Impact You’ll Make in this Role
- Providing subject‑matter expertise in SAP Security and GRC, leading design, implementation, and support activities across SAP On‑Premise applications such as S/4HANA and GTS, as well as cloud solutions including BTP, IBP, and Ariba.
- Partnering closely with SAP process owners, functional teams, and technical stakeholders to understand business requirements, proactively identify risks, and deliver secure, compliant, and scalable solutions.
- Leading complex incident resolution and problem management, including root‑cause analysis and preventive control enhancements across SAP Security and GRC domains.
- Owning role design, remediation, and optimization, ensuring adherence to least‑privilege principles, segregation of duties (SoD), and audit requirements.
- Managing SAP GRC activities end‑to‑end, including Fire Fighter administration and log reviews, GRC workflow management, access risk analysis, mitigation controls, and compliance reporting.
- Driving audit and compliance initiatives, supporting SOX and internal/external audits through evidence preparation, control testing, and continuous control improvement.
- Leading or contributing to the implementation and enhancement of the full SAP GRC suite, ensuring solutions meet design standards, quality benchmarks, and regulatory obligations.
- Mentoring junior analysts and providing technical guidance, helping build team capability and ensuring consistent delivery of high‑quality security services.
- Demonstrating strong written and verbal communication skills, effectively influencing stakeholders, documenting designs, and presenting security risks and recommendations to leadership.
- Ready to work in rotational shifts on weekdays and take on call support during weekend/holidays.
Qualifications
- Bachelor’s Degree or higher
- 7+ years of hands‑on experience in SAP Security, GRC Administration and Cloud based SAP Application Security
- Minimum 7 years of experience in SAP GRC 10.x/12.x Access Control modules and minimum of 7 years in S/4 Hana Security and GRC Implementation experience with focus on role authorizations.
- Experience with development and implementation of the full suite of SAP GRC products, at least SAP GRC Access Control and SAP GRC Process Control but also experience in other SAP applications such as HANA, S4, Fiori, GRC Risk Management, Audit Management etc.
- In depth working knowledge of GRC components (Access Request Management, Access Risk Analysis, User access review and EAM) and SoD.
- Good knowledge on S4 HANA, FIORI, HANA and BTP Security concepts.
- 7+ years’ hands‑on experience creating HANA DB security roles, and user setup for developers & modelers, database administrators and end users.
- Ready to work in rotational shifts on weekdays and take on call support during weekend/holidays.
Nice to Have Skills
- SOX/GRC Control experience and GRC configuration, MSMP and BRF+.
- Life Science (GxP) experience is a plus.
- Experience with developing, implementing SAP Security (Fiori, ECC and S/4HANA), and experience with designing a SoD ruleset in SAP GRC Access Control.
- Experience with translating control framework requirements into an authorization concept.
Location: Bangalore (Hybrid).
As it was with 3M, at Solventum all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.