Mohammed Mobile: +91-991*******
(SAP Security Consultant) Email:********.****@*****.***
PROFESSIONAL EXPERIENCE:
Working as SAP Security Consultant in Wipro InfoTech, Bangalore from June 2010 to till date.
Worked as SAP Security Consultant in iGrid Technologies Pvt. Ltd., Hyderabad from Nov 2008 to May 2010.
PROFESSIONAL SUMMARY:
• 3+ years of total IT industry experience as a SAP Security consultant.
• Successfully handled projects on SAP Security Support.
• User administration involving creation/deletion/locking/modifying users.
• Creating users massively using su10 and LSMW Script.
• Involved in Configuring Central User Administration (CUA)
• Used CUA to maintain users (Creation, Deletion, Locking and Assigning roles and profiles etc.)
• Adept with SAP Profile Generator, strong skills related to the Authorization concepts.
• Hand on experience in SAP Security, for User and Profile Maintenance.
• Worked on Authorization related issues of end users for R/3
• Assigning missing authorizations as per the user’s requirement.
• Created Single, Derived and Composite Roles in R/3.
• Worked with User Information System, creating and changing users and assigning users to roles.
• Generated and maintained authorizations and authorization profiles based on existing roles.
• Managing user login and password parameters.
• Extensively used SU53 and SUIM to assign the missing authorizations to the users.
• Tracing missing authorizations objects using SU53 and ST01 recommended appropriate roles for the end users.
• Monitoring the list of system users, dialog users available in the system.
VIRSA & GRC:
• Experience on Virsa Compliance Calibrator (CC). Analyzing risks and SOD Violations at different levels.
• Knowledge on GRC Compliance User provisioning (CUP).
• Creating FFIDs and assigning to Fire Fighters, owners and controllers.
• Generating User reports (Log summary Report, Reason/Activity Report, Transaction usage Report, Log Report, SOD Violation Report, Configure change History report.
• Producing SOD Analytical Reports (both Summary and Detail) against Users, User Groups, Roles and Profiles using RAR.
• Mitigation and remediation of users and roles for SOX using User/Role Analysis in RAR.
• Determining and report if any risks will be introduced by simulating the addition of transactions, Roles, or Profiles to a User ID.
BW SECURITY:
• Knowledge on BW Security and creating authorizations and roles based on business requirement.
• Knowledge on adding of Reports into existing roles and resolving BW user issues.
• Knowledge on RSSM, RSD1 and RSECADMIN transaction codes.
EDUCATION PROFILE:
• Bachelors in Computer science from SV University, Tirupathi.
TECHNICAL PROFILE:
SAP : SAP R/3 Versions ECC5.0, ECC 6.0
Applications : SAP R/3 Security
Tools : GRC Access Control (RAR, SPM), Virsa
(CC, FF)
Databases : Oracle 9i & 10g
Operating System : Windows (2000 & 2003 server).
PROJECT#1:
Client : DTE Energy Co.
Role : Security Consultant
Organization : iGrid technologies Solutions Pvt. Ltd.
Duration : Nov 2008 to May 2010
CLIENT PROFILE:
DTE Energy Co. (NYSE: DTE) is a Detroit, Michigan-based utility incorporated in 1995 involved in the development and management of energy-related businesses and services nationwide. Its largest operating subsidiaries are Detroit Edison and Michigan Consolidated Gas Co. (MichCon). The name "DTE" is taken from the stock symbol for Detroit Edison, DTE. Together, these regulated utility companies provide electric and/or gas services to more than three million residential, business and industrial customers throughout Michigan. It’s electric and gas utility businesses have each been in operation for over a century. We have leveraged that wealth of experience and assets to develop a number of non-utility subsidiaries which provide energy-related services to business and industry nationwide.
ROLES & RESPONSIBILITIES:
• Day to day technical support and resolution of Security issues.
• Worked on user administration like creating, modifying, lock/unlock and password resetting.
• Mass user creation using SU10.
• Worked on CUA systems.
• Created and maintained Single, Derived and Composite Roles
• Restricting users at table level by using Authorization Groups.
• Analyzing missing authorizations based on screen shot sent by the user.
• Generating reports on daily, weekly and monthly basis.
• Creating and modifying users using CUP.
• Analyzing risks and SOD violations using RAR.
• Assigning Firefighter access to users in emergency situations.
PROJECT #2:
Client : SABIC
Role : Security Consultant
Organization : Wipro InfoTech.
Duration : June 2010 to till date
CLIENT PROFILE:
SABIC Saudi Basic Industries Corporation, one of the world’s leading manufacturers of Chemicals, fertilizers, plastics and metals. SABIC brings together unparalleled capabilities
Ingenuity for lifeblood, A passion for collaborative working, A legacy of creating innovative applications, Depth and scale of activities
Our expertise creates tailored material solutions that help our customers change the world for good.
ROLES &RESPONSIBILITIES:
• Responsible for design, development and maintenance of SAP security roles.
• Responsible for user management, including routinely monitor user accounts for inactivity.
• Comprehensive use of Profile Generator to generate roles and assign roles to end users.
• Created and maintained Derived and Composite Roles.
• Involved in tracing missing Authorizations using SU53 report from the user.
• Troubleshoot security/authorization related problems using ST01 and SUIM.
• Creating and modifying users using CUP.
• Analyzing risks and SOD violations using RAR.
• Involved in providing emergency access to users by assigning firefighter ID.
• Implementing CUA and Transport requests to QTY & PRD systems.
• Assigning Firefighter access to users in emergency situations.
• Generating reports on daily, weekly and monthly basis.
• Work with functional teams to understand the business requirements to build roles based on requirements.