Solothurn, Switzerland
IT SAP security specialist, team lead, actively experienced in SAP user access management, role management, risk management, security controls. Allrounder with solid, hands-on expertise in SAP GRC, configuring, testing, and maintaining SAP GRC solutions, ensuring that all governance, risk, and compliance processes are streamlined and compliant with industry standards.
In my most recent assignment I was the security lead for SAP platforms of Johnson and Johnson (Medical Devices) in Switzerland and collaborating with my EMEA colleagues. I was owner and main responsible for GRC AC system from security stand point; I was leading an off-shore team in area of user management, role management, risk management; security and SOx control execution. Responsible for internal and external audits. I was part of the S/4 implementation team (with small off-shore team) responsible for role development and user management for new roll-outs. Before I was owner of the GRC 10.0 system; responsible for role and user access management for Swiss MedTech SAP platform; development and improvements in security area; daily business support, issue troubleshooting and resolution; security control definition and execution; internal and external audits, change and test management collaborating with basis team, technical quality team, compliance team, auditors as well as business. Before I was valuable member of GRC 10.0 implementation team contributing to the design and project execution; documentation; test management, troubleshooting; improvements; part of the small security team, responsible for SAP ERP, BI, Solman, GRC GTS, GRC AC user and role management; security control execution; internal end external audits; and more..
First and second level support; responsible for daily business troubleshooting in user and role management in SAP security area.
Data analyst, responsible for various MS Access databases, data collection and data reporting.