GMS-Senior-SAP GRC AC And PC
EY
- Location
- Bengaluru, KA, IN, 560048
- Work model
- On-Site
- Level
- Senior
Skills
About this role
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
SAP Security, GRC Access Control and Identity Management Specialist Professional Job Description for Modern SAP Landscapes Scope: SAP S/4HANA on RISE, SAP GRC, SAP IDM, SAP BTP, Ariba, SuccessFactors, BW and integrated SAP platforms Role Type SAP Security , GRC, IDM and Access Governance Seniority Senior Analyst / Consultant / Specialist / Lead, depending on experience Primary Focus User access management, role lifecycle, GRC operations, IDM provisioning, risk ruleset management, audits and access reviews Landscape SAP S/4HANA on RISE, SAP GRC AC/PC, SAP IDM, SAP BTP, Ariba, SuccessFactors, SAP BW/BW4HANA and related integrations Role Summary We are looking for an experienced SAP Security, GRC and Identity Access Management professional to manage end-to-end SAP user access, role design, identity lifecycle, access governance, emergency access, risk analysis, audits and security operations across a complex SAP landscape. The role will support SAP S/4HANA on RISE, SAP GRC Access Control, SAP GRC Process Control, SAP IDM, SAP BTP, SAP Ariba, SAP SuccessFactors, SAP BW/BW4HANA and other integrated SAP applications. The candidate will be responsible for SAP user management, SAP role design and maintenance, GRC operations, access risk analysis, SAP Firefighter governance, user access review implementation, quarterly access reviews, risk ruleset management, SoD remediation support, country rollouts, SAP native security assessments and audit support. The role requires strong process discipline, documentation quality and audit-ready execution across run, change and project activities. Key Accountability Areas Expected Ownership SAP User Access Management Create, modify, maintain and revoke SAP user access using approved access request, provisioning and governance processes. SAP Role Management Own role requirement gathering, role design, build, testing, transport, go-live and ongoing maintenance. SAP GRC Access Control Administer GRC Access Control processes across ARA, EAM, ARM and access governance workflows. SAP GRC Process Control Support quarterly CCM updates, control monitoring, exception validation and control evidence management. SAP IDM Manage identity lifecycle workflows, provisioning, deprovisioning, reconciliation and connector issue resolution. Access Reviews and Audits Implement and operate user access reviews, firefighter reviews, audit evidence packs and remediation tracking. Risk Ruleset Management Design, maintain, test and govern SoD and critical access rulesets for SAP and integrated applications. SAP Native Security Assess SAP authorization, user, privileged access, RFC, technical user and security configuration risks. Detailed Responsibilities SAP User Access Management
Manage SAP user ID creation, modification, lock, unlock, validity updates, role assignment, termination and periodic user maintenance across SAP systems. Support access provisioning and deprovisioning through SAP IDM and SAP GRC Access Control workflows. Handle access requests, emergency requests, weekend releases and production access support activities. Ensure access is provisioned based on approved requests, business need, least privilege and segregation of duties requirements. Maintain user master data, license-relevant user classifications, technical users, communication users and validity controls.
SAP Role Management
Design, build, test and maintain SAP security roles for SAP S/4HANA, ECC, BW, Fiori, BTP integrations and related SAP platforms.