Sap Security, Grc And Basis Administrator Resume
5.00/5 (Submit Your Rating)
PROFESSIONAL SUMMARY:
- 8 years of experience as SAP Security, GRC and Basis Administrator.
- Worked on Green and Brown field implementation projects starting from architecture, design, Go - live, support and maintenance
- Experience on various SAP products - SAP ECC, GRC, APO, EHS, PO, CRM, FSCM, MDM, Redwood, SolMan, Sabrix, BI and Portal systems
- Strong expertise in SAP SECURITY and GRC Configuration and Administration along with SOX compliance expertise.
- Hands-on experience in GRC upgrade from 5.3 to 10.0
- Implemented various modules of GRC like Access Risk Analysis (ARA), Emergency Access Management (EAM), Business Role Management (BRM) and Access Request Management (ARM)
- Performed system Installations using SWPM, configuration and upgrades using SUM
- Applying Patches (SPAM), Add-ons (SAINT), SAP Notes (SNOTE), SSO Configuration, Language Installs, SAP Host Agent Install & Upgrade, Job scheduling, Parameter changes, Operation mode settings, etc.
- Worked on client administration tasks like client copy (Local, Remote & Import/Export), new Client creation, and client deletion
- Managed multiple projects as a team lead and delivered the projects on-time and provided production support
- Equipped with a wide knowledge in business requirements analysis, planning and other areas of requirements.
- Experience in documentation, making presentations and creating materials.
- Resourceful with good business communication / team skills and produce professional results while adhering to rigid guidelines.
- Experience of managing and reviewing various activities of the team.
- Excellent communication skills, interpersonal skills, adaptive and self-learner.
- Knowledge on day-to-day production issues and client interaction.
- Received SPOT at Infosys
- Worked at client location (Sao Paulo, Brazil) for a duration of 3 months
- Good working knowledge in ITIL Process, HPSM and SNOW Ticket resolving methodology, Problem and Change Management
- Worked on PM (Problem Management) tickets for recurring production issues
- Co-ordinated with multiple vendors supporting the client
- Took up the lead activities such as incident review and managing the team
- Worked for mid-size projects and took care of cutovers, hyper care issues, project estimations and billing
- Prepare performance reports for SAP systems and incident analysis report
PROFESSIONAL EXPERIENCE:
Confidential
SAP Security, GRC and Basis AdministratorResponsibilities:
- Worked on full life cycle implementation of Role Setup in an ECC system from design phase to support phase.
- SAP Security Role Redesign for an EHS system: created roles for various specification types, regional and functional roles
- Identified areas needing immediate attention in the SAP Security and implemented process improvements for the same.
- GRC 10.0 migration from GRC 5.3 for implemented Access Control modules such as Access Risk Analysis (ARA), Emergency Access Management (EAM), Business Role Management (BRM) and Access Request Management (ARM)
- Performed SPRO configurations and NWBC configurations as part of GRC Upgrade.
- Identified improvements to address the audit deficiencies and audit compliance by comprehensively analyzing the current SAP Security setup and provided recommendations for the same.
- Educated the Business users on the importance of testing that was re-designed for security roles to comply with Audit requirements.
- Gathered business requirements from each org unit and provided a customized Rule Set which included custom Risks/Functions to suit the specific business needs.
- Extensively involved in the Configuration of Automated User Provisioning workflows through Business Rule Framework (BRF+)
- Configured various rule kinds like Initiator Rule, Agent Rule, Routing Rule and Notification Variable Rule.
- Identified & uploaded role owners, approvers, mitigating controls & Fire Fighter ID owners.
- Worked on the MSMP Workflow Configuration for addressing various user request types and mitigation control setup and assignment.
- Successfully integrated LDAP active directory with GRC AC system.
- Established the automated SAP GRC 10.1 User Access review process.
- Created business roles as per the requirement
- Extensively engaged in troubleshooting/supporting of security role issues during the time of Hyper Care Period.
- Worked closely with the Internal Audit team at the time of assigning mitigating controls to the roles.
- Imparted s to Business Role Owners on the UAR approval process and its importance.
- OSS Management for project requirements including OSS id administration, issuing developer keys, object keys
- Implemented security on Java landscape for PO system and expertise in using UME groups and roles.
- Worked with client compliance team for mitigation of risks during various role creations and role assignments.
- Performed SOX Audit for ECC systems and prepared reports
- Performed internal audit and also external KPMG audit.
