Security Lead Resume
2.00/5 (Submit Your Rating)
OBJECTIVE
- To find a challenging career in an esteemed organization so that I can grow professionally. I am seeking a position that will utilize my skills and expertise while offering the chance for advancement.
SUMMARY
- 12 years 7 months of experience in SAP Security & Authorization, SOD/SOX audit governance, end - to-end SAP Security Implementation, Global Rollouts, Post Go-Live Support and Production Support in R/3 ECC, BI, HR and CRM.
- Enhancements/defects for new codes in system. Hands on experience in usage of S4HANA Studio/Business Objects, Lumira, Success factor and GRC Tools like Virsa Compliance Calibrator, Fire fighter, GRC Access Control - CUP, SPM and RAR.
- End-to-End implementation experience in Security Weaver tool - Separations enforcer, emergency repair, secure provisioning. Good exposure and trained on workday Security configuration, integrations, staffing concepts.
TECHNICAL SKILLS
SAP: Security & Authorizations, Position Based security, HCM Security, BI security, XI, Net Weaver portal, Gateway security, Success factor security, transport management.
Tools: & Technology: SAP ECC 6.0, SAP HCM security, SAP BI 7.0, BOBJ Business objects, S4HANA studio, Security Weaver tool implementation, BIZRIGHTS (Approva), GRC 5.2 & 5.3, active directory, Success factor, Exposure and trained on Workday Security configuration and integrations, staffing.
PROFESSIONAL EXPERIENCE
Confidential
Security Lead
Responsibilities:
- Design/requirement gathering/development and deployment of SAP ECC, BI 7.4 & HCM reporting roles for end-to-end implementation for New BW reports and upgrading analysis authorizations to improve performance.
- Design and creation of new roles/analysis authorizations for BI 7.0, S4HANA Studio, Active directory mapping for Business objects.
- Design of new Roles/ PD profiles/ Evaluation paths for SAP ECC HCM security users.
- End to end Implementation of Security Weaver Tool and definition of SOD matrix and rule sets for current customer.
- Interact well with all levels of team membership including management, Work with functional teams and business Users (onsite) to gather role design requirements.
- Co-ordinate comprehensive testing of all profiles and authorizations to ensure accuracy and segregation of duties.
- Security consultant for all MSP Upgrades, CLC patching in SAP systems for all HR/BI functional areas. Provided security support for integration testing, user acceptance testing, and training efforts.
Confidential
Sr. Security Lead
Responsibilities:
- End-to-End implementation of Security Weaver modules and definition of SOD matrix/Role catalog/Roleownermatrix/OOOconfiguration/PD profiles configuration/Mitigation/Remediation.
- Maintaining Firefighter IDs, their owners and controllers. Assigning firefighter ID to appropriate Firefighter in emergencies.
- Experience on Virsa Compliance Calibrator (CC). Analyzing risks and SOD Violations at different levels.
- Generating User reports (Log Summary Report, Reason/Activity Report, Transaction Usage Report, SOD Violation Report).
- Preparing SOD Analytical Reports (both Summary and Detail) against Users, User Groups, Roles and Profiles using RAR.
- Mitigation and Remediation of users and roles for SOX using User/Role analysis.
- Determining and report if any risks will be introduced by simulating the addition of transactions, Roles, or Profiles to a User ID.
- Knowledge on GRC Compliance User provisioning (CUP).
Confidential
Sr. Security Lead
Responsibilities:
- SAP User Access Provisioning for Employee self- service portal, Compensation module, Talent Management, Learning and Success factor portal on daily basis as part of production support.
- Evaluate business processes and design high-level strategy for SAP Security. Design Security Matrix that documents the security design and controls the user requests in the production environment.
- Find out missing Authorizations using SU53 report from the user and User Trace using ST01 analysis.
- Analyze and redesign existing roles accurately matching business needs from Compensation module, learning, talent management and BOBJ/HANA systems.
- Document changes and manage change requests, defects and enhancements on daily basis.
- Use GRC Access Control - Risk Analysis & Remediation Tool to identify the risks within users, roles and risks arising out of role assignment to users. (GRC Virsa Compliance Calibrator 5.2 and GRC Access Control - RAR)
- Troubleshoot issues with respect to missing authorizations both in SAP/HR/BI/BOBJ/Data services BODS/HANA Studio and success factors
- Troubleshooting BI Reporting Authorization issues & provides appropriate solutions.