Post Job Free

Resume

Sign in

SAP Cybersecurity/GRC & Data Governance

Location:
Lagos, Nigeria
Posted:
January 07, 2024

Contact this candidate

Resume:

DIGITAL SKILLS

S/*Hana Security SAP GRC & Authorizations Communication skills (listening skills; verbal skills; written skills) Problem analysis and problem-solving Access Risk Management Emergency Access Management

GRC Configuration Settings MSMP Workflow User Provisioning Information Security SAP Security

Authorizations Active Directory and Domain Services GDPR Information Governance Training. WORK EXPERIENCE

05/06/2019 – CURRENT – Avenue Joseph Anoma, Abidjan, Côte d'Ivoire SAP Cybersecurity and GRC Access Control Consultant – AFRICAN DEVELOPMENT BANK (AFDB)

• Responsible for overall design and approach to SAP security across all AFDB SAP systems, including development, BAU, handover and support.

• Ensure a smooth transition into Business-as-Usual maintenance of Roles and Authorizations

• Own the authorizations/GRC design and strategy (system connectivity for GRC, Access Control, reporting, naming conventions etc. Advise clients on GRC transformation strategy, policies, security, and assurance.

• Refine roles and authorizations to the granular level of authorization object.

• Creating security concept in SAP Fiori environment; Fiori catalogues and Fiori groups and how they are used to build authorization roles is essential. 24/07/2019 – 15/05/2023 – Houston, Texas, United States/Lagos Nigeria SAP Security and GRC Consultant –INFOTECH RISKS SECURITY (IRSL CONSULTING) Experience (Summary)

• End-to-end implementation of SAP Solutions for GRC including Access Control, and Process Control.

• Onsite and remote SAP Security and GRC support

• On-site and virtual training for SAP Security, Audit and GRC

• Advise clients on GRC transformation strategy, policies, security, and assurance.

• Conduct SAP system audits and post-implementation reviews for SAP Security and GRC

• Marketing support through business case development, solution demos, pre-implementation discovery meetings, etc.

• Develop business cases for solution delivery.

• Presales and sales team support through solution demos, responding to RFPs and RFQs SAP Security and Audit Technical Experience

• Perform user administration functions and complex design restrictions, while creating users in mass using SU10 and controlling user login and password parameters.

• Utilize SU53 and SUIM in allocating missing authorizations to users, while tracing missing authorization objects using SU53, ST01, and STAUTHTRACE.

• Design single, derived, and composite roles for end-users with profile generator.

• Closely track user ID using a user information system (SUIM) for the preparation of monthly audit reports and user buffer for review of user authorizations.

• Demonstrate proficiency in using tables USR, AGR, and USH.

• Configure, analyze, and archive audit logs for detailed event logging with SM18, SM19, and SM20.

• Collaborate with Basis Team managing mass transport with SE01, SE09, and SE10.

• Work with business analysts in role testing in QA.

• Coordinate with the Database team in database and server monitoring and system backup through monitoring IKEJA LAGOS, Nigeria Male (+234) 706-***-**** ad2jgs@r.postjobfree.com https://www.linkedin.com/in/godsall-chibuike-adiole/ SAP CERTIFIED PROFESSIONAL SAP SECURITY SAP GRC ACCESS CONTROL. A seasoned certified technology and application professional with cross-functional skills in information systems security and audit, governance, compliances, and risk management with over 5 years of experience in access governance and end-user security design and implementation. Experienced in SAP Technology and GRC consulting.

transactions such as SM50, SM51, DB12, and DB13.

• Define authorizations needed for users with business owners, while maintaining role matrices for roles and authorization objects to track role modifications.

• Ensure maintenance of USOBT_C and USOBX_C tables using SU24 /SU25, while restricting table access through authorization groups.

SAP GRC Access Control Technical Experience

• Collaborate with relevant stakeholders and process owners on the scope and direction of the implementation.

• Perform GRC installation and post-installation activities.

• Utilize SAP Reference IMG for post-installation activities with SPRO.

• Maintain GRC-shared configuration settings through IMG.

• Maintain root organization in the backend.

• Maintain SAP-delivered configuration and parameter settings for Access Control.

