Clarence Davis
SAP Security Consultant
***************@*****.***
Experience Profile:
Overall 10 years of experience within IT
Dependable and adaptable professional with over 10 years of SAP experience including 3 years of Tier-III helpdesk administration, and 7 years of SAP security administrations.
Experience includes 7 years specifically in SAP Security supporting several SAP Business Suites and applications such as ECC, GRC, BPC, Solman, BW/BI, GTS, SRM, CRM, Portal, PI, CUA, Fiori, and HCM.
Over 4 years of GRC configuration experience specifying in Access Control – ARA, EAM, ARM, and BRM, with a total of three full implementations and major upgrades.
Highly motivated, works efficiently to produce quality work and is a quick learner looking for career growth.
Professional Experience:
Richmond Times Dispatch, Richmond, VA April 20 – Present
SAP Security Administrator
Worked with SAP Business team to support multiple financial projects, all while ensuring user/system compliance with all governing policies and regulations. Also, worked extensively with audit/compliance tools (e.g. Onapsis, GRC, Security Audit Logs (SAL), EarlyWatch Reporting, Solution Manager-CFGV-SysRec)
Configured and maintained SAP roles and authorizations for major finance projects. Ensuring compliance with SoX guidelines and best security practices
Configured and Supported GRC 12.0 and the associating modules, ARM/CUP, EAM, BRM, and ARA.
Implemented EAM Firefighter Solution following a de-centralized model, leveraging MSMP workflow for Firefighter approval and Firefighter monitoring/controller
Supported BRM role imports in order to implement ARM for automated request, approval, and provisioning
Supported Business and technical teams to enhance GRC Risk-Ruleset. Ensuring new transaction codes, Services, Programs, and Function Modules are reviewed and/or included in the global ruleset, if applicable.
Completed major role re-engineering effort for ECC (Finance Modules), utilizing GRC Risk-Ruleset to ensure remediation of existing SoD’s and critical actions/permissions.
Managed extensive vulnerability remediation efforts across SAP ECC, BPC, Portal, and S/4 Hana.
Application lead for both internal and external audit’s, ensuring proper tracking of PBC request, as well as leading the remediation of findings identified by various audit sources (e.g. SoX Audit, Penetration Testing, Red vs Blue, and etc.)
Experience working with Basis team on System Upgrades, User License Management, and Security Note implementations.
Laser Ship, Henrico, VA Jan 2017 – April 2020
SAP Security & GRC Consultant
Supported several SAP Accounts in a hosted SAP Security/Basis environment. This included all aspects of SAP Security; User and Role Maintenance, Ticket Resolution, Authorization Issue analysis, SAP GRC support.
Responsibilities:
Perform SAP Security related tasks in support of large user community across several SAP Business Suites: ECC, CRM, BW/BI, SOLMAN, Enterprise Portal, GRC, and HANA
Supported SAP modules: SD, FICO, MM, MFG, DM and WM.
Provide support and expertise to the user community, assisting them to use BW/BO solutions
Create and maintain user roles and authorizations based on business needs
Administer and maintain end user accounts, permissions and access rights
Provide production support of existing security roles and functions
Configured/Installed Central User Administration
Utilized CUA to streamline user accounts across the landscape
Resolved day-to-day user authorization issues assigned from Helpdesk
Assisted users in running SU53s
Created User in Enterprise Portal
Define Java UME/Portal groups and roles
Utilized SU53 reports and ST01 traces to address authorization issues
Performed user creation based on User Access Request Form
Assigned approved security roles
Adjusted User Master data using SU01
Performed mass user maintenance using SU10
Used SE16N to access security tables: USR* and AGR*
Used SUIM to perform security access reviews
Perform inactive user analysis (lock inactive users)
Locked and unlocked users as required
Performed password resets for locked accounts
Knowledge of SOX, audit issues, and segregation of duties
Performed user and role analysis to identify existing segregation of duties violations
Experience in creating and assigning Fire Fighter IDs and extracting Fire Fighter logs
Created distribution list users in LDAP and UME and assigned distribution list to roles
Executed data extraction transfer loading using SAP data services 4.0
Designed, developed and debugged information models to model data for reporting
Created users, roles, privileges, packages, and schemas as a part of HANA security
Designed and executed migration plan to migrate data from existing ECC servers to the HANA database
Created Attribute, Analytical and Calculated views as per the requirement needs
Created procedures in HANA Database
Involved in enhancements of Data Services Jobs, HANA Models and applying Patches on HANA
Xizec Solutions, Colonial Heights, VA May 15 – Jan 17
SAP Security Analysis
User and role administration in SAP Netweaver 7, ECC/ABAP Security authorizations, Profile Generator, solid knowledge of SoD, GRC tools (Access Control, Firefighter), SAP HR ERP, PA/OM/Security Modules.
Responsibilities Managed:
Perform SAP Security related tasks in support of large user community across several SAP Business Suites: ECC, CRM, BW/BI, SOLMAN, Enterprise Portal
Supported SAP modules: SD, FICO, MM, MFG, DM and WM.
Create and maintain user roles and authorizations based on business needs
Administer and maintain end user accounts, permissions and access rights
Provide production support of existing security roles and functions
Configured/Installed Central User Administration
Utilized CUA to streamline user accounts across the landscape
Resolved day-to-day user authorization issues assigned from Helpdesk
Assisted users in running SU53s
Created User in Enterprise Portal
Defined business partner profiles in CRM
Maintained standard SU01 user master records in CRM
Defined Java UME/Portal groups and roles
Utilized SU53 reports and ST01 traces to address authorization issues
Utilized ST01 traces to assist in defining custom security roles for CRM processes
Performed user creation based on User Access Request Form
Assigned approved security roles
Adjusted User Master data using SU01
Performed mass user maintenance using SU10
Used SE16N to access security tables: USR* and AGR*
Used SUIM to perform security access reviews
Perform3e inactive user analysis (lock inactive users)
Locked and unlocked users as required
Performed password resets for locked accounts
Added and deleted transactions from roles based on approved role change requests.
Facilitated role test/validation on updated roles in QAS (Quality Assurance)
Transported role changes through the landscape into Production
Intelliswift, Alexandria, VA May 12 – Jan 2015
Helpdesk (Tier III) Administrator
Supported Service Now (sNOW) operational support for multiple teams within the company. Worked with common user administrative task, password reset, user unlocks, account creations, and routing roles for approval and assignment.
Tier III account administrations, such as, user creation, password reset, account locking/unlocking, validation of automated workflows (e.g. GRC CUP), assistance with Firefighter setup, and approval routing for various request.
Trained 1000+ users on how to navigate applications by providing ongoing assistance with account setup/management process.
Created documentation for existing and newly created process; including; Desk Procedures, Standard operating Procedures, and Topology mapping.
Supported workflow creation in sNOW for the change management process; streamlining the review and approval process for Change Management request. This resulted in a more efficient process for end-users as well as auditors annual review of the CM process.
Supported and lead both internal/external audits; supporting by providing evidence and walkthrough of the sNOW application and process.
SAP Academy, SAP Basis Administration 101 06/2021 – 09/2021
Official SAP Security Training, 10/2020 – 11/2020