Sap Security Consultant Resume Profile
Overview
Solution-focused, versatile andteam oriented SAP expert with over 9 years of solid expertise in all facets of job scheduling,security design, implementation and support which include 4 full life cycle implementations. Offer exemplary Leadership, technical skills and business acumen, backed by a proven ability to bridge the gap between business requirements and technical processes. Well-liked and respected by peers and supervisors. Organized multi-tasker and creative problem solver with outstanding communication, negotiation, interpersonal and leadership skills. Adeptly coordinate group efforts to ensure on time and on budget completion of high-profile projects.
SKILLS AND EXPERTISE
SAP Security Expertise:
- ECC All Modules , BI/BOBJ Analysis Auth , CRM, HR Structural Auth , Portal, SRM, SCM APO , Solution Manager, MDM, BPC, PI, BODS
- General Computer Controls Audits, CUA, LDAP/AD integration SNC implementation SSO
SAP Compliance/SOD Expertise:
- GRC AC 5.3 Suite, GRC-10 upgrades and implementation , ApprovaBizRights SOD Cleanups
- Identity Management IDM SUN IDM, SAP NetWeaver IDM
Project Planning, Management Other Expertise:
Professional Experience
SAP Security Lead Consultant
Confidential
Responsibilities
- Support Client with last minute Change requests across their ECC, APO, BI, SRM, TM, PI, Solution Manager, MDM Portal systems to support go live.
- Upgrade from GRC 5.3 to 10.0 Identifying risks and provide client with a project plan
- Implement Business Role Management in GRC 10.0 to support extension of security solution to new business units new org values
- Upgrade Solution Manager from 7.0 to 7.1
- Currently working on SRM upgrade Project Planning phase
- Leading a design documentation effort initiated out of portal related issues across MDM, SRM, TM systems
- Implemented EWA SOS functionality in Solution Manager to help client with security system validation process.
SAP Security Consultant Accenture
Confidential
Responsibilities
- Integrated SAP IDM with SAP GRC 5.3 with automatic LDAP sync
- Integrated LDAP with SAP MDM Data Manager and Portal systems.
- Designed, built and delivered Security for Solution manager system Document Management, Charm
- Designed, Built and successfully executed an end to end acquisition project for Unilever- Integrated Alberto Culver legacy SAP systems ECC, APO, PI, MDM and BW in to Unilever processes.
- Created custom roles on PI box and incorporated them on JAVA engine through VB front end to facilitate assignment of custom roles to users.
- Elaborate extensive documentation and trainings to support the acquisition project
- Designed and built MDM Portal Security Strategy Design involving identification, build, deploy governance
- Extensively involved in implementing business process controls, custom SOD's/risks.
- Lead the role mapping effort for over 6000 users during go-live.
- Extensively used CUA to support user administration in a complex multiple track environment
- Successfully upgraded BW system from BW 3.5 to BI 7.0 - Redesigning the Security roles to embed the new concept of Info-object restrictions using RSECADMIN tool
- Security Cutover and testing lead for multiple global releases.
- Co-ordinated Security Role testing with onsite and offshore teams and resolved defects
- Initiated Lunch and Learn sessions with functional teams to help understand security strategies and design.
- Presented MDM and Solution Manager Security training sessions to Accenture Global Security practice.
- Day to day support on ECC, BW, APO, BI, PI, BODS, MDM, Portal on GRC systems
- Assisted Accenture in RFP's for estimating time and resources for CRM, MDM Solman projects
- Assisted Accenture sales team in building proposals for CRM projects
SAP Security Consultant
Confidential
Responsibilities:
Security
- Worked on IBM's internal Bolt-on tool for User administration, running Health checks HC , Quarterly Employment re-verification QEV , Continuous employment need CBN and user administration audit.
- Support internal and external Pearson, Kubota, Honeywell, Phillip Morris USA IBM clients in user and role administration in ECC, BI, CRM and JAVA systems
- Extensively worked on Maintaining Partner I.D's in Org Structure
- Architected and Designed the Composite roles/Job Fuctions as per the BR
- Involved in CRM 6.0 to 7.0 upgrade - SU25
- Involved in the Web UI Business role SPRO Configuration
- Supported implementation of Access Control, Superuser Privilege Management, Risk Analysis and Remediation.
- Involved in post implementation activities- GRC upgrade to 5.3, Disaster Recovery
- Create Rules, Rulebooks, and Templates for BizRights for both SOX and Access Lists.
- Generate Access Lists in Bizrights, and perform access remediation on user accounts based on its reports.
- Involved in security upgrade of BW 3.5 to BI 7
- Supporting multiple ongoing audits for KPMG, PWC and perform quarterly health checks.
