Having 6+ years of Experience as SAP Security and GRC consultant working on SAP ECC, GRC, Fiori Security, SuccessFactors, HANA DB Security, SAP IBP, ARIBA Security, SAP IAG, BI Security, Portal Security, Audit controls and SOD.
Experienced in the areas of User administration, Role management, troubleshooting security issues, testing and reports generation in Security environment.
Effective and proven communication skills in business meetings and delivering high level of visibility to oneself and the team by identifying the issues and providing effective solutions in SAP security area.
Extensive experience in resolving tickets/ incidents and troubleshooting security authorization problems adhering to Service Level Agreements(SLA).
Overview
8
8
years of professional experience
Work History
Associate of projects
Cognizant Technology Solutions India Pvt. Ltd.
01.2023 - Current
SAP ECC:
Experience in user administration - includes user creation, deletion, changing user access for different systems and environment, mass user administration.
Experience in role changes, creation, modification of single, composite, master-derived, task enabler roles.
role design by removing unwanted and sensitive/ high risks as per the SOD risk analysis report
Transport of roles across clients and environments in the landscape.
troubleshooting security and authorization related issues using SU53, ST01 and STAUTHTRACE T codes.
Extensive use of SUIM t code in multiple areas to review and consolidate and generate the security reports and troubleshoot user access issues.
Use of AGR*, USR*, GRAC* tables through SE16 T code.
Experience in maintaining critical authorization objects like S_TCODE, S_USER_GRP, S_USER_AUT, S_USER_PRO, S-USER_AGR, S_TABU_DIS, S_TABU_NAM, S_PROGRAM, S_DEVELOP, S_RS_COMP&COMP1.
Background job scheduling and monitoring via SM36, SM37.
RFC connection maintenance via SM59.
Configuring SU24 for custom transactions as per the business requirement.
For manual transport SE10, SE09 and tracking the TRs via Tables like E070 and E071.
Experience in working with CHARM tool for transporting the changes.
GRC 10.1 and 12.0
Access Request Management (ARM): Analyzing the instant status and audit logs of the access requests and finding reason for MSMP workflow/line-item errors.
Submitting access requests for multiple users and copying of access requests.
Delegation of role owners and route/forward of access requests, User access review requests and SOD requests base don business requirements.
Emergency Access Maintenance (EAM): Creating / designing FireFighter ids and update the Controller and owner dashboards. Providing Fire Fighter access to users based on business requirements.
Generating reports for emergency access(FF) usage, role/user/profile system usage etc.
Responsible for internal audit controls FF-log reports.
Access Risk review (ARA) report generations as a part of SOD.
SAP IBP
User Administration: User Creation and access provisioning, troubleshooting user access issues, Activation/Deactivation of the users, sending account activation emails using IAS tool.
Role Administration: Role creation and maintenance of permission filters, catalog IDs, key figures and planning areas in roles. Restricting write/ Read accesses base don the requirements. Creation of Visibility filters.
SAP HANA DB Security:
User Administration: User Creation and Access provisioning, assigning the missing roles, activating/ deactivating the users, password reset.
Maintenance of auditng and password policies.
Backup and Restore Activity: Granted roles, Granted Privileges and Number of Users will be backed up before the refresh and will be restored after the refresh.
SAP ARIBA:
User Adiministration: User Creation and Access Provisioning, troubleshooting user access issues, Activation/Deactivation of the users.
Audit Activity:
Worked for UAR - User Review activity and SOD - segregation of Duties and cleaned up the unused authorizations.
Weekly audit on expired S user IDs and removing them after validation with GRC production system.
Working on weekly activities - IBP and SCI user termination internal and external user termination.
Tools Used:
Good hands-on experience with SERVICE NOW, BMC Remedy Ticketing Tools.
Have Experience working with CHARM tool for Change management and Transport Request TR movement.
Sail point 3rd party tool for accessing the request.
SAP Associate Consultant
Capgemini Service Pvt Ltd
08.2017 - 02.2022
SAP ECC:
Experience in user administration - includes user creation, deletion, changing user access for different systems and environment, mass user administration.
Experience in role changes, creation, modification of single, composite, master-derived, task enabler roles.
role design by removing unwanted and sensitive/ high risks as per the SOD risk analysis report
Transport of roles across clients and environments in the landscape.
troubleshooting security and authorization related issues using SU53, ST01 and STAUTHTRACE T codes.
Extensive use of SUIM t code in multiple areas to review and consolidate and generate the security reports and troubleshoot user access issues.
Use of AGR*, USR*, GRAC* tables through SE16 T code.
Experience in maintaining critical authorization objects like S_TCODE, S_USER_GRP, S_USER_AUT, S_USER_PRO, S-USER_AGR, S_TABU_DIS, S_TABU_NAM, S_PROGRAM, S_DEVELOP, S_RS_COMP&COMP1.
Background job scheduling and monitoring via SM36, SM37.
RFC connection maintenance via SM59.
Configuring SU24 for custom transactions as per the business requirement.
For manual transport SE10, SE09 and tracking the TRs via Tables like E070 and E071.
Experience in working with CHARM tool for transporting the changes.
GRC 10.1 and 12.0
Access Request Management (ARM): Analyzing the instant status and audit logs of the access requests and finding reason for MSMP workflow/line-item errors.
Submitting access requests for multiple users and copying of access requests.
Delegation of role owners and route/forward of access requests, User access review requests and SOD requests base don business requirements.
Emergency Access Maintenance (EAM): Creating / designing FireFighter ids and update the Controller and owner dashboards. Providing Fire Fighter access to users based on business requirements.
Generating reports for emergency access(FF) usage, role/user/profile system usage etc.
Responsible for internal audit controls FF-log reports.
Access Risk review (ARA) report generations as a part of SOD.
SAP MARKETPALCE
Maintaining OSS connections, access keys, S user ID creations, working with SAP team for any unresolved issues in the landscape.
SAP FIORI
Modification of Fiori roles and troubleshooting user access issues.
Having knowledge on groups, tiles and spaces.
Education
Bachelor’s of Technology - Electronic and communication Engineering
KL University
Vaddeswaram
01.2016
Skills
ERP Applications: SAP R/3 (ECC 60 EHP 8),
SAP S/4 hana
ARIBA
IBP
SAILPOINT
SNOW
REMEDY
CHARM
GRC
FUNCTIONAL SKILLS
SAP Security: User Administration, Role Administration, SU24 Changes, Authorization Trace Analysis, NewRole Setup/Design, Org Structure extension roll outs, and Risk remediation through role changes, Critical Authorizations and Permissions check.
Timeline
Associate of projects
Cognizant Technology Solutions India Pvt. Ltd.
01.2023 - Current
SAP Associate Consultant
Capgemini Service Pvt Ltd
08.2017 - 02.2022
Bachelor’s of Technology - Electronic and communication Engineering
Senior Process Executive - Voice at Cognizant Technology Solutions India Pvt Ltd.Senior Process Executive - Voice at Cognizant Technology Solutions India Pvt Ltd.