SAP Authorization and Security Specialist
Bosch
Company Description
Bosch Global Software Technologies Private Limited is a 100% owned subsidiary of Robert Bosch GmbH, one of the world's leading global supplier of technology and services, offering end-to-end Engineering, IT and Business Solutions. With over 27,000+ associates, it’s the largest software development center of Bosch, outside Germany, indicating that it is the Technology Powerhouse of Bosch in India with a global footprint and presence in the US, Europe and the Asia Pacific region.
Job Description
Key Responsibilities & Required Skills
- Support SAP S/4HANA system conversion (Brownfield / Upgrade) activities from a security perspective, including impact assessment, role remediation, and authorization optimization.
- Analyze existing SAP ECC roles and authorizations and perform role redesign, remediation, and optimization to align with S/4HANA authorization concepts.
- Support SAP S/4HANA rollout projects by designing and adapting roles for new company codes, plants, sales organizations, or geographic regions while maintaining global security standards.
- Maintain and enhance single, derived, and composite roles using PFCG, ensuring alignment with organizational structure and business requirements.
- Review and update SU24 authorization defaults, authorization objects, and role menus as part of the S/4HANA conversion and rollout activities.
- Implement and support SAP Fiori security, including configuration of catalogs, spaces/pages, business roles, and OData service authorization.
- Perform Segregation of Duties (SoD) risk analysis and remediate access conflicts using SAP GRC Access Control.
- Configure and support SAP GRC modules, including Access Risk Analysis (ARA), Access Request Management (ARM), and Emergency Access Management (EAM).
- Support role remediation and access risk mitigation activities during system upgrade, rollout, and post-go-live phases.
- Configure and support SAP Identity Authentication Service (IAS) for authentication policies, identity federation, and Single Sign-On (SSO) across SAP systems.
- Configure SAP Identity Provisioning Service (IPS) to enable automated user and role provisioning between SAP systems and cloud applications.
Don't want to miss the next one?
Subscribe to daily email alerts for roles matching your interests.