- Worked as part of automation team for automating GRC requests, SNOW incidents by preparing documents with workflow
- Direct interaction with client and external auditors as part of the audit report review and analysis
- Installed and configured SolMan 7.2, Netweaver ABAP/JAVA 7.5, PO 7.5 using SWPM and updated to the latest patched using SUM
- Performed EHP6 to EHP7, Netweaver 7.3 to 7.5 upgrades using SUM
- Configure SOLMAN SETUP, managed system configuration, EWA reports
- Responsible for configuring all the systems through SMSY and LMDB into Solution Manager
- Applied support packs (SUM), add-ons/plug-ins (SAINT) and Kernel Upgrades, Performance Tuning, Daily System Administration, Backup and Space management
- Implemented HCI (Hana Cloud Integration) setup, HCI Migration to CBS
- HCI Agent Upgrade
- Worked on Redwood tool - Setup and maintenance of jobs through Redwood
- Adobe Document Service (ADS) Set-Up
- Configure EWA reports in SolMan, analyze them and take actions accordingly
- Scheduled cron jobs for purging of backups
- Worked on MDM server and various repositories on MDM server - post activities related to MDM restart, load and unload, user management, server log review
- Used BRTOOLS tool for Table space management
- Start/Stop ABAP and JAVA systems
- Doing performance analysis in server nodes, threads and taking necessary actions along with Vendor for P1 issues
- Taking XPI logs, thread dumps, default traces for PO related issues
- Creation of SWCV, Product, Business System, Technical System and pointing them with Technical System in portal SLD, installations
- Archival activity to improve the performance of file systems and tables
- Batch Job Administration and performance analysis of jobs using trace
- SAP Note Implementation
- Troubleshoot issues related to idocs and XML messages
- Performance analysis and providing RCA for P1 issues
- Installed SAP HANA 2.0 SP04 on sandbox server
- Installed and configured S/4 Hana 1809 using SWPM and updated to SP02 using SUM
- Installed HANA client, studio and updated them to the latest revisions using hdblcm manager
- Adding System to HANA Studio
- Monitored Disk and Memory Usage using HANA studio
- Performance Monitoring
- Configured Alerts
- Fixing a Full Disk Event
- Applied License Keys
- Created test users and custom roles and assigned those custom roles to users
- Monitored system health using Hana studio
- Performed HANA backups using HANA studio
- Restored HANA DB from backup using HANA studio
Confidential
SAP Security, GRC and Basis AdministratorResponsibilities:
- Experience in working with transports (STMS), perform QA check and import of transports
- Worked on release management, change management processes.
- Set-up of automated jobs for import of transports
- Single, composite and derived role creation by interacting with end users and functional teams, gathering the requirements
- Role modification by addition of tcodes, maintain authorization objects and generation of profile
- Worked on BI security - Used the Analysis tab of RSECADMIN extensively to simulate users running queries in BEX and used the Error logs to determine missing authorizations.
- Used RSECADMIN to create authorization objects for Info Objects and manually assigned authorizations to users in RSECADMIN
- Worked on CUA setup by creating model view, BAPI in BD64 and required configurations in SCUA and SCUM transactions.
- User and role administration
- Security Note Implementation
- Monthly LM activity of locking the users and deactivation of the users according to the client policy
- Support for mid-size projects for user locking, FFID and role assignment
- Analyze and manage audit logs using SM19 and SM20
- Worked on internal audit
- Performed external annual audit
- FFID maintenance, assignment
- Implementation, maintenance and upgrade of the Code Profiler Tool, which is used for transport quality check
- Implemented and worked on System Profiler tool by a 3rd party, Virtual Forge, which can be used for various system security health checks.
- Performed OS/DB Migration from Windows Server 2008 to Windows Server 2012 and Oracle 11g to SQL Server 2012 using export and import procedure
- Worked on detailed migration plan for OS migration (Sun Solaris to RHEL 7)
- Maintain operation modes
- Regular activities involving SAP system monitoring and taking action on issues related to system performance such as dumps, database and system logs, alerts, locks
- OSS Administration, connection maintenance, providing object and developer keys
- TMS configuration and working on qa and transport movements
- System restore for connectivity to BI system
- Post activities of CBS Migration
- Message and channel monitoring in PO
- Troubleshoot PO issues related to messages, channels, system slowness
- System Refresh
- Configured logon load balancing.
- Post fix server implementation
- Worked on sabrix system
- Maintenance and troubleshoot issues related to content server (archival server)
- Creating and maintaining RFC destinations, reginfo changes, port and partner profile setup
- Trust setup between FSCM and ECC systems
- Maintain profile parameters in RZ10 and RZ11
- Client Administration
- SSO configuration for ABAP and Portal systems, system object creation, installation
- Resolve printer related issues and printer set-up
Confidential
SAP Security, GRC and Basis AdministratorResponsibilities:
- Single and mass user creation and user maintenance in ECC and portal systems
- Performed mass generation of profiles for roles using SUPC
- User master data reconciliation using PFUD and maintenance using the program PFCG TIME DEPENDENCY
- SU24 configuration in ECC systems for maintaining check indicators for custom t-codes and discussion with ABAP team
- Troubleshoot security/authorization related problems by analyzing SU53 dumps and performing user trace analysis using ST01.
- Worked on MDM repositories and created and maintained users.
- Worked on role based FFID assignments
- Monitored 4-eye and 6-eye compliance process for FFID usage
- Used ECATT scripts for mass user creation and role assignment
- Worked on GRC 5.3 and CUP tool for access requests
- Worked on VIRSA tool using /N/VIRSA/VFAT for FFID administration
- Manage audit, logon and authorization profile parameters using RZ11