- Company Name
- afarax
- Job Title
- Consultant(e) SAP Identity Access Management
- Job Description
-
Job Title: SAP Identity Access Management Consultant
Role Summary: Deliver end‑to‑end SAP IDM implementation, integration of SAP and non‑SAP environments, and ongoing optimization of identity provisioning while driving security strategy and governance.
Expectations: French C2, English B1, 5+ years in IAM/SAP security, energy sector and large grid experience, proven team‑leadership, active Ad experience, strong SAP Authorizations & Security background.
Key Responsibilities: • Implement functional SAP IDM specifications (SAP IDM 8.0, Eclipse console)
• Integrate SAP/ABAP, LDAP, ODBC, and non‑SAP systems (Active Directory)
• Maintain and optimize user provisioning/deprovisioning workflows
• Lead RBAC/ABAC workshops, define role models, and produce functional specifications
• Evaluate effort, formalize scope, and support project planning
• Draft technical documentation, procedures, and audit reports
• Apply SoD analysis, ST01/SU53 troubleshooting, SUIM reporting, and audit compliance.
Required Skills: • SAP IDM 8.0, SQL, JavaScript
• IAM concepts: RBAC, ABAC, UEBA
• Connectors: ABAP, LDAP, ODBC; protocols: SSO, Federation, SAML, SSL
• SAP Authorizations & Security: PFCG, SoD, user management (ECC/HANA), ST01, SU53, SUIM, audit, USR*, AGR* tables
• Active Directory: ACLs, GPOs, user provisioning
• Cybersecurity fundamentals: SoD, ISO 27001, NIST, Zero Trust, privilege‑escalation risk
• Business analysis: requirement gathering, workshop facilitation, functional specification writing, effort estimation.
Required Education & Certifications: • SAP‑related certification (e.g., SAP IDM 8.0, SAP Security/Authorizations) or equivalent SAP security qualification.
• Optional cybersecurity certification (ISO 27001 Lead Implementer, CISSP, etc.) for enhanced credibility.