ImpactQA | SAP Security and GRC Consultant

3 days ago


bangalore, India ImpactQA Full time

Company Description

Featured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated seamlessly into the Software Development Life Cycle. Leveraging more than a decade of experience, we cater to a diverse portfolio of clients across a spectrum of business domains.


Our esteemed client roster includes Coinbase, Starbucks, TEREX, DTDC, Schneider Electric, PowerSchool, Lone Wolf, Majid Al Futtaim, PVR, Yes Bank, Panasonic, Deloitte, Rocket Internet, KFC, Terex, and many more. We offer unique combinations of onshore, offshore, and crowd testing ensuring cost efficiency and support tailored to Agile and Continuous Testing environments. Our headquarters is in New York, and we have delivery centers in the US, UK, and India.


At ImpactQA, our strength is in efficiently delivering leading-edge software testing services and support to customers, and we’re proud to set the standard for success in our industry. To help us continue growing the role requires outstanding organizational, communication, and leadership skills and an ability to develop innovative solutions that push boundaries.


Job Title: SAP Security and GRC Consultant

Job Type: Full Time

Location: Noida / Bengaluru India


Role Overview:

We are seeking a highly skilled SAP Security and GRC Consultant with over 10 years of comprehensive experience in SAP Security, GRC Access Control, and Basis Administration. The ideal candidate will excel in managing complex SAP landscapes, implementing robust security frameworks, and ensuring compliance with industry standards across SAP ecosystems.


Key Responsibilities:

  • Manage user and role administration across production and non-production SAP environments.
  • Design, develop, and troubleshoot single, composite, and derived roles.
  • Ensure the integrity of SAP security through regular audits, risk analysis, and system monitoring.
  • Configure and administer GRC Access Control components such as Emergency Access Management (EAM), Access Risk Analysis (ARA), and Access Request Management (ARM).
  • Conduct risk analysis at user and role levels, mitigating SoD violations.
  • Develop and execute SAP GRC cleanup activities, including user and role-level reviews.
  • Utilize tools such as Onapsis to conduct vulnerability assessments and ensure compliance with regulatory standards.
  • Collaborate with cross-functional teams to identify, assess, and mitigate security risks in SAP environments using Onapsis' cutting-edge security technologies.
  • Enhancement Security postures for SAP and other enterprise applications through the deployment of Onapsis' advanced protection tools.
  • Educate and advise clients on best practices for securing their business-critical systems, leveraging Onapsis' expertise in application-level security.
  • Utilize Onapsis' industry-leading platform to deliver comprehensive vulnerability management, threat detection, and incident response for enterprise applications.
  • Perform code profiling and secure SAP development, addressing audit findings effectively.
  • Maintain compliance with industry standards (e.g., GDPR, SOX) and internal security policies.
  • Perform tasks such as kernel upgrades, transport management, and performance monitoring.
  • Troubleshoot and resolve SAP authorization issues in collaboration with functional and technical teams.
  • Develop and manage roles, addressing app-related security issues. Perform user administration, role creation, and troubleshooting.
  • Collaborate with cross-functional teams to gather and analyze security requirements.
  • Create and maintain Standard Operating Procedures (SOPs) for SAP security tasks and knowledge sharing.
  • Facilitate user training sessions on SAP security best practices and compliance requirements.


Required Skills and Qualifications:

  • Total years of experience: 10+ years in similar roles.
  • In-depth knowledge of SAP Security, GRC Access Control (10.x, 12.x), and Basis Administration.
  • Experience with S/4 HANA, Fiori, and BW security
  • Proficiency in Onapsis for vulnerability management and code profiling.
  • Onapsis Assess: For automated vulnerability management.
  • Onapsis Defend: For detecting and responding to threats in real time.
  • Onapsis Code Profiler: For static code analysis in SAP environments.


Experience with complementary tools:

  • Penetration testing: Burp Suite, OWASP ZAP.
  • Secure code analysis: Fortify, Veracode, Checkmarx


Proficiency in SAP Security tools:

  • SAP Code Vulnerability Analyzer (CVA).
  • SAP Security Optimization Services (SOS).
  • SAP Enterprise Threat Detection (ETD).
  • Strong analytical and problem-solving abilities.


Preferred Qualifications:

Certifications in:

  • Onapsis Certified Expert (OCE).
  • SAP Certified Technology Specialist in Security.
  • CISSP, CISM, or CEH.
  • Experience in the Oil and Gas Domain.


If you have the requisite skills and experience, we encourage you to apply and join us on this rewarding journey.


ImpactQA Is Committed to Equality

ImpactQA is proud to be an equal opportunity and affirmative action employer. We do not discriminate based on race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other characteristic legally protected by the laws of the jurisdiction in which you are being considered for hire.



  • bangalore, India ImpactQA Full time

    Company DescriptionFeatured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company Description Featured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company DescriptionFeatured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company DescriptionFeatured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company Description Featured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company Description Featured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • bangalore, India ImpactQA Full time

    Company DescriptionFeatured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services integrated...


