SAP S/4HANA Security Consultant (Security Weaver / Pathlock) - REMOTE
SAP S/4HANA Security Consultant<br><br>(Security Weaver / Pathlock)<br><br>Engagement Details<br><br>Role: SAP S/4HANA Security Consultant (Security Weaver / Pathlock)<br><br>Work Timings: 4:30 PM to 1:30 AM<br><br><strong>Project Background<br><br></strong>We are seeking a senior SAP S/4HANA Security Consultant to work on the security workstream for our brownfield migration.<br><br>This person will own security impact analysis, role redesign, Fiori and HANA security implementation, and SoD/risk management using Security Weaver (Pathlock) as the primary governance tool. Experience with SAP GRC Access Control is also acceptable where Security Weaver exposure is limited.<br><br><strong>Core Requirements (Must)<br><br></strong>Minimum 2–3 full lifecycle ECC S/4HANA brownfield migration projects (hands-on conversion experience).<br><br>Direct, hands-on execution of SU25 (Phases 1–4) and role retrofit activities during conversion.<br><br>Fiori security implementation experience: catalogs, groups, business roles, OData activation, SICF.<br><br>Enterprise role redesign and remediation at scale (analysis and remediation of 1,000+ roles preferred).<br><br>SAP Readiness Check and Simplification Item Catalog impact analysis experience.<br><br>Hands-on experience with Security Weaver (Pathlock) OR SAP GRC Access Control for SoD analysis, simulation, remediation, and reporting.<br><br>Strong understanding of SoD rule design and risk mitigation strategy during ECC S/4 transitions.<br><br>Excellent communication skills.<br><br><strong>Key Responsibilities<br><br></strong>Lead SAP security strategy and execution for ECC S/4HANA transformation (brownfield conversion).<br><br>Perform role impact analysis, cleanup, and remediation; execute SU25 conversion steps and validate role behavior in S/4.<br><br>Design and implement a Fiori-first security model (catalogs, groups, business roles) and secure OData/SICF services.<br><br>Configure and manage Security Weaver (Pathlock) controls; alternatively, align SAP GRC rule sets where applicable.<br><br>Migrate SoD rule sets and control frameworks from ECC to S/4; define interim compensating controls.<br><br>Conduct workshops with functional teams (FI/CO/MM/SD/EWM), Basis, Development, and Audit to validate security models.<br><br>Support cutover, security testing, and post-go-live authorization validation and stabilization.<br><br><strong>Preferred Qualifications<br><br></strong>8+ years of SAP Security experience (ECC and S/4HANA).<br><br>Proven track record in 2+ ECC S/4HANA brownfield conversions.<br><br><strong>Experience With Security Weaver (Pathlock) Strongly Preferred.<br><br></strong>SAP GRC Access Control experience in complex enterprise environments.<br><br>Experience working in SOX/ITGC-regulated environments and preparing audit evidence.<br><br>Excellent communication skills and ability to lead cross-functional workshops.