Senior Consultant | SAP Security & GRC AC | Ahmedabad | SAP | DSA Metals, Mining and Industrial
Deloitte
Deloitte
Join our dynamic team as a Senior Consultant specializing in SAP Security and Governance, Risk, and Compliance (GRC). This role offers an exciting opportunity to drive innovation and excellence within enterprise technology for clients in the Metals, Mining, and Industrial sectors.
As a key member of our Enterprise Technology & Performance (ET&P) practice, you will contribute to solutions that not only maintain operations but also act as engines for functional excellence, innovation, and sustained growth. We are looking for experienced professionals to shape the future of SAP security and access management.
This position is based in Ahmedabad, India, and is an integral part of Deloitte Touche Tohmatsu India LLP.
Design, construct, and maintain robust SAP security roles and authorizations across SAP ECC, SAP S/4HANA, Fiori, and associated applications. Lead comprehensive user access management and authorization activities throughout project lifecycles, including implementations, rollouts, transformations, and support engagements.
Analyze solution design documents and business requirements to define precise access controls, transaction authorizations, and Fiori role configurations. Facilitate workshops with stakeholders to gather security needs and align access governance with organizational objectives. Implement SAP role-based access controls (RBAC), authorization strategies, and security governance frameworks.
Support SAP Fiori security setup, catalog design, and role mappings. Troubleshoot security and authorization issues, conduct incident investigations, and deliver timely resolutions. Aid in the implementation and enhancement of SAP Identity & Access Management (IAM) and Access Governance solutions, covering request workflows, approval processes, and compliance controls.
Collaborate with cross-functional teams to deploy scalable security controls. Assist with segregation of duties (SoD) analysis, sensitive access monitoring, access reviews, and audit preparations. Contribute to security architecture documentation, risk assessments, and design decisions. Mentor junior team members and champion continuous improvement initiatives.
We are seeking candidates with 4-7 years of practical experience in SAP Security and Authorization, specifically within SAP ECC and/or SAP S/4HANA environments. Essential expertise includes SAP role design, role build, authorization concepts, user administration, and access management processes.
Demonstrated hands-on experience with SAP Security objects, troubleshooting authorization issues, user provisioning, and access control frameworks is crucial. A strong understanding of SAP Fiori security concepts, including Launchpad roles, catalogs, groups, spaces, pages, and role-based access design, is required.
Proven ability to analyze business requirements and translate them into secure, scalable SAP authorization solutions. Familiarity with Segregation of Duties (SoD), sensitive access management, user access reviews, audit controls, and governance processes is expected. Exposure to SAP Access Governance and Identity Management solutions like SAP GRC Access Control, SAP IAG, or SailPoint ISC is highly desirable.
Experience supporting security activities during various project phases (implementation, rollout, upgrade, transformation, support) is necessary. Excellent stakeholder management, workshop facilitation, and communication skills are vital. The ability to work independently and collaboratively with business, functional, technical, and security teams to achieve security outcomes is paramount.
Candidates should possess strong analytical, troubleshooting, problem-solving, and documentation skills. A Bachelor's degree in Computer Science, Information Technology, Engineering, Cybersecurity, or a related field is required. SAP Security, SAP GRC Access Control, SAP IAG, or Identity & Access Management certifications are preferred, with relevant certifications in Cybersecurity, Access Governance, Risk Management, or Information Security being an added advantage.
Deloitte
Information Technology & Services