Job Summary
Job Description Senior Lead — SAP Security & GRC Enterprise S/4HANA Digital Transformation Program Position Title: Lead Consultant— SAP Security & GRC Program: Enterprise Digital Transformation — S/4HANA Implementation Location: Hybrid / Remote Duration: 12–18 months (with extension based on rollout timeline) Reports To: Security & GRC Architect Band/Level: Lead Consultant 1. Role Context The SAP Security & GRC Lead Consultant is responsible for designing, implementing, and managing SAP security and Governance, Risk, and Compliance (GRC) solutions to ensure secure, compliant, and efficient access to SAP systems across the enterprise. Managing SSO using Identity Authentication Service and provisioning between IAS & BTP using Identity Provisioning service. Designing and implementing GRC AC Firefighter workflow and ruleset. 2. Key Responsibilities Security Administration • Design and implement role-based access control (RBAC), including business roles, technical roles, derived and composite roles, Fiori catalogs, and OData service authorizations. • Ensure Segregation of Duties (SoD) compliance across the landscape. • Expertise in S/4HANA on-premises security design and implementation, aligned with SOX requirements, including mapping to GRC risk rules and access request workflows. • Perform ruleset design, risk analysis execution, and remediation planning. • Conduct role remediation in line with compliance requirements. GRC Access Control • SAP GRC Access Control (AC), Emergency access Management implementation experience. Setting up Workflow, Firefighter ID, Owner and controller. • Define and maintain risk rulesets as per the compliance requirements. • Perform risk analysis on User and role and able to do remediation. • Establish mitigation controls across S/4 Hana and documentation IAM Integration • Integration of GRC Access control, S/4 Hana, BTP and S/4 Hana private cloud with IAM solution i.e. Saviynt which is used for Joiner, leave and mover process. BTP • Configure users and role collections at the BTP subaccount level and manage access to applications deployed within the subaccount. • Experience with SAP Cloud Identity Services (IAS/IPS), including setting up identity directories. • Configure SSO, conditional authentication, enable federation with corporate IdPs (e.g., Azure AD) via IAS. • Set up Identity Provisioning Service (IPS) integrations between: CIS ↔ BTP CIS ↔ SuccessFactors • Enable automated user provisioning and access assignment within SAP BTP. 3. Required Skills Skill Proficiency SAP S/4 Hana Security Proficient — Has worked on complex projects in setting up security design & strategy. Should have 8+ years of relevant experience. SAP GRC Access Control Competent — Has worked on multiple projects and handled moderately difficult assignments. Experience on GRC Access Control EAM & ARA SAP BTP Security Advanced — Minimum 3+ years of experience into BTP Security (Role collection, User setup, Sub-account), Cloud identity service which include IAS & IPS, Work zone IAM Integration Beginner — Saviynt integration with GRC, S/4 Hana & BTP 4. Experience Requirements Requirement Minimum Total IT Experience 8+ years SAP BTP Experience 3+ years SAP GRC Access Control 5+ years S/4HANA Implementations 2+ full cycle
Key Responsibilities
Job Description Senior Lead — SAP Security & GRC Enterprise S/4HANA Digital Transformation Program Position Title: Lead Consultant— SAP Security & GRC Program: Enterprise Digital Transformation — S/4HANA Implementation Location: Hybrid / Remote Duration: 12–18 months (with extension based on rollout timeline) Reports To: Security & GRC Architect Band/Level: Lead Consultant 1. Role Context The SAP Security & GRC Lead Consultant is responsible for designing, implementing, and managing SAP security and Governance, Risk, and Compliance (GRC) solutions to ensure secure, compliant, and efficient access to SAP systems across the enterprise. Managing SSO using Identity Authentication Service and provisioning between IAS & BTP using Identity Provisioning service. Designing and implementing GRC AC Firefighter workflow and ruleset. 