Job Title:  Senior Consultant | SAP Security & GRC AC | Pune | SAP | DSA Metals, Mining and Industrial

Job Title: SAP Security Consultant

Experience: 6+ Years

Location: Flexible/Hybrid

Role Level: Senior Consultant

Job Summary

We are seeking a skilled and motivated SAP Security Consultant with 6+ years of experience in SAP Security and Authorization design, implementation, and support. The ideal candidate should possess strong knowledge of SAP Security concepts and hands-on experience in SAP S/4HANA security implementations. Experience in SAP GRC Access Control is mandatory, with at least one end-to-end implementation project.

The candidate should be capable of designing, building, testing, and supporting SAP security solutions while ensuring compliance with business requirements and segregation of duties (SoD) standards.

Key Responsibilities

  • Design, develop, implement, and support SAP Security and Authorization solutions across SAP landscapes.
  • Perform role design, role build, user administration, authorization troubleshooting, and security analysis.
  • Work closely with functional and business teams to gather security requirements and design appropriate authorization solutions.
  • Implement and maintain SAP security across SAP S/4HANA environments.
  • Conduct security reviews, user access audits, and risk assessments.
  • Manage user provisioning, role assignments, and access governance processes.
  • Support security testing, cutover activities, and hypercare during implementation projects.
  • Analyze and resolve authorization issues using SU53, ST01, SUIM, PFCG, and other SAP security tools.
  • Ensure compliance with Segregation of Duties (SoD) and internal control requirements.
  • Collaborate with BASIS, Functional, and Audit teams to maintain a secure SAP environment.

Required Skills & Qualifications

SAP Security Expertise

  • 6+ years of hands-on experience in SAP Security and Authorizations.
  • Strong understanding of:
  • SAP Authorization Concept
  • Role Design and Role Maintenance
  • Single, Composite, and Derived Roles
  • User Administration
  • Authorization Objects and Profiles
  • Segregation of Duties (SoD)
  • SAP Security Best Practices
  • Proficient in security administration tools such as – SUIM, BP segregation, AGR tables etc.

SAP Project Experience

  • Hands-on experience in SAP S/4HANA security implementation projects.
  • Experience in at least one full lifecycle SAP Security implementation project.

SAP GRC Access Control (Preferred)

  • Minimum one end-to-end implementation experience in SAP GRC Access Control.
  • Good understanding of:
  • Access Risk Analysis (ARA)
  • Access Request Management (ARM)
  • Business Role Management (BRM)
  • Emergency Access Management (EAM)
  • SoD Risk Management
  • Experience in user provisioning and workflow configuration is preferred.

Preferred/Good to Have Skills

Additional experience in any of the below areas will be an advantage:

SAP Cloud Security

  • SAP BTP Security
  • SAP Cloud Identity Services
  • IAS (Identity Authentication Service)
  • IPS (Identity Provisioning Service)

SAP Line of Business Applications

  • SAP Ariba Security
  • SAP Concur Security
  • SAP SuccessFactors Role-Based Permissions (RBP)

Other Skills

  • Understanding of SAP Fiori Security concepts.
  • Knowledge of S/4HANA authorization architecture.
  • Experience working in support and AMS engagements.
  • Exposure to audit and compliance requirements.
  • Strong analytical and troubleshooting skills.
  • Excellent communication and stakeholder management skills.

Educational Qualification

  • Bachelor's Degree in Engineering, Computer Science, Information Technology, or related discipline.
  • SAP Security and/or SAP GRC certifications are preferred.

Key Competencies

  • Problem-solving and analytical thinking
  • Client-facing and consulting skills
  • Team collaboration
  • Attention to detail
  • Ability to work in a fast-paced project environment

Preferred Candidate Profile: Candidate with strong SAP Security fundamentals, implementation experience in S/4HANA, and at least one SAP GRC Access Control implementation, along with exposure to cloud and SAP SaaS security solutions (Ariba, Concur, SuccessFactors).