the technical Roles
- Worked with ST01 and RSECADMIN for complete trace of authorizations in BI.
- Worked on Reports to support SAP R/3 security reporting needs such as Reports of user usage, profiles and authorizations, comparison report in different R/3 system, Lock/Unlock user in client.
- Good Experience on Portal role assignment and group assignment and User creation in LDAP
- Responsible for providing the resolution to the Security Issues within SLA
- Responsible for sharing the periodic Activities to the Client
- Good Experience on HR Modules assigning the roles.
- Good Experience with CRM role assignment
- Maintained the SOX Compliance standards for Auditing
- Worked on HR based Position based Security and ESS Time Tracker.
- Involved in preparing the System Maintenance Technical Document(SMTD)
- Mitigate the user id against a particular risk to reduce or minimize the SoD violations from ARA
- Analyzing authorization problems and implementing appropriate solutions.
- Involved in Role creation and Role Changes
- Created the SNC details for the secure network data communication with portal.
- Trouble shoot security problem by using different scenario such as system trace ST01, SU53 in order to find security problem.
- Good Experience on GRC Access Control implementation process
- Strong Experience on Sox Compliance
- Effectively analyzed trace files and tracked missing authorizations for user’s access problems using ST01 and inserted missing authorizations manually in role as needed.
Environment: SAP BI 7.1, ECC 6.0, Sol Man, CRM, Remedy, GRC 5.3,ABAP, Bex Reports, APO, HR, MM, SD,PI, Portal, LDAP, FICO, Web Form, HP QC.
ConfidentialSr.SAP Security Consultant
Responsibilities:
- Responsible for designing, developing and testing authorization roles in SAP ERP, BW/BI and Reports.
- Responsible for day-to-day user administration tasks. Worked extensively on Authorization Objects, Fields and Authorization profile.
- Good Experience on User Provisioning as part of User administration
- Supporting as a user admin for ECC,CRM,BW, Net viewer and BOBJ Systems
- Worked on GRC10.0 for assigning the requests for FFID’s using Provision and Manage Users(CUP)
- Maintained the SAP 5-Land scape structure.
- Supported to role designing team to eliminate violations for the technical Roles
- Implemented the Authorization concept of Standard and Analysis authorizations in BI.
- Implemented Security at Info cube level, characteristic level, characteristic value level and Key Figure level as a part of Analysis authorizations using the Tcode RSECADMIN.
- Worked with ST01 and RSECADMIN for complete trace of authorizations in BI.
- Worked on Reports to support SAP R/3 security reporting needs such as Reports of user usage, profiles and authorizations, comparison report in different R/3 system, Lock/Unlock user in client.
- Make sure that security authorization procedures are adhered to and users do not receive authorizations that are outside of company guidelines.
- Assigned the Fire Fighter and emergency users and reviewed the trace.
- Mitigate the user id against a particular risk to reduce or minimize the SoD violations from ARA
- Analyzing authorization problems and implementing appropriate solutions.
- Performed Single/Mass Transports Roles across R/3 systems
- Trouble shoot security problem by using different scenario such as system trace ST01, SU53 in order to find security problem.
- Supported the 24*7 support for the System refresh
- Good Experience on GRC Access Control implementation process
- Good Experience on Auditing as per the Sox Compliance
- Strong Experience on SoX Compliance
- Created Workflows for AC 10.0 implementation to provide notifications for role approvers in EAM
Environment: SAP BI 7.1/BI4,ECC 6.0, BOBJ, SAP Security, CRM, Quality Center, GRC 10.0, SSIS, Bex Reports,SM7, DHT, Web Form
ConfidentialSAP Security Consultant
Responsibilities:
- Responsible for designing, developing and testing authorization roles in SAP ERP, BW/BI and Reports.
- Involved in the Role design based on the requirements
- Supporting as a user admin for ECC,BW Systems
- Supported to role designing team to eliminate violations for the technical Roles
- Implemented the Authorization concept of Standard and Analysis authorizations in BI.
- Maintained Authorization objects S RS AUTH, S RS COMP, S RS COMP1, S RS FOLD for securing Reporting and Administration Users in BI and BO.
- Implemented Security at Info cube level, characteristic level, characteristic value level and Key Figure level as a part of Analysis authorizations using the Tcode RSECADMIN.
- Good Experience on Implementation on BI 7.3
- Worked with ST01 and RSECADMIN for complete trace of authorizations in BI.
- Worked on Reports to support SAP R/3 security reporting needs such as Reports of user usage, profiles and authorizations, comparison report in different R/3 system, Lock/Unlock user in client.
- Make sure that security authorization procedures are adhered to and users do not receive authorizations that are outside of company guidelines.
- Analyzing authorization problems and implementing appropriate solutions.
- Performed Single/Mass Transports Roles across R/3 systems
- Trouble shoot security problem by using different scenario such as system trace ST01, SU53 in order to find security problem.
- Good Experience on GRC Access Control- Access Risk Analysis
- Effectively analyzed trace files and tracked missing authorizations for user’s access problems using ST01 and inserted missing authorizations manually in role as needed.
Environment: SAP BI 7.1/BI4,ECC 6.0, SAP Security, Quality Center, GRC 10.0, SSIS, Bex Reports,SM7, DHT, Web Form
Confidential, Lexington, KYSAP Security Consultant
Responsibilities:
- Day to day troubleshooting of SAP authorizations issues.
- Involved in creation of Authorization profiles using PFCG and Analysis Authorization using SU53.
- Managing User Master Record creating user, User groups, locking and unlocking user and assigning authorization groups and roles.
- Implemented Single Sign on Configuration.
- Implemented Central User administration.
- Analyzing authorization checks & performance troubleshooting on Security problems by using system traces ST01, ST05.
- Experience in Maintaining, Creating, Modifying existing roles (Single, Composite and Derived).
- Involved in securing customized programs and critical tables by checking programs for proper authorization objects, maintain the authorization check in SU24 and maintaining authorization groups for tables.
- Coordinate with CMS Teams to move the changes from Dev environment to production
- OSS User Maintenance
- Have designed authorization and made successful Go-Live delivery security projects which involves Integration testing, User Acceptance testing for applications
Environment: MS-SQL SERVER 2005, BI, FI, SCM, Windows 2003 server.
Confidential, Jersey City, NJSAP Security Analyst
Responsibilities:
- Created single role, composite role and derived role as per organizational structure
- User maintenance on day-to-day basis
- Extensively worked on Authorization objects, fields, authorizations and authorization profiles in profile generator (PFCG)
- Created CRQ for the role modification instances
- Identified missing authorizations with use of SU53 and maintained them manually in PFCG.
- Worked on the remedy dispatching process.
- As a Dispatcher effectively coordinate with the off shore team to distribute the request.
- Shift Roaster and Compensation off maintenance.
- Creation of Custom Authorization Objects for BI Reporting Roles (RSECADMIN).
- Resolving tickets raised by customer's via Remedy ticketing tool.
Environment: SAP R/3, SAP BW, SAP Security, Remedy, Oracle, MS SQL Server, Windows 2003
Confidential, Miami, FLSAP Security Analyst
Roles & Responsibilities:
- Assist Users with access problems and questions using SUIM and SU53.
- Perform regular system audits to detect deviation of established procedures, role mapping and unauthorized changes to the SAP security and report finding to management.
- Involved in the day to day activities of the User Administration tasks.
- Data validation and data loading to the SAP Systems.
- Troubleshoot security and authorization related problems using user information system and Display Authorization Data.
Environment: SAP R/3, SAP BW, SAP Security, e-Tracker, Oracle, MS SQL Server
