Post Job Free

Resume

Sign in

Sap Security and GRC Consultant

Location:
Charlotte, NC
Posted:
December 01, 2023

Contact this candidate

Resume:

Jeff Emalaba

470-***-****. ad1l9j@r.postjobfree.com

SAP Security and GRC Lead

Jeff is a self-starting and motivated IT professional who is capable of delivering results with minimal supervision. He is a team player and team builder due to his keen listening ability. He has over 22 years’ experience in IT Security and Finance with 10 of those years focused in SAP Security and GRC. He understands business processes and technical applications and is able to communicate effectively with the technical teams and the business process owners and various levels of decision makers.

Jeff is proficient in requirement gathering, Process design, Configuration, Testing, Training and supporting. He has 7 Full cycle implementations in SAP Security.

PROFESSIONAL EXPERIENCE

JELD-WEN LLC (END CLIENT) 08/15/2020 – 08/16/2023

Role: Senior SAP Security and GRC Lead

Primary responsibilities: Responsible for SAP Security and GRC implementations, Maintenance, Pre and Post Go-Live Activities, managed and trained security admins on services/daily support of security in SAP System Landscape, User and role administration, Role redesign, SAP Migration from HEC to Azure, supervision and maintenance, GRC upgrades and system sync, CUA configuration and maintenance, IBP role design and business process implementation, HP ALM maintenance and project creation, BODS repository creation, HCI DS/CPI DS user creation and maintenance

Responsibilities:

Central Finance Role design, implementation and maintenance across various regions globally.

PPOME assignments and user access in both CFIN and MDG landscape

MDG role restructuring and design

Critical functions identification and measurements for daily security role architecture and assignments

GRC 12 Risk Termination End to End Implementation and Configuration for Real-Time User and Role Risk Analysis

HP ALM project creation, user access creation, user project assignments, troubleshooting daily issues and providing expedient resolutions immediately

HP ALM test scripts issues resolution for the business as needed

HCI DS/CPI DS user access creation and role assignments

SAP SUSER creation and assignments as per business requirements

SAP IBP role design, role restructuring, permission filters assignments and creation

SAP License updates to help reduce business overall costs in all landscape

SNOW error handling for GRC failure

Revamping the SNOW access request process for a seamless and more user friendly experience.

Fiori Risk Analysis on Fiori Applications in GRC 12

Configuration of the Odata Services for ability to run User risk analysis via the GRC 12 Remediation View

UAR data pulls

Provided periodical audit reports for the respective audit teams as needed to prevent security breach in the system

Activation of batch jobs to lock inactive accounts to help sanitize the landscape

Role Owner identification (CFIN/MDG)

Redesign of SAP IT roles for respective teams

IBP user access creation, assignments in both front end and backend, maintenance and access issues resolution

BODS user repo creation, user assignments in all landscape (Dev, Qua and Prod)

GRC FF Log Reminder Email, Email changes and customization

PI/PO user access creation in all landscape, issue resolution in a timely manner, troubleshooting,

SAP OSS process improvement, creation, user access, providing business approvals as needed

Trouble shoot authorization errors using SU53, SU56, SU24, ST01, SUIM and proffered timely resolutions.

Fiori Apps Front-end and Back-end Troubleshooting to isolate missing Odata Services

GRC request raising and processing to resolve timely role assignments

GRC elevated access request using service now and role search configurations

PROD and Quality CAB requests as needed which were expedited to SR or WR as the case may be

End to End Greenfield Full cycle implementation in a totally brand-new environment.

Performed cutover procedure and tasks as per project requirements as well as creating elevated access for FFID role owners.

Use of SM19 and SM20 logs to create reports as needed

BOE power and end user role hierarchy and troubleshooting

Implement the SAP GRC AC ARA to ensure segregation of duties (SOD) exists and Sensitive Access in the SAP systems are enforced.

Configured ARA for continuous monitoring, risk detection, and assisted process owners in mitigation and/or remediation of identified risks

Performs user provisioning activities which includes, setting up new accounts, password resets, assigning users to appropriate groups and assigning security roles according to employee/contractor approved positions.

Leverage System trace to record authorization checks in different sessions.

Perform Role and User Level analysis for sensitive access and SOD worked with Role owner and process owners to address risk and assisted with outright remediation, and/or mitigation.

Perform Firefighter ID Provisioning Tasks and Troubleshoot any issues relating to Firefighters or IDs and GRC in general.

Monitor SAP GRC systems and troubleshoot the issues and report to the management on a timely basis.

Performed GRC AC post installation activities and implemented ARA, EAM, BRM and ARM based on client requirements.

Worked with offshore team, led and provide daily tasks, provided knowledge transfer and training to off-shore resources for the entire security design/development and managed services and review the delivered work and deliverables.

Perform daily monitoring of scheduled jobs related to security and compliance activities and associated system administration tasks.

Performed cutover tasks- Migrate roles to Production (Transport by BASIS team), Assign users the roles.

