SAP S/4HANA Security Consultant (Security Weaver /Pathlock) Engagement Details Role: SAP S/4HANA Security Consultant(Security Weaver / Pathlock) Work Timings: 4:30 PM to 1:30 AMProject Background We are seeking a senior SAP S/4HANA SecurityConsultant to work on the security workstream for our brownfieldmigration. This person will own security impact analysis, roleredesign, Fiori and HANA security implementation, and SoD/riskmanagement using Security Weaver (Pathlock) as the primarygovernance tool. Experience with SAP GRC Access Control is alsoacceptable where Security Weaver exposure is limited. CoreRequirements (Must) Minimum 2–3 full lifecycle ECC S/4HANAbrownfield migration projects (hands-on conversion experience).Direct, hands-on execution of SU25 (Phases 1–4) and role retrofitactivities during conversion. Fiori security implementationexperience: catalogs, groups, business roles, OData activation,SICF. Enterprise role redesign and remediation at scale (analysisand remediation of 1,000+ roles preferred). SAP Readiness Check andSimplification Item Catalog impact analysis experience. Hands-onexperience with Security Weaver (Pathlock) OR SAP GRC AccessControl for SoD analysis, simulation, remediation, and reporting.Robust understanding of SoD rule design and risk mitigationstrategy during ECC S/4 transitions.
Excellent communicationskills. Key Responsibilities Lead SAP security strategy andexecution for ECC S/4HANA transformation (brownfield conversion).Perform role impact analysis, cleanup, and remediation; executeSU25 conversion steps and validate role behavior in S/4. Design andimplement a Fiori-first security model (catalogs, groups, businessroles) and secure OData/SICF services. Configure and manageSecurity Weaver (Pathlock) controls; alternatively, align SAP GRCrule sets where applicable. Migrate SoD rule sets and controlframeworks from ECC to S/4; define interim compensating controls.Conduct workshops with functional teams (FI/CO/MM/SD/EWM), Basis,Development, and Audit to validate security models. Supportcutover, security testing, and post-go-live authorizationvalidation and stabilization. Preferred Qualifications 8+ years ofSAP Security experience (ECC and S/4HANA). Proven track record in2+ ECC S/4HANA brownfield conversions. Experience with SecurityWeaver (Pathlock) strongly preferred. SAP GRC Access Controlexperience in complex enterprise environments. Experience workingin SOX/ITGC-regulated environments and preparing audit evidence.Excellent communication skills and ability to lead cross-functionalworkshops.