• Connect the GRC system to backend systems (ECC, S/4 Hana, & Legacy solutions).

• Copy, generate, and assign SAP-delivered business roles to GRC users.

• Create and test Remote Function Calls (RFCs) to backend systems.

• Map user roles, authorizations, and profiles from backend systems into the GRC solution by utilizing synchronization jobs.

• Define business rules and create decision tables using BRFplus.

• Generate and maintain initiator, agent, and routing rules using BRFplus and MSMP.

• Create workflow-driven Multi-stage Multi-path (MSMP) process flows.

• Access SAP Access Control frontend via NWBC and Fiori UI.

• Maintain custom functions, rules, and access risks for Access Risk Analysis (ARA).

• Configure MSMP workflow paths for Access Request Management (ARM) reviews.

• Create access assignments and accounts.

• Manage access assignments and review processes.

• Request, delete, and assign users and roles using ARM.

• Train users on how to use the Access Request Management (ARM) module.

• Conduct training to advise business owners in their SAP system access review on how to sieve out any unauthorized access from the review.

• Create business-compliant roles utilizing Business Role Management (BRM). 18/09/2018 – 23/06/2019 – Ikeja, Lagos, Nigeria

SAP SYSTEM ADMINISTRATOR – WORKS AND INFRASTRUCTURE-IKEJA COUNCIL

• Designed, and performed a cost analysis of projects, and implementation.

• Involved in SAP GRC suite implementation workshops with the business users, SOD conflicts, and identifying key roles in security and controls to maintain Sarbanes-Oxley Compliance.

• Participated in meetings and workshops to understand key processes and controls with relevance to SOX (Sarbanes-Oxley Act) and worked on resolving the SOD issue concerning SOX.

• Designed Security architecture and created a user role matrix.

• Assisted with user ID authorization issues, obtaining & retaining approvals for access granted to user ids.

• Analyzed the user buffers of users via SU56.

• Implemented Security Audit Logging for detailed event logging (SM19 and SM20).

• Worked on production support issues from BI System 29/03/2016 – 29/11/2016 – Imo, Nigeria

(SAP-ERP END-USER SUPPORT) – NIGERIAN BOTTLING COMPANY (NBC)

• SAP-ERP support for plant maintenance, production planning, process automation, and system management.

• Prepared work orders, risk assessments, and, Fleet management reports.

• Production planning, Inventory management, and work order generation.

• Designed a maintenance system approach, assign the right equipment and tools,

• Daily maintenance checkup, modification, and testing operational processes.

• Participated in both routine and corrective maintenance, Stock Management

• Setup Active directory and Domain services.

13/09/2018 – 20/06/2019 – Lagos, Nigeria

DEVELOPMENT KNOWLEDGE FACILITATOR – SUSTAINABLE DEVELOPMENT GOALS

(SDGS)-NYSC

• Assisted the Community Development Services: Mobilized communities to identify problems and possible interventions as well as facilitate their participation towards project ownership.

• Adopted a platform at Oregun Junior Hill for human capacity development training, leadership, decision-making, organizational and managerial skills for development.

• Monitoring and evaluation of progress within the community, Promoting a high level of collaboration, communication, and cooperation among organizations and communities. PROJECTS

1. ECOLINK SAP Post Implementation Review

Client: Economic Community of West African States (ECOWAS) Achievement:

• Participated in four stages of the project Implementation: Post Implementation Review (PIR), Stakeholder Engagement/ Interviews, Requirements /Metrics Identification, Data Gathering, Analysis, and Findings.

• Led team that reviewed Ecolink SAP GRC Access control system to gain visibility on their risk exposure.

• Reviewed Access Risk Analysis workflows and Rule sets which led to an 80% reduction in their SOD violations.

• Validated that the implementation was successful based on the requirements.

• Tested and gave assurance that the implementation reasonably meets the intended objective for deploying the solutions.

2. Remote SAP Security and Access Control Implementation Client: Nigerian National Petroleum Corporation (NNPC) Achievements:

• Activation and configuration of Access Risk Analysis, Business Roles Maintenance, Access Request Management, and Emergency Access Management modules

• MSMP workflow and BRF+ customization to meet the business requirement.