Communicate with clients at all levels

TATA CONSULTING 01/15/2020 – 07/30/2020

Role: Senior SAP Security and GRC Lead

Primary responsibilities were centered around SAP Security and GRC implementations, Fiori upgrades, Pre and Post Go-Live Activities, managed services/daily support of security in SAP System Landscape, User and role administration.

Responsibilities:

Trouble shoot authorization errors using SU53, SU56, SU24, ST01, SUIM and proffered timely resolutions.

GRC request raising and processing to resolve timely role assignments

GRC elevated access request using service now and role search configurations

PROD and Quality CAB requests as needed which were expedited to SR or WR as the case may be

End to End cutover procedure and tasks as per project requirements as well as creating elevated access for FFID role owners.

Use of SM19 and SM20 logs to create reports as needed

BOE power and end user role hierarchy and troubleshooting

Implement the SAP GRC AC ARA to ensure segregation of duties (SOD) exists and Sensitive Access in the SAP systems are enforced.

Configured ARA for continuous monitoring, risk detection, and assisted process owners in mitigation and/or remediation of identified risks

Performs user provisioning activities which includes, setting up new accounts, password resets, assigning users to appropriate groups and assigning security roles according to employee/contractor approved positions.

Greenfield Full cycle implementation as per customer request.

Leverage System trace to record authorization checks in different sessions.

Perform Role and User Level analysis for sensitive access and SOD worked with Role owner and process owners to address risk and assisted with outright remediation, and/or mitigation.

Perform Firefighter ID Provisioning Tasks and Troubleshoot any issues relating to Firefighters or IDs and GRC in general.

Monitor SAP GRC systems and troubleshoot the issues and report to the management on a timely basis.

Performed GRC AC post installation activities and implemented ARA, EAM, BRM and ARM based on client requirements.

Worked with offshore team, led and provide daily tasks, provided knowledge transfer and training to off-shore resources for the entire security design/development and managed services and review the delivered work and deliverables.

Perform daily monitoring of scheduled jobs related to security and compliance activities and associated system administration tasks.

Performed cutover tasks- Migrate roles to Production (Transport by BASIS team), Assign users the roles.

Communicate with clients at all levels

WIPRO TECHNOLOGIES 07/11/2016 – 01/01/2020

Role: Senior SAP Security and GRC Consultant

Primary responsibilities were centered around SAP Security and GRC implementations, Fiori upgrades, Pre and Post Go-Live Activities, managed services/daily support of security in SAP System Landscape, User and role administration.

Responsibilities:

Trouble shoot authorization errors using SU53, SU56, SU24, ST01, SUIM and proffered timely resolutions.

GRC request raising and processing to resolve timely role assignments

GRC elevated access request using service now and role search configurations

Hana Data base process of role changes and user maintenance on a daily basis as well as SAML’s assignments and maintenance.

PROD and Quality CAB requests as needed which were expedited to SR or WR as the case may be

End to End cutover procedure and tasks as per project requirements as well as creating elevated access for FFID role owners.

Use of SM19 and SM20 logs to create reports as needed

BOE power and end user role hierarchy and troubleshooting

AVM connectors and jobs troubleshooting to resolve end user issues

AVM – RTADS jobs and Concur provisioning

Success Factor Provisioning

Information Steward – user security, role to group mapping in BOE and project security in IS

Use of LDAP connectors and troubleshooting

Use of BOBJ portal in troubleshooting end user issues

Resolving end user issues on Bi/BW on Hana

Implement the SAP GRC AC ARA to ensure segregation of duties (SOD) exists and Sensitive Access in the SAP systems are enforced.

Configured ARA for continuous monitoring, risk detection, and assisted process owners in mitigation and/or remediation of identified risks

Performs user provisioning activities which includes, setting up new accounts, password resets, assigning users to appropriate groups and assigning security roles according to employee/contractor approved positions.

Leverage System trace to record authorization checks in different sessions.

Perform Role and User Level analysis for sensitive access and SOD worked with Role owner and process owners to address risk and assisted with outright remediation, and/or mitigation.

Perform Firefighter ID Provisioning Tasks and Troubleshoot any issues relating to Firefighters or IDs and GRC in general.

Monitor SAP GRC systems and troubleshoot the issues and report to the management on a timely basis.

Performed GRC AC post installation activities and implemented ARA, EAM, BRM and ARM based on client requirements.

Worked with offshore team, led and provide daily tasks, provided knowledge transfer and training to off-shore resources for the entire security design/development and managed services and review the delivered work and deliverables.

Perform daily monitoring of scheduled jobs related to security and compliance activities and associated system administration tasks.

Performed cutover tasks- Migrate roles to Production (Transport by BASIS team), Assign users the roles.

Communicate with clients at all levels

HALO HALL INC 03/2014 – 03/2016

Role: SAP Security and GRC Consultant

Primary responsibilities were centered around SAP Security and GRC implementations, upgrades, managed services/daily support of security in SAP System Landscape, User and role administration, GRC Access Control including SoD rules review, process improvements and recommending best practices where appropriate.