2. Key Responsibilities Security Administration • Design and implement role-based access control (RBAC), including business roles, technical roles, derived and composite roles, Fiori catalogs, and OData service authorizations. • Ensure Segregation of Duties (SoD) compliance across the landscape. • Expertise in S/4HANA on-premises security design and implementation, aligned with SOX requirements, including mapping to GRC risk rules and access request workflows. • Perform ruleset design, risk analysis execution, and remediation planning. • Conduct role remediation in line with compliance requirements. GRC Access Control • SAP GRC Access Control (AC), Emergency access Management implementation experience. Setting up Workflow, Firefighter ID, Owner and controller. • Define and maintain risk rulesets as per the compliance requirements. • Perform risk analysis on User and role and able to do remediation. • Establish mitigation controls across S/4 Hana and documentation IAM Integration • Integration of GRC Access control, S/4 Hana, BTP and S/4 Hana private cloud with IAM solution i.e. Saviynt which is used for Joiner, leave and mover process. BTP • Configure users and role collections at the BTP subaccount level and manage access to applications deployed within the subaccount. • Experience with SAP Cloud Identity Services (IAS/IPS), including setting up identity directories. • Configure SSO, conditional authentication, enable federation with corporate IdPs (e.g., Azure AD) via IAS. • Set up Identity Provisioning Service (IPS) integrations between: CIS ↔ BTP CIS ↔ SuccessFactors • Enable automated user provisioning and access assignment within SAP BTP. 3. Required Skills Skill Proficiency SAP S/4 Hana Security Proficient — Has worked on complex projects in setting up security design & strategy. Should have 8+ years of relevant experience. SAP GRC Access Control Competent — Has worked on multiple projects and handled moderately difficult assignments. Experience on GRC Access Control EAM & ARA SAP BTP Security Advanced — Minimum 3+ years of experience into BTP Security (Role collection, User setup, Sub-account), Cloud identity service which include IAS & IPS, Work zone IAM Integration Beginner — Saviynt integration with GRC, S/4 Hana & BTP 4. Experience Requirements Requirement Minimum Total IT Experience 8+ years SAP BTP Experience 3+ years SAP GRC Access Control 5+ years S/4HANA Implementations 2+ full cycle
Skill Requirements
Job Description Senior Lead — SAP Security & GRC Enterprise S/4HANA Digital Transformation Program Position Title: Lead Consultant— SAP Security & GRC Program: Enterprise Digital Transformation — S/4HANA Implementation Location: Hybrid / Remote Duration: 12–18 months (with extension based on rollout timeline) Reports To: Security & GRC Architect Band/Level: Lead Consultant 1. Role Context The SAP Security & GRC Lead Consultant is responsible for designing, implementing, and managing SAP security and Governance, Risk, and Compliance (GRC) solutions to ensure secure, compliant, and efficient access to SAP systems across the enterprise. Managing SSO using Identity Authentication Service and provisioning between IAS & BTP using Identity Provisioning service. Designing and implementing GRC AC Firefighter workflow and ruleset. 2. Key Responsibilities Security Administration • Design and implement role-based access control (RBAC), including business roles, technical roles, derived and composite roles, Fiori catalogs, and OData service authorizations. • Ensure Segregation of Duties (SoD) compliance across the landscape. • Expertise in S/4HANA on-premises security design and implementation, aligned with SOX requirements, including mapping to GRC risk rules and access request workflows. • Perform ruleset design, risk analysis execution, and remediation planning. • Conduct role remediation in line with compliance requirements. GRC Access Control • SAP GRC Access Control (AC), Emergency access Management implementation experience. Setting up Workflow, Firefighter ID, Owner and controller. • Define and maintain risk rulesets as per the compliance requirements. • Perform risk analysis on User and role and able to do remediation. • Establish mitigation controls across S/4 Hana and documentation IAM Integration • Integration of GRC Access control, S/4 Hana, BTP and S/4 Hana private cloud with IAM solution i.e. Saviynt which is used for Joiner, leave and mover process. BTP • Configure users and role collections at the BTP subaccount level and manage access to applications deployed within the subaccount. • Experience with SAP Cloud Identity Services (IAS/IPS), including setting up identity directories. • Configure SSO, conditional authentication, enable federation with corporate IdPs (e.g., Azure AD) via IAS. • Set up Identity Provisioning Service (IPS) integrations between: CIS ↔ BTP CIS ↔ SuccessFactors • Enable automated user provisioning and access assignment within SAP BTP. 3. Required Skills Skill Proficiency SAP S/4 Hana Security Proficient — Has worked on complex projects in setting up security design & strategy. Should have 8+ years of relevant experience. SAP GRC Access Control Competent — Has worked on multiple projects and handled moderately difficult assignments. Experience on GRC Access Control EAM & ARA SAP BTP Security Advanced — Minimum 3+ years of experience into BTP Security (Role collection, User setup, Sub-account), Cloud identity service which include IAS & IPS, Work zone IAM Integration Beginner — Saviynt integration with GRC, S/4 Hana & BTP 4. Experience Requirements Requirement Minimum Total IT Experience 8+ years SAP BTP Experience 3+ years SAP GRC Access Control 5+ years S/4HANA Implementations 2+ full cycle
Other Requirements
Job Description Senior Lead — SAP Security & GRC Enterprise S/4HANA Digital Transformation Program Position Title: Lead Consultant— SAP Security & GRC Program: Enterprise Digital Transformation — S/4HANA Implementation Location: Hybrid / Remote Duration: 12–18 months (with extension based on rollout timeline) Reports To: Security & GRC Architect Band/Level: Lead Consultant 1. Role Context The SAP Security & GRC Lead Consultant is responsible for designing, implementing, and managing SAP security and Governance, Risk, and Compliance (GRC) solutions to ensure secure, compliant, and efficient access to SAP systems across the enterprise. Managing SSO using Identity Authentication Service and provisioning between IAS & BTP using Identity Provisioning service. Designing and implementing GRC AC Firefighter workflow and ruleset. 2. Key Responsibilities Security Administration • Design and implement role-based access control (RBAC), including business roles, technical roles, derived and composite roles, Fiori catalogs, and OData service authorizations. • Ensure Segregation of Duties (SoD) compliance across the landscape. • Expertise in S/4HANA on-premises security design and implementation, aligned with SOX requirements, including mapping to GRC risk rules and access request workflows. • Perform ruleset design, risk analysis execution, and remediation planning. • Conduct role remediation in line with compliance requirements. GRC Access Control • SAP GRC Access Control (AC), Emergency access Management implementation experience. Setting up Workflow, Firefighter ID, Owner and controller. • Define and maintain risk rulesets as per the compliance requirements. • Perform risk analysis on User and role and able to do remediation. • Establish mitigation controls across S/4 Hana and documentation IAM Integration • Integration of GRC Access control, S/4 Hana, BTP and S/4 Hana private cloud with IAM solution i.e. Saviynt which is used for Joiner, leave and mover process. BTP • Configure users and role collections at the BTP subaccount level and manage access to applications deployed within the subaccount. • Experience with SAP Cloud Identity Services (IAS/IPS), including setting up identity directories. • Configure SSO, conditional authentication, enable federation with corporate IdPs (e.g., Azure AD) via IAS. • Set up Identity Provisioning Service (IPS) integrations between: CIS ↔ BTP CIS ↔ SuccessFactors • Enable automated user provisioning and access assignment within SAP BTP. 3. Required Skills Skill Proficiency SAP S/4 Hana Security Proficient — Has worked on complex projects in setting up security design & strategy. Should have 8+ years of relevant experience. SAP GRC Access Control Competent — Has worked on multiple projects and handled moderately difficult assignments. Experience on GRC Access Control EAM & ARA SAP BTP Security Advanced — Minimum 3+ years of experience into BTP Security (Role collection, User setup, Sub-account), Cloud identity service which include IAS & IPS, Work zone IAM Integration Beginner — Saviynt integration with GRC, S/4 Hana & BTP 4. Experience Requirements Requirement Minimum Total IT Experience 8+ years SAP BTP Experience 3+ years SAP GRC Access Control 5+ years S/4HANA Implementations 2+ full cycle