Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 5

Suvonkar Bashak Email: sap.suvonkar@gmail.

com

Mobile +91-96866-88388(Bangalore)
+65-8161-4465 (Singapore)

 IT professional with 10.6 years of experience having expertise in SAP GRC AC,PC,RM, HANA Security,
SAP Security, Audit, Compliance Consulting in multiple large global & mid-size client environments.
 Skilled in leading SAP teams responsible for SAP GRC, SAP R/3 Security, EP Security, SAP BW/BI
Security, SAP HR Authorizations, SAP HANA Security, S4 HANA Security, Fiori & HCP Security
 Functional expertise on security perspective for core ERP & New-Dimensional modules FI, CO, MM, PP,
SCM, PS, PM, PLM, CRM & SRM Modules.
 Experienced in working for Implementations, Roll-outs, Go-Live, Post Go-Live and Production Support
activities & Managed ODC & Implementation Roll Out Team as Lead Consultant

Technical Skills:
 GRC Access Control (AC) 10.0, 10.1 Design, Implementation, Testing & Support.
 GRC Process Control (PC) 10.0, 10.1 Design, Implementation, Testing & Support.
 GRC Risk Management (RM) 10.0, 10.1 Design, Implementation
 SAP HANA Security/Authorization
 SoD, SOX & Remediation expertise.
 GRC PC 10.0 & RM 10.0, Capability building in CoE & Use Case Development
 SAP Security Design and Development, SAP R/3, ECC Security
 GRC Fraud Management & Audit Management on HANA
 SOX,IT Audit & review, ITGC, ICF and walkthroughs.
 EP Security & BOBJ Security.
 SAP IDM Support & Management.
 SAP BW/BI Security – Analysis Authorization
 SAP HCM / HR Security – Structural Authorization
 SAP HCP Security Administration

Employer Details:
 K2 Partnering Solutions – Senior SAP Specialist – (Oct 2017 – Present) - Singapore
 Freelance Consultant – (June 2017 – Sep 2017) – Bangalore, Delhi, Chennai
 Ernst & Young LLP: Role – Sr. Consultant/Assistant Manager - (Mar 2015– June 2017) - Mumbai,
Bangalore
 Capgemini India Pvt. Ltd.: Role – Sr. Consultant/Lead- (Oct 2013 – Feb 2015) - Bangalore
 GyanSys Infotech Pvt. Ltd.: Role – Sr. Consultant- (Sept 2011– Oct 2013) - Bangalore
 CIBERsites India Pvt. Ltd.: Role – Associate Consultant (Aug 2009 – Sep 2011) - Bangalore
 NIIT Ltd.: Role - Certified Trainer/Tech Infra Admin (Aug 2007 – Jun 2009) - Kolkata

Page 1 of 5
Education:
 B.Sc(IT) from Kuvempu University (2007)
Global Certifications:
 SAP GRC Certified
 ITIL V3 Foundation Certified
 PRINCE2 Foundation Certified
 CCNA
 MCSE
Project Details:

K2 Partnering Solutions
Position Held: Senior SAP Specialist
Project / Client: Tetra Pak Singapore (Oct 2017– Present)
Scope –SAP HANA Security, Ariba Security, Concur Security, SAP Security, BI Security, BO Security, MDG
Security, MDM Security, VIM Security, Emergency Repair - Security Weaver, HEAT
Role – SAP Security Consultant
 SAP Security Role Design & Implementation– Enabler Concept
 User & Role Management for multiple platform – Ariba, Concur, MDG
 Compliance Management for Baseline Security for Global Sol Man Landscape

Freelance Consultant
Position Held: SAP Consultant
Project / Client: Wabco, Indian Army, Texas Instruments Bangalore,Delhi, Chennai(June2017–
Sep-2017)
Role – SAP GRC Consultant & Corp Trainer
 Consulting for SAP GRC UAR Setup.
 Consulting for ARM Workflow configuration.
 Corporate Training for Indian Army for one of the largest Defense SAP Greenfield Implementation.
 Corporate Training for Wabco, German Automobile Manufacturing company.
 Corporate Training for Texas Instruments.

