BUKOLA SOFIDIYA
SAP Security Analyst SAP GRC Consultant IAG S/4HANA SAP BTP
Katy, TX 281-***-**** ***************@*****.*** U.S. Citizen PROFESSIONAL SUMMARY
SAP Security Analyst and GRC Consultant with 10+ years of experience supporting and implementing secure, compliant SAP environments across ECC, S/4HANA, SAP BTP, and hybrid landscapes. Strong expertise in SAP Security administration, SAP GRC Access Control, Identity & Access Governance (IAG), Segregation of Duties (SOD), Firefighter, and SOX audit support. Proven ability to partner with business, audit, and IT stakeholders in large enterprise environments.
CORE SKILLS
SAP Security Administration (ECC & S/4HANA)
SAP GRC Access Control (ARA, EAM, BRM)
SAP Identity Access Governance (IAG)
SAP BTP Security & Role-Based Access Control
Role Design: Single, Composite, Derived (PFCG)
User Provisioning & Identity Lifecycle Management
MSMP Workflow Configuration & Support
Segregation of Duties (SOD) Analysis & Remediation
Firefighter ID Administration & Reporting
Audit & Compliance Support (SOX, PCI-DSS, HIPAA) PROFESSIONAL EXPERIENCE
AT&T – SAP Security Analyst / GRC Analyst
June 2020 – Present
Design, implement, and support enterprise SAP security models across ECC, S/4HANA, and SAP BTP environments.
Create and maintain Single, Composite, and Derived roles using PFCG, enforcing least- privilege access.
Administer user provisioning and deprovisioning for SAP and integrated applications.
Support SAP GRC Access Control including ARA risk analysis, access reviews, and Firefighter monitoring.
Integrate SAP IAG with SAP GRC and S/4HANA to centralize identity governance.
Configure and support MSMP workflows for automated access approvals.
Perform SOD analysis, remediation, and mitigation in support of SOX compliance.
Provide audit support and production support using ServiceNow, SAP IDM, and Rev- Trac.
NTT DATA – SAP Security & GRC Consultant
August 2018 – June 2020
Provided SAP Security and GRC consulting services across multiple enterprise SAP landscapes.
Designed and maintained SAP roles and authorizations in ECC and S/4HANA systems.
Performed SOD simulations and remediation using SAP GRC Access Control.
Managed Firefighter IDs, controllers, and audit reporting.
Supported internal and external audit requests and compliance reporting. ALCON – SAP GRC Consultant
September 2014 – July 2018
Implemented and supported SAP GRC Access Control to enforce SOD and sensitive access controls.
Designed SAP roles and authorizations using PFCG aligned with internal control frameworks.
Developed functional and technical design documentation for SAP security solutions.
Configured and maintained custom GRC rule sets and functions.
Performed role- and user-level SOD analysis and coordinated remediation.
Provided Firefighter provisioning, monitoring, and audit reporting.
Led offshore resources and delivered knowledge transfer to client teams. EDUCATION
MBA, Project Management – Columbia Southern University MSc, Organizational Leadership – Columbia Southern University BSc, Health Science – Texas A&M University
CERTIFICATIONS
SAP Certified Application Associate – SAP Human Capital Management