Jagan Sunkara +971506679673
+919553323233
[email protected]
SAP SECURITY & GRC Consultant
SUMMARY
Overall 13+ years of experience in IT of SAP R/3 Application Security experience in SAP
R/3, SAP Net Weaver 2004 (S4, Fiori, HANA, BI, EWM, SEM, CRM, BOBJ, APO, SCM,
SOLMAN, SRM and Portal (PIPO) Components, SAC (Sap Analytics Cloud), SAP CUA and
GRC (5.3 and 12version) Tool in Sap security.
Configured and implemented GRC Access control 12.
S4 HANA & Fiori Implementation from SAP Security.
PIPO Roles and Groups Build via IB.
Experience in Design, Developing, Testing and Implementing SAP Security Roles, Profiles
and Authorizations for various landscapes using Profile Generator.
Good experience in tool SU24 for maintenance of authorization objects/keys in transaction
base.
Have involved in implementation BI security and restricted access in Info Provider level and Info
Object level (field level such as Company Code, Plants, cost center etc.,)
Worked on License management tools LAW, Flexera and Snow Optimizer.
Base Customization activities include organization model to incorporate organizational structure
of the department, creation of business partners and Business role and security roles.
Maintaining SU24 changes for the customized services and adding them in the roles.
Strong in SAP application Security development by taking business requirements and building
Security using the SAP Authorization Concept using Profile Generator tool (PFCG).
Experience in user administration 24x7 on call production support, quick turnaround for end
user requests, and Helpdesk support for user administration.
Working knowledge on GRC Virsa tool
Experience in BI Security authorization issues such as queries, info provider, AA.
Work experience on CUA and IDM tool for User creation and roles assignment.
Good experience in creation and maintenance of Fire Fighter (VIRSA) user IDs for Critical
Authorizations for Project and End Users.
Strong in developing Security authorization roles and positions as defined by application
managers for the end users using Profile Generator (PFCG) tool
Experience in creation of Multiple R/3 User IDs using E-CATT Scripts.
Experience in BI security (BW Quires, info provider, Analysis authorization)
Full trouble shooting support for the users authorization failures in all SAP applications and
resolving the Security issues and support in integration testing of Roles/Profiles.
Hands-on experience on database administration, table space monitoring, data backups, log
archiving and checking the log file for trouble shooting.
Expertise in standard system and SAP housekeeping jobs
Experience on maintaining the RFC connections between different SAP systems using SM59.
Good experience in the SAP installation on all Dev, QA, Production and training systems on
different databases and operating systems.
Good knowledge on searching SAP marketplace for SAP notes in order to troubleshoot the
problems arising out of daily system administration activities.
Registered developers and objects to get access keys for modification in SAP Net R/3 in SAP
service market place and Assigning authorization to S-user ids.
Excellent communication and interpersonal skills with ability to co-ordinate activities and work in
a team environment to the deliverables.
Technical Skills
ERP Tools : SAP R/3, Ecc 6.0, NW 2004s, EHP, S4, FIORI, BI, CRM, BOBJ, SEM
Operating Systems : HP UNIX, Windows 95/98, WIN NT4.0 & 2000.
Application Packages : Ms-Office 97, office 2000/xp
Database : Oracle 9i, 10g
Sap Security Skills:
Working as Senior security consultant Day to day technical support and resolution of Security
issues (Daily production monitoring)
Working knowledge on ECC, BI, BW, CRM, BOBJ security related issues.
Expertise on CUA environment
Work experience on designing several utilities to support SAP R/3 security reporting needs.
Reports of user usage profiles and authorizations, comparison reports in different R/3 systems.
Working knowledge on configuring Profile Generator and transporting settings to all clients and
setting up security for the developers.
Good knowledge on GRC (CUP) tool.
Work experience on CUA and IDM tool for User creation and roles assignment.
On-call support 24*7 quick turnaround for end user requests, and Helpdesk Support for user
administration.
Good knowledge on creating roles and assigning them to user.
Expertise on Missing authorization issues and Daily production monitoring.
Hands-on experience on user maintenance tasks, user creation, deletion, lock down, activation,
password management tasks and running various user administration reports.
Working knowledge on authorization for S user ids.
Expertise on creating variants for the production system for daily monitoring purpose.
Experience in creation of E-Catt scripts.
Working on CHARM related issues
Good knowledge on creating OSS id’s as per the requirement.
Experience in assigning required authorizations to S-user id’s in the landscape
User administration
Hands-on experience in creation of clients and defining client settings.
Good knowledge in performing client copies like local client copy, remote client copy & client
export and import.
Expertise in user administration like creating users, deleting, and maintaining them.
Experience in performing Pre-and Post-installation activities
Creating RFC connections
Expertise in applying Support packages through SPAM transaction.
Hands-on experience in Kernal Upgradation
Good knowledge in defining and monitoring Background jobs.