Ernst & Young LLP


Position Held: Sr. Consultant/Assistant Manager
Project / Client: Unilever Bangalore(Dec 2015 – June 2017)
Scope –SAP HANA Security Implementation, S4 HANA Security, Fiori, IT Sensitive Risk Remediation, SAP PLM,
SAP Solution Manager 7.1 & 7.2, SAP GRC 10.0
Role – SAP Sol Man Security
 Solution Manager Risk Remediation for Users & Roles
 Solution Manager Security 7.1 to 7.2 for Technical Upgrade
 Compliance Management for Baseline Security for Global Sol Man Landscape
Role – SAP PLM Security & Baseline Compliance
 Risk Manager for SAP PLM Global Landscape
 Conducting Internal Review & Audit as per companies custom Baseline Controls
 Approver for Technical Role Change & User Provisioning
Role – SAP HANA & GRC SME
Native HANA SPS 09, SPS 10

Page 2 of 5
 HANA Role design for Technical Users within HANA Landscape
 Requirement gathering, blueprinting and designing HANA Repository Roles.
 Remediating risk by moving from Catalog Roles to Repository Roles
 Self-User Service Setup for HANA Cockpit for password reset and user request creation
 Developed Global Security Baseline for HANA Platform for 4 Landscape
S4 HANA Security Design Enablement
 SAP S4 HANA Catalog Creation in Fiori Launch Pad Designer
 Target mapping from an existing catalog for new catalog creation
 Incorporating Fiori catalog to PFCG role for S4 HANA Role Design
 Used BP (Business Partner) Transaction for Customer, Vendor Master for FI, Logistic.
 Grouping tiles in Fiori through Add Group.
 User specific role design for the Landscape Team

Project / Client: CEAT Mumbai(May 2015 – Nov 2015)


Scope –SAP Role Design Advisory & SAP GRC AC 10.1 Implementation
Role – Implementation consultant in SAP GRC/Security Team
 SAP Role design to go-live for multiple SAP Modules for the manufacturing giant FI, SD, MM, PP, PS, SCM,
HR Modules
 Implementation of GRC AC 10.1, custom rule set implementation as per business.
 Provided End User & captive Team training on GRC Process maintenance.

Project / Client: Pidilite Industries Mumbai(May 2015 – Nov 2015)


Scope – SAP GRC AC 10.1 Upgrade, Rule Set Design & Role Design Advisory
Role – Implementation consultant - SAP GRC
 RuleSet Design as per business requirement for FI, SD, MM, PP, PS, SCM, HR Modules
 GRC AC 10.1 Upgrade from GRC AC 10.0 Suite

Project / Client: Keystone Realtors Pvt. Ltd. Mumbai(Mar2015–April 2015)


Keystones Realtors Pvt. Ltd is a leading premium real estate company in western part of India.
Scope – SAP Security Role Design & Implementation
Role – Implementation Consultant in SAP Advisory Team
 Requirement gathering for multiple modules - FI, SD, MM, PP, PS, SCM, HR
 Role Design and User Mapping, Role Build, Driving UAT testing

Capgemini India Pvt. Ltd.


Position Held: Sr. Consultant
Project / Client: SAP SE Bangalore(June2014 –Feb 2015)
Platform – SAP GRC 10.1, SAP IDM 7.2, SAP ECC, SAP CRM, SAP HANA, SAP BI/BW, IT Direct
Role –Senior Consultant in SAP GRC Global Team
 Global GRC Support for SAP SE for 90,000 user (including partners globally),100K Roles & 2 million plus
profiles, Support for 2000 request flowing per day for any technical issues.
 Supporting any GRC configuration changes, system addition, workflow changes, reports, approver changes,
additional of new roles.
 Global ARM support - request modification, re-routing, supporting SAP SE employee & Partners.