Responsibilities:

Perform all aspects of SAP security implementation tasks which includes but not limited to coordinating and interacting with business leads and process owners, technical and functional SMEs, Internal Audit and Security Admins for the sole purpose of gathering SAP Security requirements.

Design/develop custom SAP roles, performed security unit and integration testing, transport custom roles to approved landscapes for user testing, setup security system parameters, and generating analysis reports.

Trouble shoot authorization errors using SU53, SU56, SU24, ST01, SUIM and proffered timely resolutions.

Built from the ground up custom S4 Hana Fiori roles and also created roles from seeded roles and underwent comprehensive roles troubleshooting of these roles leveraging the S4 Hana Library as well.

Performed 2 full life cycle implementation of GRC 10.1 from kick off to go live and post go-live including all the modules – ARA, EAM, BRM and ARM.

Create functional and technical design document to ensure role-building follows business and risks and controls requirement set forth by the internal control teams and obtain functional design signoff prior to build.

Configure various types of role such as Single and Master Roles, Composite Roles and Derived roles using the Profile Generator (PFCG).

Implement the SAP GRC ARA to ensure segregation of duties (SOD) exists and Sensitive Access in the SAP systems are enforced.

Configured ARA for continuous monitoring, risk detection, and assisted process owners in mitigation and/or remediation of identified risks

Performs user provisioning activities which includes, setting up new accounts, password resets, assigning users to appropriate groups and assigning security roles according to employee/contractor approved positions.

Leverage System trace to record authorization checks in different sessions.

Participated in the security upgrades of the followings versions: R/3 4.6 to ECC 6.0, GRC 5.3 to 10.1 and BW 3.5 to BI 7.0 including post updates activities in SU25, perform security role assessment and redesign.

Perform Role and User Level analysis for sensitive access and SOD worked with Role owner and process owners to address risk and assisted with outright remediation, and/or mitigation.

Perform Firefighter ID Provisioning Tasks and Troubleshoot any issues relating to Firefighters or IDs and GRC in general.

Monitor SAP GRC systems and troubleshoot the issues and report to the management on a timely basis.

Performed GRC post installation activities and implemented ARA, EAM, BRM and ARM based on client requirements.

Migrated roles from Dev environment to SIT using Transport request.

Work with SMEs to perform integration testing -SIT and fixed logged issues in ticketing system (Remedy)

Provide knowledge transfer and train the trainer exercise to client personnel on security authorization concept and security design/implementation.

Worked with offshore team, led and provide daily tasks, provided knowledge transfer and training to off-shore resources for the entire security design/development and managed services and review the delivered work and deliverables.

Elicit security info such Naming convention, Derived role iterations, SOD i.e. number of Orgs, Field specific actions to create Functional design document (FDD), Create the Technical design document (TDD)

Perform daily monitoring of scheduled jobs related to security and compliance activities and associated system administration tasks.

Involved in all clients’ environments (Development, Test/UAT and Production) and provided best practice for change management and SoD rule promotion in respective instances.

Updated FDD and TDD based on the changes at the end issue resolution

Prepared the environment for UAT-Migrating roles from SIT to UAT, Map roles to UAT users who tested and logged security issues and signed off after all issues were resolved. Secured Go-Live decision/Sign off from Mgt.

Performed cutover tasks- Migrate roles to Production (Transport by BASIS team), Assign users the roles.

Prepare all applicable deliverables such requirement document, setup/configuration documents and weekly status reports.

Communicate with clients at all levels

Cass Regional Medical Center, Harrisonville, MO Jan2012 - November 2013

Business Operation Analyst

Performed as a team member for system implementations and support crossing multiple departments.

Worked with Project managers to gather system requirements, business requirements and clinical requirements for go-Live.

Supported project managers with Portfolio/Production implementations and optimizations.

Documented, researched and analyzed workflow structure for software and hardware requirements.

Assist with design and delivery of all learning activities.

Responsible for coordinating manual script testing and user acceptance testing.

Performed GAP analysis to assess workflow Gaps.

BoasonJeff Global Limited March 2004 - December 2011

IT Project Coordinator (Operations)-PMO

Assisted Project managers with the project planning, user acceptance testing, business requirements and data migration.

Design and create learning and development tools.

Created quizzes and assessments for end-user learning,

Assist in creating instructional text, PowerPoints, and video scripts for learning materials.

Served as SharePoint Admin responsible for the maintenance of dashboards and reports to track project progression.

Worked with Project managers to provide, monthly and quarterly project forecast.

Assisted with support for implementation and post implementation as needed.

Technical Skills Highlights

Tools: SAP R/3 SAP S4 HANA, BW on HANA ECC 6.0, GRC 10.1, GRC AC 12.0,

MS Office (Word, Excel, PowerPoint) Outlook,

ERP Application: SAP R/3, ECC, CRM, BI/BW, HANA, S4 HANA FIORI (On Prem & Off Prem)

Methodologies: ASAP Methodology,

Regulatory/Standards

Requirements: SOX ACT Compliance

Education And Credentials

Science Technology Ogun State Polytechnic

Options Trading . 21st Century Options Florida



Contact this candidate