Work experience on Daily System Health checks
Expertise in defining the operation modes.
Good knowledge in maintaining securities using roles/ profiles/ authorizations.
Project - 1:
Organization : Careernet technologies pvt ltd
Client : Legend Biotech
System : SAP S4
Role : Senior SAP GRC & Advisory Consultant
Duration : Feb 25 – Aug 25
Client: - Careernet Consulting is private company and into software.
Responsibilities/Deliverables:
S4HANA Implementation
GRC12 Support.
ITGC & SOX controls remediation
Internal Audits
Project - 2:
Organization : Aplostech Pvt LTD
Client : Gulf
System : SAP S4
Role : Senior SAP GRC & Advisory Consultant
Duration : Jan 24 – Aug 24
Client: - Aplostech is Consulting based company located in Inida.
Responsibilities/Deliverables:
S4HANA Implementation
Project - 3:
Organization : Aatral Technologies
Client : Arvind Fashions
System : SAP ECC
Role : Senior SAP GRC & Advisory Consultant
Duration : Feb 2023 – Nov 23
Client: - Arvind Limited is a textile manufacturer and the flagship company of the Lalbhai Group. Its
headquarters are in Naroda, Ahmedabad, Gujarat, India, and it has units at Santej. The company
manufactures cotton shirting and denims.
Responsibilities/Deliverables:
ITGC Controls remediation
GRC 12 Project upgrade
Project - 4:
Organization : JESV Technology
Client : Arvind Fashions
System : SAP ECC
Role : Senior SAP GRC & Advisory Consultant
Duration : June 2022 – Feb 2023
Client: - Arvind Limited is a textile manufacturer and the flagship company of the Lalbhai Group. Its
headquarters are in Naroda, Ahmedabad, Gujarat, India, and it has units at Santej. The company
manufactures cotton shirting, denims.
Responsibilities/Deliverables:
ITGC Controls remediation
GRC 12 Project upgrade.
Project - 5:
Organization : TechMahindra India India Pvt Ltd, Hyderabad
Client : OLAM International
System : SAP S4 Hana, FIORI
Role : Senior Security Consultant
Duration : June 2021 – Feb 2022
Client: - Olam International is a major food and agri-business company, operating in 60 countries
and supplying food and industrial raw materials to over 19,800 customers worldwide. Olam is among
the world's largest suppliers of cocoa beans and products, coffee, cotton and rice
Responsibilities/Deliverables:
Role design and Development.
Worked on Agile process methodology
Project - 6:
Organization : Accenture India Pvt Ltd, Hyderabad
Client : Google Inc
System : SAP S4 Hana, FIORI, BI, MDG, PIPO and GRC
Role : Senior Security Consultant
Duration : May 2019 – April 2021
Client: - Google is an American multinational technology company that specializes in Internet-related
services and products, which include online advertising technologies, a search engine, cloud
computing, software, and hardware. It is considered one of the Big Four technology companies in the
U.S. information technology industry, alongside Amazon, Apple, and Microsoft.
Responsibilities/Deliverables:
Configured and implemented GRC Access control 12.1
Solid understanding of key processes and methodologies user provisioning, role definitions,
SOD analysis for SAP systems.
Support / educate business areas on risks and proposed mitigating controls
Understand compliance related issues as it relates to SAP roles
Monitor the SAP environments for applicable compliance, including but not limited to
Segregation of Duties and Sensitive transactions
Audit to detect deviations of established procedures, role mapping, unauthorized changes to the
SAP security and report findings to management.
Work closely with the Functional Teams and Technical Teams as well as the business and off
shore support teams to ensure Segregation of Duties (SOD) and critical actions are understood
and appropriately built into the roles
Ensures that application security standards are well integrated into systems by incorporating
SOD testing into the security process
Monitors and maintains SAP application security policies, standards, guidelines, and procedures
that are in alignment with the corporate strategic plan and supports the project team during the
implementation.
PIPO Roles and Groups Build via IB.
Interfaces Action files update and Deploy from Eclipse.
BI Role Build and Support.
Project - 7:
Organization : Centurylink, Hyderabad
Client : NPC international ltd.
System : SAP S4 Hana
Role : Senior Security Consultant
Duration : Sep 2018 – May 2019
Client: - Pizza Hut has a more than 60-year history, beginning in 1958 in Wichita, Kansas. NPC
opened its first Pizza Hut restaurant shortly after in 1962. Today, Pizza Hut is an iconic global brand
that delivers more pizza, pasta and wings than any other restaurant in the world. NPC currently
operates more than 1,213 Pizza Hut units in 27 states and more than 386 Wendy’s units in 7 states,
plus Washington D.C
.
Responsibilities/Deliverables:
Involved in Role redesign project from SAP ECC to S4 Hana
SAP Fiori Security Roles Implementation
Maintaining SU24 changes for the customized service and adding them in the roles.