Page 3 of 5
 Designing HANA Roles for Technical & Business Users
 Applying HANA privilege system, object, analytic, package, and application.

Project / Client: Syngenta Bangalore(Oct2013 – June 2014)


Platform – SAP GRC 5.3 (CUP, RAR, SPM), SAP ECC, SAP PI, HPSM Tool
Role – Team Lead & Senior Consultant in SAP GRC Global Compliance Team.
 Owner of Fire fighter process with critical & unique 4-eye concept specific to business.
 Part of Compliance approvers for all CUP & Fire Fighter request globally for 79 countries.
 Management reporting of SoD of 79 countries & Fire Fighter usage both technical & business.
 Final level approver for provisioning, SoD mitigation application & Fire Fighter process.

Project / Client: Transversal (Capgemini GRC CoE) Bangalore(Oct 2013 – Feb 2015)
Platform – SAP GRC 10.0, 10.1 (ARM, ARA, EAM, BRM), SAP GRC PC, RM, SAP Security
Role – Implementation Consultant in SAP GRC CoE
 Managing CoE GRC Systems for Global GRC CoE Competency.
 Identifying Internal Control Implementation for Business process like P2P, O2C, M2D, R2R, H2R
 Implementing & managing GRC Systems for Demo, POC (proof of concept) for prospecting clients.
 Developing proposals for Implementation & Support projects.
 Responding to RFP and assisting in pre-sales activity.

GyanSys InfotechPvt.Ltd. Bangalore(Sept 2011– Oct 2013)


Position Held: Sr. Consultant (SAP GRC/Security)
Project / Client: Stanley Black & Decker
Platform – SAP ECC, SAP BW, SAP PLM,SAP EP, ServiceNow Tool, IDM, SAP GRC AC 5.3, SAP GRC AC & PC
10.0 Implementation & Support
Role – Senior Member/ Lead providing offshore support to the project engagement.
 Trained new joiners on R/3 Security
 Segregation of Duties (SoD) Risk Management Process and identifying the risks, mitigation and remediation.
 Compliance exposure in relation with SoX (Sarbanes Oxley) as security audits in comply with sections 302
(Disclosure) and 404 (Internal Controls) and GRC framework.
 Security functions including User and Role maintenance, SAP security tables and customizing authorization
objects and Solid understanding of Authorization Concept in R/3 environment.
 Initial production instance support for C11 - GRC roll-out and support (ARM, ARA & EAM)
Position Held: Sr. Consultant
Project / Client: Consumer Energy
Scope –SAP GRC PC 10.0 implementation and Legacy Compliance migration to SAP GRC PC 10.0
Role – SAP GRC PC Consultant
 Process Control 10.0 Support for US Based Utility Company
 Activities involved - Data Uploads from Legacy to PC 10.0 through MDUG
 Creating & Managing Transitional, Configuration & Mater Data Based control as per requirement
 Complying to NERC & FERC regulations

CIBERsites India Pvt. Ltd. Bangalore(Aug2009 – Sep 2011)


Position Held: Associate Consultant (SAP Security)
Platform –SAP R/3, SAP BW, SAP SCM, Virsa, SAP Enterprise Portal, CA Unicenter

Page 4 of 5
Role – SAP Security Consultant for Shared Services
 User management with and without CUA
 Transport of roles across clients in the landscape Dev to QA.
 Creating Transport Proposal for Production (PFCG & SE10).

NIIT Ltd. Kolkata(Aug2007–Jun 2009)


Position Held: Certified Trainer & Tech Infra Admin
 SAP ERP Trainer for individual & corporate batches.
 Maintaining company owned ERP system (Encore).
 Instructor lead session for Individual and Corporate audience for IMS curriculum.
 User administration and access management.

Page 5 of 5

You might also like