IMPORTANT: Suppliers should not submit workers whose physical residence is within the following states due to Intuitive tax and operating entity structure: Alabama, Arkansas, Delaware, Florida, Indiana, Iowa, Louisiana, Maryland, Mississippi, Missouri, Oklahoma, Pennsylvania, South Carolina, and Tennessee. Please interpret this as Intuitive policy to which all suppliers are required to comply.
*
*Important Notes to supplier: * (US)
- Sub-vending not allowed
- Worker need to be on your direct W2.
- Need to do a proper-pre technical screening.
- Need to have recruiter screening summary on top of resume.
- Including Skill matrix and Writeup from worker on these skills is a plus.
- All past projects should have Durations and locations.
- Current location must be mentioned on the resume.
- Actual Title of the role: SAP Security Analyst - Consultant
- Duration: 12 months
- Max billBR0
- Onsite/Hybrid/Remote: Onsite
- Only Locals/Nonlocals can be submitted: Only locals
- Mode of interview: Primarily Zoom (Video)
No of rounds of interview: 2 to 3 max
Key Responsibilities
- Design, build, and maintain SAP S/4HANA authorization roles and profiles using PFCG, including single, composite, and derived roles.
- Configure and secure Fiori Launchpad, including catalogs, groups, tiles, and spaces/pages for embedded and standalone Fiori deployments.
- Maintain front-end (Fiori Gateway/BTP) and back-end (S/4HANA) role synchronization, ensuring correct mapping between OData services, ICF nodes, and backend authorization objects.
- Perform user administration tasks: user creation, role assignment, mass user maintenance, and periodic access reviews.
- Troubleshoot authorization errors using SU53, ST01/STAUTHTRACE, and SU24 to resolve missing authorizations quickly.
- Support segregation of duties (SoD) analysis and remediation (risk analysis, mitigation, firefighter/emergency access management).
- Build and maintain security for Fiori apps including transactional, analytical, and factsheet app types, and coordinate with functional teams to align role design with business process requirements.
- Execute role redesign and cleanup projects, including authorization object trace analysis and role optimization (SU25 methodology).
- Support S/4HANA upgrade and migration projects with authorization impact analysis, testing, and remediation.
- Maintain documentation for role matrices, access provisioning procedures, and audit/compliance evidence.
- Respond to and resolve day-to-day SAP security tickets within SLA.
Required Qualifications
- 5+ years of hands-on SAP Security experience, with solid, demonstrable experience in SAP S/4HANA security and Fiori/UI5 app authorizations.
- Deep working knowledge of PFCG role maintenance, authorization objects, SU24 proposal maintenance, and derived/composite role structures.
- Practical experience securing Fiori Launchpad (catalogs, groups, spaces, pages, tiles) in both embedded (S/4HANA) and standalone (SAP BTP) scenarios.
- Experience with OData service authorization and Gateway (front-end) to back-end role alignment.
- Strong troubleshooting skills using SU53, STAUTHTRACE/ST01, SUIM, and authorization trace tools.
- Experience with SoD/risk analysis.
- Familiarity with SAP Fiori app types (transactional, analytical, factsheet) and their authorization requirements.
- Experience supporting S/4HANA implementation, upgrade, or migration projects from a security perspective.
Ability to work independently with minimal oversight and deliver hands-on configuration, not just documentation or strategy.
Enable Skills-Based Hiring No Job Posting Type
Additional Details
- Pre-identified worker (First Name, Last Name) & Supplier Name : (No Value)
- Job Posting Type : Agency Recruited Worker Required
- Shift : Regular Shift
- Worker Legal Name (For Manager Sourced Only) : (No Value)