3+ years of SAP Security and GRC consulting experience with multiple end-to-end implementations
Hands-on expertise with SAP ECC and/or S/4HANA Security
Strong experience configuring SAP GRC Access Control modules (Access Risk Analysis, Emergency Access Management, Access Request Management)
Excellent client-facing and communication skills with the ability to explain technical concepts to non-technical stakeholders
Proven track record of managing multiple client engagements and delivering quality results on time
Strong knowledge of Sarbanes-Oxley (SOX), Business Process controls, IT General Controls, and IT governance
Deep understanding and practical experience in Analysis and Design/Re-Design of Business process and IT General controls in SAP and Non-SAP landscapes
Strong analytical skills and a deep understanding of the overall context of underlying business processes and technologies
Understanding the purpose, procedures, and ways of work of internal/external audits
Ability to support audits and to provide the right information & data, and to mitigate and/or solve identified deficiencies and gaps
Ability to retrieve, analyze, and report/present data from various sources
Understanding of data structures, sources, flow, and integration across infrastructure platforms, functional domains, and application landscapes/service
Up-to-date understanding of Concepts & Integration of Cloud Services, and multi-cloud environments
Responsibilities
Lead SAP Security and GRC assessment, design, and implementation projects for clients across industries
Conduct client workshops and requirements gathering sessions to understand business and security needs
Design and configure SAP security roles, authorizations, and GRC Access Control components (Access Risk Analysis, Emergency Access Management, Access Request Management)
Develop and enforce Segregation of Duties (SoD) policies to mitigate risks and ensure compliance
Deliver SAP Security and GRC gap analysis, risk assessments, and remediation plans
Support clients during audits by preparing documentation, reports, and facilitating access reviews
Provide strategic advice on SAP security best practices, compliance frameworks (SOX, GDPR, HIPAA, etc.), and process improvements
Collaborate with cross-functional teams including Basis, functional consultants, and IT auditors to implement secure SAP landscapes
Conduct end-user training sessions and knowledge transfer workshops
Stay abreast of SAP security trends, new releases, and regulatory changes to provide proactive consulting