AJAY - SAP Security - U
AJAY - SAP Security - U
Overall, 11 years of experience in SAP Security R/3 and 6 years of experience in GRC 10.1 and 6
months in GRC 12.0 and also experience in S/4 HANA and SAP FIORI. Involved in major projects
RPA (Robotic Process Automation) and GDPR (General Data Projection Regulation) across all
Security Landscapes. Role and user administration as part of support projects. Successfully
implemented the Governance Risk and Compliance (GRC) 10.1 Access Control (ARM, EAM, BRM
and ARA). And involved in the SOX Audit Reports like B1, B2, B3, B4 and B5.
Professional Summary:
• Expert in working with cutover team in roll-out/cutover activities and hyper care (post
production security support).
• Expert in securing system and data through customization of role maintenance,
authorization objects, transaction codes.
• Experienced in the design, development, implementation and maintenance of SAP Security
and Authorization Solutions in ECC, GRC*, FIORI and S/4 HANA.
• Expert in creating/updating in single, master, derived and Composite roles.
• User administration involving creation/deletion/locking/unlocking/change password/copy
and changing users.
• Experience on joining tables to generate queries.
• Expert with all security related authorization objects.
• Expert on user/role related tables.
• Proficient in analysing user/role/authorizations related information using SUIM.
• Experience in generating workload analysis report (Transaction analysis, user settlement
statistics).
• Good knowledge in maintaining password related parameters and illegal passwords as per
company standards.
• Proficient in analysing and fixing the missing authorizations using System Trace and Last
Authorization Check Failure.
• Expert in transporting single/mass roles and deleting roles.
• Extensively worked on roles modification/creation through the Charm process (SOLMAN).
• Experience in creating the Robotic roles for the RPA (Robotic Process Automation).
• Preparing Role Matrix and Role Designing strategy and defining procedures for the best of
security for the client business
• I have provided post Go Live support including end user training, performed demonstration,
prepare user manual and technical guide.
• Quality team player with inter-group coordination, strong communication, leadership
qualities, and decision-making skills.
• Worked on SOX Audit Reports like
• Implementation of ERP applications such as SAP S/4HANA 2020 and prepared the
documentations on Security role designs and Fiori concepts.
• Completed end to end GRC Access Control Green Field implementation from Requirement
gathering, Blue Print, Design, project planning to go-live and hyper care
• As part of daily activity used to work on GRC monitoring task.
• Prepared configuration documentation for GRC.
• Performed all Post installation and common configuration steps of GRC.
• Configured MSMP Workflow.
• Configured BRF+ and mapped BRF+ application with MSMP workflow.
• Set up the Admin Delegation incase if approver going on vacation.
• Running risk analysis/simulation against roles based on the requirements.
• Worked on the Business Role owner Update/Add/Deletion (Master Data Update).
• Worked on creating Mitigation Control ID.
• Worked on Mitigation Control assignment to Users/Roles.
• Designed and configured the creation of FFID’s.
• Extensively worked on creation/updating of Owners, Controller and creating reason codes.
• Assigning owners to FFID and assigning FFID to Firefighter and Controller.
• Extensively worked on Synchronization jobs.
• Configured and set up GRC parameters / connectors/ Connector group, background jobs for
SAP Landscape.
• Created roles for S/4 HANA and Fiori Gateway systems.
• Monitored the Service Desk ticketing system for SAP Security requests and ensured that all
requests were promptly and accurately handled.
Education: -
• Masters from University of Wales, Cardiff (UWIC, UK).
• B-Tech from JNTU University of Andhra Pradesh, Hyderabad (Anurag Engineering
College).
Professional Experience:
Johnson & Johnson (J&J) is an American multinational corporation founded in 1886 that
develops medical devices, pharmaceuticals, and consumer packaged goods. Johnson & Johnson
is headquartered in New Brunswick, New Jersey, the consumer division being located in
Skillman, New Jersey. The corporation includes some 250 subsidiary companies with operations
in 60 countries and products sold in over 175 countries.
Toyota Motor North America, Inc. is a holding company of sales and manufacturing subsidiaries
of Toyota Motor Corporation in the United States. Its services include government and
regulatory affairs, energy, economic research, philanthropy, corporate advertising, and
corporate communications.
Astra AB was founded in 1913 in Sodertalje, Sweden, by 400 doctors and apothecaries. In 1993
the British chemicals company ICI demerged its pharmaceuticals businesses and its
agrochemicals and specialties businesses, to form Zeneca Group plc. Finally, in 1999 Astra and
Zeneca Group merged to form AstraZeneca plc, with its headquarters in London. In 1999,
AstraZeneca identified as a new location for the company's US base the "Fairfax-plus" site in
North Wilmington, Delaware.
SPX is a diversified, global supplier of infrastructure equipment with scalable growth platform
in heating, ventilation and air conditioning (HVAC), and detection and measurement markets,
and a strong presence in power and energy markets. With operations in about 20 countries and
approximately $1.7 billion in revenue for 2015.