Lead Consultant Pathlock CCM / GRC Implementation
We are looking for a customer-facing Lead Consultant to drive end-to-end implementations of Pathlock Continuous Controls Monitoring and related IGA / GRC solutions. The role will lead discovery, solution design, configuration, testing, training, go-live, and post-go-live support for customers seeking to automate business process controls, manual controls, control assessments, exception management, and audit reporting.
The ideal candidate will have strong experience in GRC or CCM implementation, deep understanding of SAP and ERP business processes, knowledge of control design and monitoring, and the ability to independently lead customer workshops and implementation workstreams. This role requires both hands‑on configuration ability and lead-level ownership of quality, mentorship, escalation handling, and delivery excellence.
Responsibilities
- Lead Pathlock CCM implementation workstreams from discovery through go-live.
- Conduct workshops to gather business, control, compliance, audit, and reporting requirements.
- Design CCM solutions covering automated controls, manual controls, exception workflows, review cycles, evidence collection, remediation, and dashboards.
- Configure Pathlock CCM functionality based on approved requirements and solution design.
- Define and document control logic, risk-control mappings, data needs, workflow routing, and operational ownership.
- Prepare and execute test scripts; support SIT, UAT, issue resolution, and go-live readiness.
- Create documentation such as requirements, design specifications, configuration workbooks, test results, training guides, and solution operation handbooks.
- Train customer administrators, business users, control owners, auditors, SI partners, and internal team members.
- Serve as technical SME and escalation point for junior consultants and complex implementation issues.
- Review configuration, documentation, and testing outputs to ensure quality and customer readiness.
- Collaborate with solution architects and product teams to address customer requirements and improve solution adoption.
- Support SOW scoping, effort estimation, implementation planning, and delivery methodology improvements.
- Contribute to internal best practices, reusable assets, templates, training materials, and knowledge base content.
Required Qualifications
- 5 - 10 years of experience in GRC, CCM, controls automation, SAP Process Control, ERP controls, audit automation, or related implementation roles.
- At least one end-to-end GRC/CCM/manual controls implementation.
- Hands-on experience with one or more platforms such as Pathlock, Greenlight AVM RA, Security Weaver PA, SAP Process Control, MetricStream, RSA Archer, ServiceNow GRC/IRM, or similar solutions.
- Strong knowledge of business processes and risks across P2P, O2C, R2R, HR, Finance, Procurement, Inventory, Master Data, and ITGC areas.
- Excellent understanding of control design, control setup, control testing, monitoring, exception management, and audit reporting.
- Experience with SAP ECC, SAP S/4HANA, SAP Fiori, SAP Cloud solutions, and SAP security concepts.
- Ability to independently conduct customer workshops, gather requirements, document designs, and manage implementation deliverables.
- Strong communication, analytical, documentation, and problem-solving skills.
Preferred Qualifications
- Experience with Pathlock CCM or Pathlock GRC suite.
- Experience with SAP Process Control, manual controls, automated controls, self-assessments, test plans, and evidence collection.
- Knowledge of SAP GRC Access Control, including ARA, ARM/UAM, EAM, UAR, access certification, SoD analysis, and role management.
- Knowledge of SQL, stored procedures, data mapping, data validation, and integration concepts.
- Knowledge of non-SAP platforms such as Coupa, Salesforce, Microsoft Dynamics 365, Workday, NetSuite, Oracle EBS, Oracle Fusion, HFM, JD Edwards, or PeopleSoft.
- Experience with SaaS/cloud implementation models.
- Knowledge of SOX, ICFR, COSO, COBIT, ISO 27001, NIST, GDPR, PCI DSS, or industry-specific compliance requirements.
- Prior consulting, Big 4, systems integrator, or enterprise software implementation experience.
- Professional certifications such as CISA, CRISC, CISM, CISSP, CPA, SAP GRC, SAP Security, ServiceNow IRM are desirable.