• Review of test scripts and training materials

3. Installation and Implementation (SAP GRC Access Control, Process Control) November 2020 Client: IRSL LLC Houston Texas and Lagos, Nigeria Tasks:

• 1 full cycle Process control (10.1) installation and implementation (backend SPRO and NWBC)

• 2 full cycle Access control (10.1&12.0) installation and implementation (backend SPRO and NWBC) 4. SAP GRC Access Control, Process Control, and Security 20 Days Workshop/Training September 2022

Client: NNPC LTD, Nigeria Tasks:

• 5 Days Hand-On experience Training on SAP Security and Audit.

• Lead the 5 Days Hand-On experience Training on SAP Access control 12.0 covering end-to-end processes, using Fiori and NWBC interfaces.

• Participated in the 5 Days Hand-On experience Training on SAP Process control 12.0 covering end- to-end processes, using Fiori and NWBC interfaces. 4. TERP10: SAP Integrated Business process 10 Days Workshop/Training February 2022 Client: Nigerian National Petroleum Corporation (NNPC), Nigeria Tasks:

• 10 Days Hand-On experience Training on SAP Integration of Business Processes for 25 business users.

• Trained 25 business users on Automation of Business Processes, SAP S/4HANA Basics, and Navigation.

• Lead the initiative on the development of training assessments, exercises, and feedback surveys. EDUCATION AND TRAINING

15/10/2012 – 26/03/2018 – Abia, Nigeria

BACHELOR OF ENGINEERING – MICHAEL OKPARA UNIVERSITY OF AGRICULTURE UMUDIKE Computer programming, systems engineering, Engineering Design, Engineering Management, Thermodynamics, Manufacturing & Production Engineering, Fluid Mechanics, mechanics of machines/ electrical machines, computational methods in engineering, automation Control systems, and machine systems dynamic. Engineering Analysis, Business Development & Management, Productivity and technology development, Production Planning & Control.

Field(s) of study - Mechanical Engineering - Second Class Honors Upper Division Thesis: The Effect of Adherence to Safety Regulations on Productivity of Industries TRAINING AND CERTIFICATIONS - 14/06/2018 – CURRENT

• Certified in Cybersecurity_(ISC) - October 2022

• AWS Partner: SAP on AWS (Business) Skill - July 2022

• SAP Certified Application Associate - SAP Access Control 12.0 June 2022

• SAP Certified Technology Associate - SAP System Security and Authorizations October 2021

• Certificate of Completion of Training GRC Professional (GRCP) July 2019

• ISO/IEC 27001 INFORMATION SECURITY ASSOCIATE - February 2021

• SAP UA Certificate of Proficiency November 2020

• Microsoft Certified: Azure Fundamentals (AZ-901) July 2020

• SAP Data Intelligence for Enterprise AI July 2019

• Scrum Fundamentals Certified (SFC) November 2019

• Microsoft Certified Dynamics 365 Fundamentals (MB-901) March 2020

• Certified Lean Six Sigma White Belt™ (CLSSWB™). August 2021 TECHNICAL EXPERTISE

07/01/2012 – CURRENT

Educational and Professional

• Integrated Business Processes in SAP S/4HANA

• SAP System Security and Authorizations (S/4HANA, ECC, HCM, Fiori)

• IT Regulations and Standards: Sarbanes Oxley (SOX); General Data Privacy Regulation (GDPR), OCEG GRC Capability Model 3.0, COBIT 5, and NIST.

• SAP GRC Access Control (10.1 & 12.0)

• SAP Systems Audit

• Microsoft 365 Security Administration

• Project Management

• Integration of Business Processes

• Microsoft Cloud Computing

HONOURS AND AWARDS

10/01/2014

• Agbami Medical/ Engineering Scholarship – Star Deep Water Petroleum Limited: sponsored by Star Deep Water Petroleum Limited (a Chevron-affiliated company and operator of the Agbami field)

• Best Knowledge sharing Staff (Innovative, mentoring, and leadership) – IRSL Consulting: 2021/2022

& 2022/2023

REFERENCE

Available on Request



Contact this candidate