SAP Security & GRC Consultant with 5+ years supporting enterprise SAP landscapes (S/4HANA, ECC, Fiori, HANA) specializing in SAP GRC Access Control (ARA/ARM/EAM), role design (PFCCG), and SoD risk management. Experienced in S/4HANA transformations—translating security requirements into role/authorization designs, conducting security testing (SIT/UAT), and supporting cutover/hypercare activities aligned to project governance and SAP Activate phases. Strong background in Firefighter/emergency access management, SOX/GDPR compliance, stakeholder coordination, WRICEF/security requirements governance, audit evidence/KPI reporting, and knowledge transfer to support teams.Hands-on expertise in SAP GRC Access Control 10.1/12.0, including Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM/Firefighter), Business Role Management (BRM), Segregation of Duties (SoD), risk remediation, and access governance.Strong SAP authorization and role-design experience using PFCCG, Single/Composite/Derived/Business Roles, authorization objects, RBAC, least privilege, SU124, SU25, and end-to-end user access lifecycle processes.Experienced in authorization troubleshooting and root-cause analysis using SU53, SUIM, ST01, STAUTHTRACE, RSECADMIN, AGR/USR/UST tables, and authorization-object analysis.Background in SAP security governance, compliance, audits, S/4HANA transformations, implementations, rollouts, upgrades, cutover, hypercare, ITGC, SOX, GDPR, ICS, GMP/GxP, UAR, ServiceNow, Jira, ChaRM, HPQC, SECATT, and SAP GUI Scripting.