Senior Consultant | SAP Security & GRC AC | Pune | SAP | DSA Metals, Mining and Industrial
Deloitte
Deloitte
Join our dynamic team as a Senior Consultant specializing in SAP Security & GRC AC in Pune. This role is crucial for driving enterprise technology solutions that empower functional excellence and foster innovation.
As a key member of the team, you will lead the discovery and design of order management processes, translating complex business needs into actionable functional requirements. Your expertise will be vital in analyzing current systems, identifying optimization opportunities, and ensuring seamless integration with future models. You'll collaborate closely with architects and integration specialists, playing a pivotal role in the UAT planning and execution phases.
This position offers a hybrid work environment, allowing for a balance between office collaboration and remote flexibility. We are committed to developing talent and driving impact, seeking individuals who can inspire, influence, and deliver superior results.
Lead functional discovery workshops for order management processes, rules, and integrations. Translate business requirements into detailed functional specifications and acceptance criteria. Analyze existing processes to identify enhancement opportunities for the future OMS model. Collaborate with architects and integration teams on design impacts and dependencies. Support User Acceptance Testing (UAT) planning and execution. Ensure end-to-end traceability of requirements throughout the project lifecycle. Mentor junior Business Analysts and support business Subject Matter Experts (SMEs). Design access roles for SAP S/4HANA environments across finance, supply chain, procurement, and engineering. Implement best practices for role building, testing, and transport management. Define role transport strategies for complex multi-tier environments. Propose security best practices for SAP BTP solutions. Review and advise on access controls and authentication protocols for third-party integrations. Define SOD risks and mitigation strategies in collaboration with GRC teams. Provide input to GRC technical teams for updating the SoD risk matrix. Review custom code for authorization checks and organizational controls. Update authorization defaults for transactions, Fiori apps, and Web-dynpros. Define audit controls and assist with internal and external audit evidence gathering. Enhance SAP security administration policies and procedures.
Bachelor's degree or higher is required, coupled with 1-2 end-to-end SAP implementation experiences.
Expertise in application security for S/4HANA, Fiori, HANA, and SAP BTP, including authentication, user provisioning, and role design management. Experience with Master-Derived and Value-Enabler technical roles, incorporating t-codes, HANA views, and Fiori Apps. Proficiency in Fiori role building, encompassing Pages, Spaces, Catalogues, Groups, and Apps. Understanding of OData V2/V4 services, API security, and troubleshooting complex Fiori and HANA access issues. Exposure to BTP role building in ABAP Environment, HANA Cloud (XSA apps), IAS, IPS, and audit logging. Solid business process understanding in core domains such as Supply, Logistics, Procurement, Trade Controls, and Master Data Governance. Experience reviewing custom transactions, updating authorization defaults, and understanding authorization objects across various domains, including sensitive admin t-codes. Experience developing attribute-based access provisioning designs, with exposure to provisioning tools like IDM or Saviynt. Ability to work independently in a global, distributed setting. Demonstrate self-drive, proactivity, and an out-of-the-box thinking approach. Exhibit flexibility, reliability, and strong ownership in all responsibilities. Desired qualities include being an inspiring role model, committed to talent development, performance-driven, influential, and possessing inspirational leadership skills.
Deloitte
Information Technology & Services