Overview
Lead and scale the SAP Security and GRC capability within the Business Application Risk Solutions practice. Lead client engagements, oversee delivery quality, develop team capability, support practice growth, and work closely with U.S. and India leadership.
What you'll do
- Help lead the SAP Security and GRC team and support capability growth across delivery, people development, methodologies, and market-facing initiatives.
- Lead end-to-end SAP Security and GRC engagements across implementation, transformation, assessment, optimization, controls transformation, and managed services programs.
- Manage SAP Security workstreams in SAP ECC and SAP S/4HANA environments, including requirements gathering, solution design, role build, testing, deployment, cutover, hypercare, and post-go-live support.
- Lead SAP Security design and access governance activities, including role design, role redesign, authorization troubleshooting, Fiori authorizations, SoD analysis, sensitive access reviews, emergency access management, user access reviews, and access remediation.
- Lead SAP GRC Access Control implementation and enhancement activities across ARA, ARM, EAM, BRM, MSMP workflows, BRF+, ruleset design, risk analysis, mitigation controls, connectors, synchronization jobs, and related GRC configuration activities.
- Support SAP GRC Process Control initiatives, including control framework mapping, risk and control configuration, automated monitoring, business rules, data sources, control testing, and continuous controls monitoring.
- Translate business process, compliance, audit, and internal control requirements into practical SAP Security and GRC solutions aligned with client risk and regulatory requirements.
- Advise clients on SAP Security and access governance across integrated SAP landscapes, including Fiori, HANA, BW/BI, BTP, Ariba, IBP, MDG, SuccessFactors, and other SAP applications, as applicable.
- Manage client stakeholders, engagement plans, project timelines, issue resolution, deliverable quality, and team performance across multiple concurrent engagements.
- Deliver practical recommendations, maintain strong client relationships, and ensure high-quality engagement outcomes.
- Develop reusable methodologies, solution accelerators, delivery templates, training materials, knowledge repositories, and other practice assets.
- Maintain awareness of emerging SAP technologies, including SAP Joule, SAP BTP, SAP IAG, SAP Cloud Identity Services, automation, analytics, and AI-enabled risk and controls solutions.
- Ensure engagement documentation, deliverables, and work products comply with firm quality standards and demonstrate sound professional judgment.
- Work with a team to provide services to numerous clients simultaneously.
- Work collaboratively and communicate effectively with RSM consulting professionals, supervisors, and senior management in the U.S. on a daily basis.
- Exercise professional skepticism, maintain confidentiality, and adhere to applicable professional standards, firm policies, and code of ethics.
What you'll need
- Bachelor’s or master’s degree in Engineering, Technology, Information Systems, Business, Finance, or a related discipline.
- Minimum 4 years of professional experience in SAP Security, SAP GRC and IT controls.
- Deep expertise in SAP Security across SAP ECC and SAP S/4HANA, including authorization concepts, role design, authorization object analysis, access troubleshooting, Fiori authorizations, and access remediation.
- Strong hands-on experience with SAP GRC Access Control, including ARA, ARM, EAM, BRM, MSMP workflows, BRF+, connectors, synchronization jobs, ruleset maintenance, risk analysis, and mitigation controls.
- Experience leading complex SAP Security and GRC engagements across implementation, transformation, assessment, optimization, controls, and managed services programs.
- Experience managing delivery teams, reviewing work products, mentoring resources, and building technical capability within SAP Security and GRC teams.
- Strong project management, stakeholder management, communication, analytical thinking, problem-solving, and leadership skills.
- Demonstrated ability to work in high-pressure client delivery environments while managing competing priorities and maintaining quality standards.
- Excellent verbal, written, and interpersonal communication skills in English, as the position requires frequent communication with RSM International clients.
- Must exhibit and have demonstrated excellent organization and project management, communication, interpersonal, and team collaboration skills.
Nice to have
- Prior experience with a public accounting firm, large consulting organization, or global delivery environment.
- Practical experience with SAP GRC Process Control, including control design, automated monitoring, business rules, data sources, control testing, and continuous controls monitoring.
- Exposure to other GRC, identity governance, access management, compliance, control monitoring, or risk management tools.
- Exposure to SAP Joule, SAP BTP, SAP IAG, SAP Cloud Identity Services, automation, analytics, AI-enabled controls, and emerging SAP technologies.
- Experience with SAP HANA, BW/BI, Ariba, IBP, MDG, SuccessFactors, BDC, SAC, or other SAP public cloud and integrated applications.
- Experience with SOX, COSO, COBIT, ISO, NIST, HIPAA, FDA, and other IT controls methodologies and frameworks.
- Relevant certifications such as SAP Security, SAP GRC, CISA, CRISC, CISSP, CISM, or equivalent certifications.
Details
- Location: Gurugram.
- Communicate with RSM consulting professionals, supervisors, and senior management in the U.S. on a daily basis.
- Professionally present themselves at the office and the client’s meetings.
Read the full description and apply on the company’s own careers page.