SAP GRC Security (Pune)

SAP GRC Security (Pune)

19 Aug
|
Orcapod Consulting Services
|
Pune

19 Aug

Orcapod Consulting Services

Pune

We are looking for an experienced SAP S/4HANA Security & GRC Consultant with 68 years of hands-on experience in SAP Security, SAP S/4HANA authorizations, and SAP GRC Access Control.

The consultant will be responsible for designing, implementing, enhancing, and supporting SAP security and access governance solutions across SAP S/4HANA and connected SAP environments. The role requires strong expertise in role design, authorization management, SAP GRC Access Control, SoD analysis, access-risk management, user provisioning, Fiori security, audit support, and compliance.

The successful candidate will work closely with business process owners, SAP functional teams, Basis, ABAP, Fiori, IAM, cybersecurity, audit, and compliance teams.

Key Responsibilities

- Participate in SAP S/4HANA Security and SAP GRC implementation, rollout, enhancement, upgrade, audit, and production-support projects.
- Gather security, access-control, audit, and compliance requirements from business and IT stakeholders.
- Design, build, test, maintain, remediate, redesign, consolidate, and clean up SAP security roles.
- Create and maintain single, composite, and derived roles, authorization objects, profiles, and organizational-level authorizations.
- Manage SAP S/4HANA GUI transaction security and backend authorizations.
- Configure and support SAP Fiori Launchpad, catalogs, spaces, pages, tiles, business roles, and authorizations.
- Support SAPUI5/OData services and backend authorization requirements.
- Support SAP HANA, SAP BTP, SAP BW/4HANA, SAP Ariba, SAP SuccessFactors, SAP Concur, or other SAP application security where applicable.
- Configure and support SAP GRC Access Control, including:
- Access Risk Analysis (ARA)
- Access Request Management (ARM)
- Business Role Management (BRM)
- Emergency Access Management (EAM) / Firefighter
- User Access Review (UAR)

- Perform Segregation of Duties (SoD) analysis, risk assessment,



remediation, and mitigation control assignment.
- Maintain GRC rulesets, functions, risks, mitigating controls, critical actions, and critical permissions.
- Manage user provisioning, deprovisioning, role assignments, access-request workflows, approvals, and periodic access reviews.
- Support audit activities and resolve access-control observations and compliance gaps.
- Perform security impact assessments for new SAP processes, custom transactions, Fiori applications, interfaces, and enhancements.
- Troubleshoot authorization issues using SU53, ST01, STAUTHTRACE, SUIM, PFCG, and other SAP security tools.
- Support SAP GRC integration with connected systems through connectors, repositories, and provisioning frameworks.
- Prepare role-design documents, security-design documents, role matrices, SoD matrices, test scripts, procedures, audit reports, and supporting evidence.
- Execute unit testing and support SIT, UAT, regression testing, defect resolution, cutover, go-live, hypercare, and production support.
- Collaborate with SAP Functional, Basis, ABAP, Fiori, IAM, Cybersecurity, and Integration teams.
- Follow SAP security best practices, internal controls, compliance requirements, and clean-core principles.

Required Skills

- 6–8 years of relevant SAP Security & GRC consulting experience.
- Robust hands-on experience in SAP S/4HANA Security and Authorization.
- Strong knowledge of:
- SAP Security Administration
- PFCG
- SU01
- SU10
- SU24
- SU53
- SUIM
- ST01
- STAUTHTRACE
- SM20





- Strong experience designing and maintaining:

- Single Roles
- Composite Roles
- Derived Roles
- Authorization Objects
- Profiles
- Organizational-Level Authorizations

- Strong hands-on knowledge of SAP GRC Access Control:

- ARA
- ARM
- BRM
- EAM / Firefighter

- Strong experience in SoD analysis, risk remediation, mitigation controls, and access governance.
- Good understanding of SAP Fiori Security, including:

- Fiori Launchpad
- Catalogs
- Groups / Spaces
- Pages
- Tiles
- Business Roles
- OData Services
- Backend Authorizations

- Experience in user administration, access provisioning, workflow approvals, and emergency access management.
- Experience with SAP implementation, rollout, migration, upgrade, enhancement, or production-support projects.
- Understanding of SAP Security integration with SAP GRC, SAP Basis, SAP Fiori, SAP HANA, and IAM platforms.
- Strong analytical, troubleshooting, documentation, communication, and stakeholder-management skills.
- Ability to work independently as well as collaboratively with business and technical teams.

Preferred Skills

- SAP certification in SAP Security, SAP GRC Access Control, SAP S/4HANA, or SAP Identity and Access Governance.
- Experience with SAP Cloud Identity Access Governance (IAG).
- Experience with SAP IAS and IPS.
- Exposure to SAP BTP Security, SAP HANA Security, SAP BW/4HANA Security, or SAP SuccessFactors Security.
- Knowledge of SAP Fiori Launchpad content management and SAP Gateway Security.
- Experience with IAM platforms such as SailPoint, Okta, Microsoft Entra ID, CyberArk, or similar tools.
- Knowledge of SOX, ISO 27001, GDPR, PCI-DSS, or other compliance frameworks.
- Experience with SAP S/4HANA Public Cloud or Private Cloud Security.
- Knowledge of SAP Activate methodology and Agile delivery practices.

📌 SAP GRC Security (Pune)
🏢 Orcapod Consulting Services
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: sap grc security (pune) / pune