Professional Summary: Pavankumar SR - SAP Security & GRC Consultant
Professional Summary: Pavankumar SR - SAP Security & GRC Consultant
Professional Summary: Pavankumar SR - SAP Security & GRC Consultant
PROFESSIONAL SUMMARY
With overall 8 years of domain experience in SAP Security, GRC, Access & Process Controls project upgrade & implementation,
requirements gathering, role redesign, testing processes. Implemented GRC 10.1 (EAM, ARA, ARM, and BRM), ECC, BI, BPC 10,
CRM 7. Well-organized and meticulous style of functioning enables deliverance of quality output for the client.
Expertise:
SAP Application Security
ECC 6.0, HR, BI, BO, SRM, CRM and Net Weaver role design and authorization support
Created and Documented SAP Security blueprint designs
Created Security Role testing strategies and test scripts
Developed HR roles and authorizations
Configured BI Analysis Authorizations
Deployed Structural Security and Position Based Security
Created Authorizations and Roles based on the job profiles.
Contributed to the documentation for the various tasks that were performed for daily monitoring and support activities.
Prepare reports for daily and weekly service review calls
Authorization and Profile Maintenance (PFCG), Security and User Management, Troubleshoot
Used scripting tools like CATT and ECATT for mass user administration.
Configured and maintained Central User Administration
Extensively used SUIM (User Information System) to generate various reports for audit monitoring
Implemented BI Security with management of Analysis Authorizations ,Hierarchy Node using Transaction RSECADMIN
GRC Access Controls 5.3 and 10.1
Implemented GRC Access Control 10.1 implementation (upgrade GRC 5.3 to GRC 10.1)
Hands on experience implementing EAM, ARA, ARM, and BRM
LDAP Integration to GRC 10.1 for User Authentication
GRC, CUA, BPC Integration
Segregation of Duties and Audit (SOD)
Technical Qualifications
SAP R/3 (4.5 B, 4.6B, 4.6C, 4.7 Enterprise, ECC 5.0, 6.0)
SAP BW/v3.0 and 3.5, BI 7.1, CUA & GRC Integration
GRC 10.1, SAFE (PWC Tool),
MS-Excel, PowerPoint, MS-Visio, MS-Project
ORACLE 8i, 9i, Microsoft SQL Serve
PROFESSIONAL EXPERIENCE
GE Aviation, TX
Duration: March 2014 to till Date
Role SAP Security Lead
Page 1 of 5
Pavankumar
Sr.SAP Security & GRC
Consultant
Implemented GRC Access Control 10.1, upgrading the existing GRC 5.3
Responsible for Blueprint documentation of as is and to be process, Master Data accuracy, test scripts, training
documentation.
Developed Role Provisioning strategy automatically assign Common/Generic Roles to users
Configured MSMP Workflow Settings, completed post installation steps using SPRO and NWBC
Document the cutover plan, and coordinate with Release management team for successful implementation.
BRF+ decision table and MSMP workflow configuration including User Access Review (UAR) process
Work with SAP Service Support Team to resolve GRC 10.1 product defects on CUA Integration.
Design and Integrate BPC, GRC Access provisioning, CUA to meet the Security Audit requirements.
Good understanding of BPC Security design and BPC Security tables
Setting up users, teams, task profiles, data access profiles in BPC
Developed the User Provisioning Strategy to include HR Triggers for provisioning and termination
Integrated SAP Portal with ABAP systems
Deployed Password Self Service
Used scripting tools like CATT and ECATT for mass user administration.
Developed an SOD team to resolve User SOD conflicts by developing controls and updating policies / procedures
Troubleshoot Analysis Authorization
Analyzed Approval SOD reports and resolved SOD conflicts
Created Fire Fighter Roles and Fire Fighter Ids for Super User Privilege Access
Authorization checks using transaction SU24 and maintained check indicators for Transaction codes
Develop functionality, Testing Scenarios, and UAT scripts as per requirements and ensure that all test cases are passed
Defect management in HP QC.
Work with SAP Service Development team, to solve complex integration issues.
Collaborate with offshore teams for effective project delivery
GE Power Grid, TX
Duration: March 2013 to March 2014
Role SAP Security Lead
Fixed authorization issues with the help of authorization analysis (SU53) and system trace (ST01)
Page 2 of 5
Pavankumar
Sr.SAP Security & GRC
Consultant
Application security Support for GRC AC 5.3, ECC 6.0, BI 7.0, CRM 7.0
Implemented CRM Sales & Services and configured business roles and PFCG roles.
Expert in UI Component security, and developed task based roles for CRM business roles.
Worked with Internal Audit team to design Mitigating Controls for remediating known risks.
PFCG Role administration and User Administration via SU01 transaction code.
Fixed authorization issues with the help of authorization analysis (SU53) and system trace (ST01)
SOX clean up Redesigned the Roles as per business requirements.
Performed User master maintenance such as creating new users, assigning roles, deleting users, renaming users, resetting password,
Lock/unlock User ID using transaction code SU01
Secured tables and programs by creating authorization groups
Well versed with creation of roles viz. Composite, Single and Derived roles using PFCG.
Created Authorization groups using SE54 and assigned them in a Role using S_TABU_DIS also update the authorization group in SU24
for the transaction code.
Worked on critical authorization Objects like S_TABU_DIS, S_TABU_CLI, S_TABU_LIN.
Worked on SU24 to maintain Check Indicators for the Transaction Codes.
Extensively used SUIM (User Information System) to generate various reports for audit monitoring
Developed security role/activity group/activity groups for BW Queries and reports
Pavankumar
Sr.SAP Security & GRC
Consultant
Microsoft - Seattle
Duration: Feb 2008 July 2009
Project Description: Implementation
Role: SAP Security Analyst
Responsibilities/Deliverables:
Fixed authorization issues with the help of authorization analysis (SU53) and system trace (ST01)
Bridge Stone
Duration: June 2007-feb2008
Project Description: Administration
Role: Basis consultant
Page 4 of 5
Pavankumar
Sr.SAP Security & GRC
Consultant
Responsibilities/Deliverables:
Page 5 of 5