- Modify/ correct external client's roles per their security policies.
- Creation and maintenance of user groups across the entire landscape.
- OSS Management for project requirements including OSS id administration, issuing developer keys, object keys
- Setup of new Java systems.
- Work with management for ongoing sizing of internal and external client support.
- IBM orientation and knowledge transfer to new hires
- Basis
- Daily System Monitoring
- Set up and maintain STMS.
- RFC administration Setup and Maintain RFC destinations.
- Client administration - Client Creation, export, Remote local Client Copy, Client Deletion. Securing Clients and Assigning Logical System to client.
- Applying OSS notes
ERP Contractor
Confidential
Responsibilities
SAP Security
ECC Finance/ BI / PI / NetWeaver / Redwood Security Implementation
- Configured End to End Security processes and roles for ECC 6.0
- Configured Security roles for NetWeaver components - BI-7.0, PI, CUA, Enterprise Portal, ABAP, and Functional Cross Applications Modules FI, CO, MM, PS, SD
- Developed BI 7.0 roles with Analysis Authorization
- Worked closely with the business / functional teams to gather security requirements
- Developed and implemented security strategy for SAP Redwood Job scheduling tool
- Handled Security defects as part of Unit and Integration test cycles
- Performed Cutover tasks for Go-live
HCM Security Implementation
- Part of the team to design HCM Security implementation delivering position based security and structural authorizations
- Part of the team in designing ESS / MSS and E-Recruiting Security roles
GRC Security Implementation
- Extensive usage of SAP GRC Suite 5.2 Compliance Calibrator analyzing report for SOD remediation including Role expert, Access Enforcer and Firefighter
- Worked closely with the Controls Implementation team and functional team to eliminate SOX issues and / or to develop mitigation plans.
SAP Redwood
- Successfully Implemented Redwood within BNSF's SAP architecture to support scheduling of standard jobs and custom interfaces
- Integrated Redwood with non-SAP tools such as Informatica and Mainframe.
- Scheduled and monitor ECC and BI jobs using Redwood, SAP and Informatica
- Analysis on Informatica workflows
- Troubleshoot Informatica workflows and connectivity errors.
- Built connection between Redwood and Command Post BNSF alerting system
- Assign authorizations and roles for users in Redwood UME security
- Setup Redwood user and corresponding batch users in multiple clients and systems in SAP
- Designed End to End Security processes and roles for users in Redwood.
- Coordinated extensively with Functional and technical teams to gather specifications for setting up and running jobs accordinglyprior and post go live in all environments
- Lead the team in a successful upgrade involving requirement gathering, Impact analysis and testing
- Round the clock support and quick turnaround time for troubleshooting.
- Documented whole of BNSF's SAP Scheduling landscape, including step by step procedures, custom setups and troubleshooting tips.
- Onsite coordinator for handling offshore team
SAP Security Analyst
Confidential
- Designed implemented Master-derived role approach as security redesign
- Facilitated numerous design discussions and consolidated a re-design implementation plan
- Support for new user creations, role requests, custom auth objects, table restrictions, etc
- Worked with business, functional leads and Basis to identify critical immediate roles
- Implemented a web based solution similar to SOX Express for change requests logging
- Participated in Internal and External security audits
- Worked with business to discuss SOD issues and proposed resolutions or mitigations.
- Developed administrative and monitoring process for BW authorizations
- Implemented VIRSA CC 4.0 to clean up all existing SOD issues
- Modified Virsa delivered Compliance Calibrator rule set to suit the business roles
- Created a rule set change request implementation process to track all the changes to rule sets
SAP Security Consultant
Confidential
- Involved in Design, build and deployment of Security solution for Global SAP rollout on ECC 6.0, BW 3.5, CRM 5.0, Virsa 4.0 and Audit assistance
- Designed implemented Master-derived role approach as security redesign
- Facilitated numerous design discussions and consolidated design implementation plan
- Support for new user creations, role requests, custom auth objects, table restrictions, etc
- Worked with business, functional leads and Basis to identify critical immediate roles
- Participated in Internal and External security audits
- Worked with business to discuss SOD issues and implement controls to mitigate violations.
- Implemented VIRSA CC 4.0 to clean up all existing SOD issues
- Modified Virsa delivered Compliance Calibrator rule set to suit the business roles
- Handled various testing phases, including Unit Testing of roles, Comprehensive Security String testing CSST- Positive and Negative testing of roles , Business Application String Testing BAST
- Helped in setting up and testing Single-Sign On SSO for all project and production systems, and securing system loopholes for unauthorized access
- Developed SCM 5.0 roles for Supply Network Planning SNP , Demand Planning DP and Production Planning/ Detailed Scheduling PP/DS modules. Restrictions based on planning books
