About the role
Role redesign is a large part of what we do. Clients come to us with hundreds of roles nobody understands, wide access everywhere and auditors asking difficult questions. You will untangle that.
The work is methodical: analyse usage, define a clean concept, build it, test it with the business and cut over without disrupting operations.
Responsibilities
- Analyse role usage and authorization data to inform redesign decisions
- Design task-based, job-based or hybrid role concepts with clear naming conventions
- Build roles and derived variants across organizational structures
- Coordinate business testing and manage defects through cutover
- Reduce critical and wide authorizations with documented justification
Requirements
- 4+ years of SAP authorization work with at least one complete role redesign
- Deep knowledge of PFCG, SU24 maintenance and derived role handling
- Experience with usage analysis tools (STAUTHTRACE, SUIM, or third-party tooling)
- Strong understanding of the SAP authorization concept: roles, profiles, authorization objects, org levels
- Comfortable working directly with business process owners, IT and auditors
- Clear written and spoken English; able to document designs and decisions
Nice to have
- Fiori catalog and space design
- Experience with role design accelerators or automation
- SAP GRC BRM
Employment or contracting for this position is with LEXANTA PRIVATE LIMITED, the legal entity operating SAPSecurity.in. We are an equal opportunity organization and consider applicants on the basis of skills and experience.