  • Bangalore/Hyderabad, India Jenesis Technologies and Consulting Private Full time

    Job SummaryWe are seeking a highly skilled Senior SAP Security Consultant to join our team at Jenesis Technologies and Consulting Private. As a seasoned expert in SAP GRC, you will play a key role in designing and implementing robust security solutions for our clients.About the RoleIn this exciting opportunity, you will be responsible for collaborating with...

  • SAP Consultant

    3 weeks ago


    Bangalore, India Quess Corp Limited Full time

    Primary Skill: SAP GRC/Security Consultant Experience: 4 to 8 Years Project : Support Project Notice: 15 Days Less Job Description Technical Skill sets : SAP GRC ∙ 4+ years of experience of working in SAP security and GRC Access control Application Management Services. ∙ Good Team player with a positive attitude and good written and...

  • SAP Consultant

    1 month ago


    Bangalore/Hyderabad, India Jenesis Technologies and Consulting Private Full time

    Role : SAP GRC Security with Hana. Job description : - 8 to 10years of experience with SAP Security; SAP GRC and S/4 Hana - Excellent client facing role and ability to get more business - Should have good knowledge on SAP IDM and SAP BTP Experience in full cycle SAP S/4 or ECC - Security assessments; design; and implementations as well as...


  • Bangalore, India ImpactQA Full time

    Company Description Featured by Everest Group among the top QA companies to watch out for, ImpactQA is a global software testing and quality assurance consulting company that provides services such as Quality Engineering, AI-based Test Automation, Performance Engineering, Security Testing, and a suite of continuous and automated testing services...


  • Bangalore, India Cigres Technologies Private Limited Full time

    SAP Security Consultant Bangalore, Karnataka, India Job Type Full Time About the Role • Candidates should have Minimum of 5 years of experience in SAP Authorizations and Security • Proficiency in SAP role & User management. • User Authorization: Manage user access controls, including role design, role assignments, and authorization...


  • Bangalore, India Cigres Technologies Private Limited Full time

    SAP Security Consultant Bangalore, Karnataka, India Job Type Full Time About the Role • Candidates should have Minimum of 5 years of experience in SAP Authorizations and Security • Proficiency in SAP role & User management. • User Authorization: Manage user access controls, including role design, role assignments, and authorization...


  • Bangalore, India Deloitte Full time

    Position: Associate Director, Technology & Transformation (SAP Consulting) About this role: As a team leader, you will manage and lead a high-performing team, drive strategic initiatives, and contribute to our growth. You’ll collaborate with cross-functional stakeholders, ensuring operational excellence and fostering a positive work environment. ...


  • bangalore, India Quess Corp Limited Full time

    Primary Skill: SAP GRC/Security ConsultantExperience: 4 to 8 YearsProject : Support ProjectNotice: 15 Days LessJob DescriptionTechnical Skill sets : SAP GRC∙ 4+ years of experience of working in SAP security and GRC Access control Application Management Services.∙ Good Team player with a positive attitude and good written and verbal communication...


  • bangalore, India ZettaMine Labs Pvt. Ltd. Full time

    Hello,Greetings from ZettaMine Labs Pvt Ltd !!We are looking for SAP GRC Security Consultant Multiple Projects for PAN India locations (Hyderabad, Mumbai, Pune, Bangalore, Delhi, Chennai, Etc)Looking only for Immediate JoinersJob Role : SAP GRC Security ConsultantLocation : PAN IndiaNotice Period : Immediate joinersExperience : 6 to 15...


  • Bangalore Metropolitan Area, India Cigres Technologies Private Limited Full time

    SAP Security ConsultantBangalore, Karnataka, IndiaJob TypeFull TimeAbout the Role• Candidates should have Minimum of 5 years of experience in SAP Authorizations and Security• Proficiency in SAP role & User management.• User Authorization: Manage user access controls, including role design, role assignments, and authorization profiles to ensure least...


  • Bangalore, India Deloitte Full time

    Position: Associate Director, Technology & Transformation (SAP Consulting) About this role: As a team leader, you will manage and lead a high-performing team, drive strategic initiatives, and contribute to our growth. You’ll collaborate with cross-functional stakeholders, ensuring operational excellence and fostering a positive work environment. ...


  • Bangalore Metropolitan Area, India Cigres Technologies Private Limited Full time

    SAP Security ConsultantApply NowBangalore, Karnataka, IndiaJob TypeFull TimeAbout the Role• Candidates should have Minimum of 5 years of experience in SAP Authorizations and Security• Proficiency in SAP role & User management.• User Authorization: Manage user access controls, including role design, role assignments, and authorization profiles to ensure...

  • SAP GRC Security

    4 weeks ago


    Bangalore, India Tata Consultancy Services Full time

    Greetings from Tata Consulting Services TCS is Hiring for SAP GRC Security Experience : 6-12 years Location: Bangalore/Hyderabad Please find the JD below Mandatory Skillset: Worked in GRC SOX Audits Role Creation/Modifications Operation Support, MEC/YEC & MTP Activities Shifts include APJ, EMEA & AMS Good To Have: Worked...