Project - 8:
Organization : IBM India Pvt Ltd, Hyderabad
Client : Abbott Labs
System : SAP ECC 6.0, BW
Role : Senior Security Consultant
Duration : July 2014 – June 2018
Client: - Abbott Laboratories is an American pharmaceuticals and health care products company. It
has 90,000 employees and operates in over 130 countries.[3][4] The company headquarters are in
Abbott Park, North Chicago, Illinois. Chicago founded the company physician Wallace Calvin Abbott in
1888. In 2010, revenues were over $35 billion.
Responsibilities/Deliverables:
Involved in Role redesign project for SAP AII system
Working on BI, ECC and handling P1 tickets on priority.
Working on CHRAM tool.
User management license reports
Creating users and assigning them to positions based on the ticket
Working on Cleanup activities and Audit related tasks.
Working on BI, ECC and handling P1 tickets on priority.
Working as a L2 support team member in a large SAP environment (EAMEA & WAMEA)
Have involved BI Security implementation (Internal Project).
Responsible for creating Business roles, Security roles and adding services as per the CRM
requirement.
Maintaining SU24 changes for the customized service and adding them in the roles.
Creating users and assigning them to positions based on the ticket
Creation of Business Partners, business roles, security roles and maintaining Standard &
Maintained objects in client environment.
SAP GRC Skills:
Working knowledge on components of SAP GRC AC 10 (ARA, ARM and EAM)
Run the risk analysis report user level in ARA.
Mitigating or Remediating the Risk for the users as per the business approvals
Creating Functions and Risk ids as per the business requirement and updating the Rule book
Creating the Monitors, Approvers and mapped them to the respective mitigation control.
Assigning Fire Fighter ID Access to the Fire fighters in emergency situation.
Excellent knowledge on SOX, Audit issues and Segregation of Duties (SoD) issues.
Under Risk analysis and Remediation, Performed User & Role analysis to identify existing SoD
Violations Risk
Performed remediation and mitigation against various risks associated with roles and users
Experience in creating and assigning FF ID’s and extracting Fire Fighter logs.
Experience in Uploading of Roles and Role owners.
Project - 9:
Organization : PricewaterhouseCoopers, Kolkata
Client : PepsiCo (North America)
System : SAP ECC 6.0
Role : Security & Basis Consultant – Offshore Support
Duration : Nov 2009 – May 2011
Client:-
PepsiCo, Incorporated is a Fortune 500, American global corporation headquartered in Purchase, New
York, with interests in the manufacturing, marketing and distribution of grain-based snack foods,
beverages, and other products. PepsiCo was formed in 1965 with the merger of the Pepsi-Cola Company
and Frito-Lay, Inc. the company employed approximately 285,000 people worldwide as of 2010. the
company’s current products lines include several hundred brands that in 2010 were estimated to have
generated approximately $108 billion in cumulative annual retail sales.
Responsibilities/Deliverables:
Day to day technical support and resolution of Security issues(Daily production monitoring)
Work on BW security and BW related issues.
Work on large CUA environment
Designing several utilities to support SAP R/3 security reporting needs. Reports of user usage
profiles and authorizations, comparison reports in different R/3 system.
Configured Profile Generator and transported settings to all clients, setup security for the
developers.
Working on GRC (CUP)tool
Working on CUA and IDM tool for User creation and assigning roles.
Providing On-call support 24*7 quick turnaround for end user requests, and Helpdesk Support
for user administration
Working on Missing authorization issues and Daily production monitoring.
Working on the Transports.
Performed user maintenance tasks, User creation, deletion, lock down, activation, password
management tasks and ran various user administration reports.
Providing authorization for S user ids.
Created Variants for the production system monitoring.
Experienced in creation of E-Catt scripts.
Creating OSS id’s as per the requirement.
User administration
Project - 10:
Organization : PricewaterhouseCoopers, Kolkata
Client : Shyam Steel Industries Pvt Ltd
System : SAP ECC 6.0
Role : Security & Basis Consultant – Offshore Support
Duration : Nov 2009 – May 2011
Client:-
Since its inception in the year 1953, Shyam Steel is serving the nation with best of its ability. Shyam
Steel is a name that is synonymous with legacy, perseverance, and quality. Today, Shyam Steel is a
(1500 Crs.) company with a 0.5MTPA Integrated steel plant & a Captive Power Plant in Durgapur, West
Bengal, a corporate office at Sector V, Kolkata and 11 branches all over India.
Responsibilities/Deliverables:
Providing Support on all SAP Basis Issues
Understanding the support process & working with the daily support.
User Creation and Authorization Maintenance with profile generator
Worked on the client’s raised help desk tickets or cases.
Created and managed new users, groups and roles
Configured and monitored the Background Processing System.
Setting up of operation mode timetable.
Daily health checks, Client Copies, Support Packages, Kernal Upgradation
Education:
● B.E
DOB: 24.08.1983