Sap Grc Security Consultant Resume
3.00/5 (Submit Your Rating)
BostoN
SUMMARY
- SAP Technical Consutalnt over 4 years in SAP Security and GRC spanning across implementation and support projects. me have gained substancial experience in business process mapping, configuration, enhancements and post implementation support in SAP.
- Overall 6+ years of professional experience including 2+ years of work experience in embedded systems.
- Certified in SAP GRC 12.0 Access control
- Strong organizational, time management and communication skills.
- Multitasking skills, details oriented and ability to work independently.
- Skilled at learning new concepts quickly.
- Highly organized and dedicated with a positive attitude.
- Experience in various systems including ECC 6.0 (SD, MM, WM, etc), GRC 10.1 with areas of expertise include SOD.
- Strong knowledge on FIORI / UI5 Security - Gateway role design to include Catalogs, Groups and ODATA.
- Experience in various aspects of SAP Security and Authorizations including design of Authorization Profiles/Roles using Profile Generator (PFCG), Testing, User Administration and Transport management.
- Troubleshooting Authorization issues and analysis.
- Business Analysisto translate Functional requirements into Technical design of Security roles.
- Experience in Audit support.
- Generate reports and provide information as per the business need.
- Expertise with post installation steps and management of SAP GRC 10.X Access Control components.
- Activation of business configuration sets, Configuration of Connector groups, Synchronization jobs.
- Knowledge on EAM, ARA, BRM, ARM modules of GRC Access control
PROFESSIONAL EXPERIENCE
Confidential, Boston
SAP GRC Security consultant
Responsibilities:
- User administration (creating, maintaining, deleting user accounts and assigning roles).
- Comprehensive use of Profile Generator to create and modify roles as part of Role Administration
- Move the Role and transaction changes to other systems using SolMan.
- Analyze and troubleshoot security issues using SU53, ST01 and SUIM
- As a part of audit support,developed SUIM queries, and controls to check for critical authorisations.
- Generate audit information system logs using SM19,SM20,and SM21. knowledge of SOX, Audit issues and Segregation of Duties (SoD) issues
- Worked on ticketing tool ServiceNow for incident management and HPALM for defect management.
- Worked on post Implementation support of GRC Access Control Suite 10.0.
- Created connectors,maintain configuration settings and integration scenario settings,etc in GRC system to integrate with backend plugin ECC system
- As a part of EAM, created Fire fighter ID’s,Owners,and controllers, extract various fire fighter logs.
- Created Reason codes for different backend systems as a part of firefighting process.
- Under ARA, performed User & Role analysis to identify existing SoD violations.
- Using ARA produced Analytical Reports on User, User Groups, Roles and Profiles.
- Performed remediation and mitigation against various risks associated with roles and users.
- Reviewed and remediated any security risks with roles and assignment of roles, segregation of duties, any potential Audit concerns.
- Building demos of GRC 10.1 for demoing it to the customers. Performed user administration activities such as creating user ids, copying user ids, assigning roles, assigning groups etc at portal level. Created groups and assigned roles to groups at portal level
Confidential, Detroit
SAP GRC Security consultant
Responsibilities:
- User administration and role administration as a part of project and regular run and maintenance.
- Troubleshoot security/authorization related problems using user information system (SUIM) and SU53
- Mass user maintenance and user group creation.
- Worked with Audit team for SAP Security Audit and generated Audit Information Systems (AIS) logs
- Worked with security related tables such as AGR* and usr* etc.
- Updating transactions via SU24 (managing authorization objects)
- Worked on defect management tool HPALM.
- Creation and Maintenance of Functions, Risks, Owners, Risk Analysis, Mitigation controls as a part of risk analysis using GRC.
- Provide super user privileges to the firefighter users
- Firefighter/ Owner/ Controller management in Emergency access management.
- Generate Reports and Analytics in GRC for User, Role, Risk statistics and firefighter logs.
- Risk analysis at user and role level.
- SAP role remediation as per the audit compliance and business requirements.
- Role imports manually into GRC
- Mapping critical levels to roles
Confidential
SAP Security Consultant
Responsibilities:
- Performed SAP Role Design and SAP Role Maintenance following the customer’s change management process, including documentation
- User administration, resolving authorization issues,mass user maintenance.
- Providing user,role, change docs,etc information using SUIM to the business team as per their requirement.
- Prepared and presented proposals related projects dat will improve process, functionality and solutions.
- Analyzed processes/End user needs and deliver quality solutions dat meet both business and functional requirements
