09/01/2025 updated


100 % available
SAP Security, Authorizations & GRC Consultant
Krugersdorp, South Africa
Only remote
Honors Degree CybersecurityUser Experience (UX)Acceptance TestingControles de AccesoCertified in the Governance of Enterprise ITData ManagementGovernance Risk Management and ComplianceSAP ERPSAP ApplicationsSAP GRCSAP HANASAP SecuritySAP FioriCustomer Identity Access ManagementUser Administration
SAP Security aspects, SAP, SAP Fiori, SAP S, 4Hana, SAP GRC, Process Control, SAP Charm (Solman), Access Control, SAP Hana, Database, Access, SAP Security, SAP ERP, Hana, UAT, SolMan, Hana Studio, Tiles, Apps, Enterprise Search, OData, User Experience, frontend, backend, Master Data Management, User Administration, ERM
Experience
Professional experience10+ years
Freelancer since2023
Languages
EnglishFluent
Project history
* User administration involving creation/deletion/locking/modifying usersusing SU01, SU10
* Role Build, Role changes, new roles creation - single and Composite using PFCG.
* User master Record creation/ modification initial password reset and invalidity date
extensions (SU01).
* Worked with User Information System, creating and changing users and assigning users to roles.
* Generated and maintained authorizations and authorization profiles based on existing
roles-PFCG. Role Creation, modifying using PFCG including complex design.
* Copying and Modifying SAP-Provided User Role Templates and created a set of custom user role
templates.
* Experience with SAP GRC - RAR, CUP, ERM, EAM and SAP CUA (Central User Administration)
integration with SAP GRC.
* Experience in creating and assigning FF ID's and extracting Fire Fighter logs
* Working on Fire Fighter (FF) for Super User privileges like maintaining Owners, Controllers
and Fire Fighter Access to user.
* Setting up role creation methodology, condition group and role approvers using ERM
* Segregation of Duties (SoD) and authorization stacking analysis
* Monitoring of security roles for identifying critical transaction/objects and resolving SOD
conflicts
* Analyzing SOD reports to analyze, recommend and implement solutions/redesign to resolve SOD
conflicts
* Role Build, Role changes, new roles creation - single and Composite using PFCG.
* User master Record creation/ modification initial password reset and invalidity date
extensions (SU01).
* Worked with User Information System, creating and changing users and assigning users to roles.
* Generated and maintained authorizations and authorization profiles based on existing
roles-PFCG. Role Creation, modifying using PFCG including complex design.
* Copying and Modifying SAP-Provided User Role Templates and created a set of custom user role
templates.
* Experience with SAP GRC - RAR, CUP, ERM, EAM and SAP CUA (Central User Administration)
integration with SAP GRC.
* Experience in creating and assigning FF ID's and extracting Fire Fighter logs
* Working on Fire Fighter (FF) for Super User privileges like maintaining Owners, Controllers
and Fire Fighter Access to user.
* Setting up role creation methodology, condition group and role approvers using ERM
* Segregation of Duties (SoD) and authorization stacking analysis
* Monitoring of security roles for identifying critical transaction/objects and resolving SOD
conflicts
* Analyzing SOD reports to analyze, recommend and implement solutions/redesign to resolve SOD
conflicts
* Role creation, deletion and modification based on requests.
* Single and mass roles transportation.
* Adding the standard and customized t-codes into the roles.
* Authorization groups creation and maintain authorization groups in the roles.
* Creating the new authorization objects and maintain as per request.
* Assign authorization objects to transactions.
* Adding the roles for existing users based on request.
* Passwords reset and lock/unlock the users.
* Increasing the validity period for users.
* Resolving the authorization issues using authorization check.
* Used system trace to trouble shoot authorization problems.
* Single and mass roles transportation.
* Adding the standard and customized t-codes into the roles.
* Authorization groups creation and maintain authorization groups in the roles.
* Creating the new authorization objects and maintain as per request.
* Assign authorization objects to transactions.
* Adding the roles for existing users based on request.
* Passwords reset and lock/unlock the users.
* Increasing the validity period for users.
* Resolving the authorization issues using authorization check.
* Used system trace to trouble shoot authorization problems.