About the role
Many organizations own SAP GRC and few use it well. You will help clients implement Access Control properly, customize rule sets to reflect their real processes, and build workflows that business approvers understand.
You should be equally comfortable configuring MSMP workflows and sitting with a finance controller to work out whether a risk is real.
Responsibilities
- Implement and enhance SAP GRC Access Control: ARA, ARM, EAM and BRM
- Design and customize SoD rule sets with process owners and internal audit
- Configure MSMP workflows, agent rules and notifications
- Design mitigating controls and periodic review processes
- Run user access review and SoD review campaigns
- Train client teams to operate GRC after go-live
Requirements
- 5+ years of SAP GRC Access Control experience including at least one full implementation
- Strong understanding of SoD risk frameworks and mitigation design
- Hands-on with rule set build, risk analysis configuration and MSMP
- Solid grounding in SAP authorization concepts
- Good communication with audit and finance stakeholders
Nice to have
- SAP Process Control
- SAP IAG (Identity Access Governance)
- Fiori-based GRC front ends
Employment or contracting for this position is with LEXANTA PRIVATE LIMITED, the legal entity operating SAPSecurity.in. We are an equal opportunity organization and consider applicants on the basis of skills and experience.