Sap Abap Consultant Resume
3.00/5 (Submit Your Rating)
PROFESSIONAL SUMMARY
- Over 15+ years in SAP ECC 6.0 Security, BI Security, BPC Security and GRC AC 10.1 wif experience as Internal Auditor and also delivered SAP applications security trainings independently.
- Experience in evaluating and testing Process level manual, automated controls and General IT Controls.
- Experience in evaluating risks across SAP ERP platforms (SAP ECC, GRC, BIW)
- Strong Understanding of different Industry sectors
- Conduct SOX 404 assessments in accordance wif the PCAOB (Public Company Accounting Oversight Board) Auditing Standards.
- Conducted Walkthrough Process to understand discussions wif the Clients as part of assessing risks arising from their use of Technology and identify controls wifin their processes.
- Experience in evaluating and documenting the design and operating TEMPeffectiveness of technology controls (GITCs and ITACs) pertaining to Client’s Internal Controls over Financial Reporting.
- Knowledge in SOC1 and SOC2 (System and Organization Controls) SSAE18 assessments in accordance wif the attestation standards established by the AICPA (American Institute of Certified Public Accountants).
- Worked wif ITGC domains (Logical Access, Change Management, Computer Ops, etc.)
- Experience reviewing testing strategies and methodologies; evaluating the adequacy and TEMPeffectiveness of policies, procedures, processes, initiatives, products and internal controls; and identifying issues resulting from internal and/or external compliance examinations
- Experience in testing policy and procedures/control testing
- Experience in creating, executing, and documenting compliance testing
- Involved in Building of Risk Control Matrix (RCM) for SAP Controls Across Access Controls.
TECHNICAL SKILLS
- ECC 6.0
- GRC Access Control 10.1
- BI SECURITY
- Fiori SECURITY
- HANA DB SECURITY
- BPC SECURITY
- Independent SAP Security Trainer from December 2018 to till date
- Delivered SAP Security Training includes ITGC Audit, GRC, HANA DB Security, and Fiori Security to more TEMPthan 100s of students.
- ECC 6.0, GRC 10.1, Windows 2003 Server, Oracle 10g
PROFESSIONAL EXPERIENCE
Confidential
SAP ABAP Consultant
Responsibilities
- Conduct SOX 404 assessments in accordance wif the PCAOB (Public Company Accounting Oversight Board) Auditing Standards.
- Conducted Walkthrough Process to understand discussions wif the Clients as part of assessing risks arising from their use of Technology and identify controls wifin their processes.
- Experience in evaluating and documenting the design and operating TEMPeffectiveness of technology controls (GITCs and ITACs) pertaining to Client’s Internal Controls Over Financial Reporting.
- Worked on the following domains: Change management, Program development
- Logical access (i.e., user administration, access recertification)
- Computer operations (i.e., Batch processing, back - ups)
- Design TEMPeffectiveness/Operating TEMPeffectiveness
- Experience reviewing testing strategies and methodologies; evaluating the adequacy and TEMPeffectiveness of policies, procedures, processes and internal controls; and identifying issues resulting from internal and/or external compliance examinations Experience in testing policy and procedures/control testing
- Experience in creating, executing, and documenting compliance testing
- Involved in Building of Risk Control Matrix (RCM) for SAP Controls Across Access Controls.
- Carried Full life cycle implementation ofGRC 10.1 Access Controlmodule.
- Configured Security administration activities for GRC 10.1, uploaded customizedGRC rule-set, configuredARM (ARA, EAM, BRM, and ARM), and performedRole syncfor satellite.
- EAM: Configured Centralized EAM, Assigned the Owners to Firefighter IDs, Firefighter IDs & Controllers to Firefighters, Create the Reason Codes for Firefighter ID access as per the department, Generating Consolidating Log Reports.
- ARA: Updating of Ruleset, Updating of Mitigation Controls, and Monitoring Invalid Mitigation Controls, Ran risk analysis user level and role level, Configured UAR Review process.
- BRM: configured BRM and imported existing backend systems roles into BRM for access request.
- ARM: Configured MSMP Workflows for Access request, Creation of BRF+ Rules against custom initiators as per the client requirement, Updating Decision Tables, Troubleshooting Access Request Issues, Configuration of Escape and Escalation Conditions, Building of Routing Rules, Configuration of Simplified Access Request, configured PSS and EUL, Maintained the User Provisioning settings & EUP settings
- User Maintenance/User creation, deletion, modification on PRD, QA & DEV Servers.
- Created and modified Single roles, Composite roles and Derived roles using profile generator (PFCG)
- Troubleshoot security/authorization related problems using user information system (SUIM) and Display Authorization Data (SU53).
- Execute security reports for critical transactions and objects and monitor the user logs.
- Troubleshoot authorization problems based on the user request and provided solutions.
- Comprehensive use of PFCG, SU01, SU10 and all SAP security related tables.
- Created Authorizations and Profiles based on the Job Profiles.
- Making field value changes to the template role and deriving to the child roles.
- Checking the locked users and as per rules and releasing them.
- Generated RSUSR* reports and sent them to the client.
Confidential
Web Administrator
Responsibilities:
- Developed Smart forms for Quotation & Invoices, displayed Billing document details based on the customer details and displayed company logo by using the tables VBRK, VBRP
- Generated ALV Grid Interactive reports
- Implemented Screen Exist to add custom fields in Sales order additional data tab
- Responsible for post-live support, modifications and training of newly launched application.
- Responsible for UI design, Code and Content maintenance of sites for Internal Projects
