Design of identity and access management for new system landscape including Fiori, connecting various target systems.
Integration of MS Azure, SAP S/4 HANA and legacy system migration.
Creation of decision templates for GRC, EAM prototypes and implementation concepts.
Identification of dependencies, security checks, provider management and coordination of various internal and external stakeholders.
Jan 2024 - Dec 2024
1 year
Germany
Subproject Lead: Migration of S/4 Trading Processes
Salzgitter Mannesmann
Migration of authorizations from R/3 legacy system to new SAP S/4 HANA processes with extensive development, workflow specification and implementation of new procedures including Fiori integration.
Cutover planning, data migration analysis and stakeholder coordination.
Analysis, processing and documentation with Xiting XAMS, SAP GRC and CheckAud.
Jan 2023 - Dec 2023
1 year
Germany
Expert: Governance, Risk & Compliance / Health Check
E.ON
Update of rule sets and authorization concepts for GRC in connection with ERP, CRM and identity management.
Security status analysis, optimization of GRC solution to monitor critical permissions and ensure segregation of duties.
Configuration of approval workflows for critical permissions and SoD including mitigation, audit preparation and risk management review with EAM Firefighter concept creation and review.
Jan 2022 - Dec 2022
1 year
Germany
Expert: BTP Process Implementation
Big Dutchman
Concepts and implementation of infrastructure functionality to increase value creation and security level through SAP S/4 HANA BTP processes including Fiori.
Implementation of IAS for single sign-on with Azure Active Directory as identity provider, IPS for synchronization and CALM as system management.
New workflows with data model design, interface development and system hardening.
Discussion of action options in workshops with customizing alignment.
Advising business units on requirements and building automation.
Based on business definitions, efficient administration structures were built.
Jan 2021 - Dec 2021
1 year
Germany
Expert: Global ERP/Logistics SAP Expansion with GRC
Wieland
Upon acquisition of new organizational units, processes were improved using the SAP Business Technology Platform, GRC customizing was extended accordingly and comprehensive functionality for IAM and organizational structures was created.
Consistent coverage of data structures in SAP HANA was ensured through analysis, tracing and workshops.
Efficient methodology and innovative concepts improved SSO operations.
Jan 2020 - Dec 2020
1 year
Germany
External Project Lead: SAP HANA DB/BTP Authorization Concept
BerlinHyp
Creation of the SAP HANA Analytics authorization concept for native HANA DB permissions, XSA system configuration and role model.
Definition of security policies, role structure with FSDM privileges and GRC integration for risk matrix, role building and access control workflows.
Jan 2019 - Dec 2019
1 year
Germany
Expert: Encryption of System Connections
HSBC
Integration of Oracle, SAP system landscape GRC, BTP and security appliances as well as cloud services for encrypted communication with authentication using various technologies (RSA RADIUS, Kerberos, SNC, SPNEGO, SAML, LDAP/AD, 2FA, Java).
System configuration with parameter definition and IT architecture design.
Log analysis and authentication tracing.
Jan 2019 - Dec 2019
1 year
Germany
Expert: Governance, Risk & Compliance in New Banking System
W&W
Creation of architecture concepts and roles for GRC EAM/XAMS with business partners considering segregation of duties via CheckAud with customer-specific developments in financial workflows.
Support of process tests and analysis of authorization errors, aggregated objects and critical transactions in connected systems for One Identity Manager.
Setup of approver structures, role provisioning and user management for critical infrastructure.
Analysis of role consolidation with automation.
Jan 2018 - Dec 2018
1 year
Germany
Expert: Authorizations Finance & Controlling
Daimler
Further development of the system landscape with implementation of GRC Access Control, EAM, SNC and CheckAud.
Optimization of multi-level role model with segregation of duties, delimitation of critical permissions and global deployment including providers.
In the security-critical system environment, an integrated E2E access management was implemented in preparation for S/4 HANA with Fiori for authenticity, identity, authorization, availability and traceability.
Jan 2018 - Dec 2018
1 year
Germany
Expert: Governance, Risk & Compliance
Tchibo
User management and configuration for role templates with approver.
Analysis of GRC processes and advising decision-makers on workflows with Fiori.
Alignment of target systems and monitoring of interfaces with control of permissions and access conflicts and monitoring for log review.
Documentation, stakeholder coordination and system administration.
Jan 2017 - Dec 2017
1 year
Austria
Expert: SAP IS-U Implementation
TIWAG
Conversion of functional roles to resolve segregation of duties conflicts.
IAM transaction distribution analysis with implementation of ERP, GRC, Solution Manager and SAP Basis.
Jan 2016 - Dec 2016
1 year
Germany
Consultant: Identity Management
WAGO
Optimization of complex SAP system landscape with SAP ERP and connected systems including various approval workflows (~250 departments/4,000 users worldwide).
Focus on efficient processes and maximum automation from SAP HCM.
Preparation for OSI audit by ECB with identity management and authorization concepts.
Security status analysis, building of GRC solution as a platform for monitoring segregation of duties, access management and monitoring of system parameters through Process Control CCM.
IT architecture of new on-premise core banking system with encryption/authenticity requirements.
Jan 2014 - Dec 2014
1 year
Colombia
Solution Architect: IFRS with SAP AFI
Bancolombia
Ensuring compliance through IAM workflows for a new banking environment implementing a new accounting schema aligned with IFRS.
Design of security policies, roles and authorization model with administrative procedures.
Jan 2013 - Dec 2013
1 year
Germany
Expert: Integrated Access Management GRC
Deutsche Bank
In a complex and security-critical system environment, integrated access management was implemented.
Authorization concepts for the banking solution, deposit management and treasury were created.
Based on audit findings, a rule set was established.
Jan 2012 - Dec 2012
1 year
Germany
Consultant: MaRisk-compliant User Management
LBBW
Development of identity management with integration of diverse system architectures (host, Unix, Windows, SAP) through implemented rule set to ensure segregation of duties.
Summary
Concept, implementation and automation of SAP system landscapes
Permissions, identity management, single sign-on and role determination for SAP
Preparation of compliance documentation and IKR action guidelines
Design of governance, risk & compliance solutions with rule- and requirement-compliant specifications for all systems using AC-EAM and PC-CCM
Audits according to company guidelines to implement compliance
Solution development using various technologies and products as well as AI
IT security in integrity, authenticity, confidentiality, traceability and availability
International project management with reliable results