Shakil S.
Tirmizi
Sr.SAP Security Consultant
Cell 630-699-5609
shakil_tirmizi@hotmail.com
S U M M AR Y
Total of 13 years of IT experience in System Implementation, Administration and support
including over 9 years of extensive experience as a SAP Security Co nsultant on various
SAP products like GRC 10.x/5.x/VIRSA, 4.6c, 4.7 & ECC6 plus Net weaver 2004s like BI /
BW, Portal, and PI / XI. Have worked extensively on User Authorizations using Profile
Generator (PFCG) for various modules such as FI,CO,MM,SD etc, Central User
Administration (CUA) in Solution Manger, Profile maintenance, Table Security, Custom
Authorizations and ABAP Security Checks. Have extensive working experience in CRM
2007, GTS, Business Objects (BO) and cFolders systems.
Tec hnical Experience
Trained by SAP in GRC 10.0.
SAP ERP: SAP R/3 4.6c, 4.7, ECC 5.0, ECC 6.0, BW 3.5, BI 7.0, SEM/BCS, CM,CRM2007.
SAP Tools: GRC 5.x, Approva 3.0, VIRSA (Compliance Calibrator), ZOPTION (GL and
Budget Loader), cFolders (Collaboration Folders), BO12.0 (Business Objects).
Tools: MS Office for documentation (Word, Excel, Visio, Outlook etc).
Operating Systems: NT4.0, Win2k, WinXP, Win7, Linux, AIX.
Hardware: Compaq, HP, IBM.
RDBMS: Oracle, MS SQL Server 2000.
Language: ABAP/4, PL/SQL (Read and follow the logic).
SAP S E CU R IT Y PR OFE S S ION A L E XP E R IE N CE
IBM , SAP SECURITY ADMINISTRATOR (TEAM L EAD) 09/2010 TO PRESENT
D U BU QU E , IA
Developed, maintained and implemented security roles and authorizations for SAP
ECC, BW, PI, and other SAP systems such as SRM, GTS, etc.
Implementation and configuration of SAP GRC Access Control 10.x, Modules ARA, ARM,
EAM and BRM
Thorough understanding and enforcement of SAP Controls on all modules, SOD checks,
reviews and remediation
Served as security expert for ECC functional support teams - new build & enhancement
Worked with business units, support teams, and security coordinators to ensure
compliance with security processes and controls.
Maintained user ID’s and security roles across Development, Test and Production
environments in productive and project landscapes
Regularly audited and reviewed roles and assignments for segregation of duties conflicts,
compliance with company policies, etc.
Worked with SAP project teams to anticipate and proactively meet their implementation
needs while adhering to corporate policies
Resolved day-to-day operational issues submitted by customers through Enterprise
ticketing tools - Remedy, ServiceNow, ISM Maximo, Tivoli, Impact etc.
Generated various reports for SOX compliance and various business requirements.
Created and released Transport Roles to Test environment and carried out integration
testing.
Maintained & Administered Enterprise Portal security for Internet/Intranet Users alongwith
LDAP, Enterprise directory
AN D REW CORP, Application Security Analyst 10/2008 to 03/2010
J OL IET , IL
Analyzed existing role designed, identified gaps and recommended solutions.
Created new and modified existing security roles.
Performed daily user administrative tasks (SU53, ST01, PFCG etc).
Configure and Maintain GRC 5.2.
Maintained and administer Approva.
Generated various reports for SOX compliance and various business requirements.
Created and released Transport security changes to test environment.
Completed various projects of converting JDE locations to SAP at various global regions.
Actively involved in upgrade of 4.6c to ECC6.
Implemented and supported SAP cFolders.
Administrative and user support of Business Objects.
Created and modified Single roles and Derived Roles.
Utilized SU53 and System trace to check authorization failures.
Actively involved in CRM2007 user support and administration.
Great W est Life, SAP Security Consultant 02/2005 to 10/ 2008
W innipeg, Canada
Responsible for user maintenance and troubleshooting.
*Involved in all aspects of Full Life Cycle implementation of ECC 6.
Extensively used PFCG to maintain roles, both single and composite.
Created Transport and released to Test environment and carried out integration testing.
Administered Users, Authorization Data and Profiles.
Trouble-shoot authorization problems using SU53, SU56 and system trace with ST01.
Maintained & Administered Enterprise Portal security for Internet/Intranet Users.
Administered XI security by monitoring XI user ID and roles.
Design BI 7.0 security, identified Info-objects and created custom Analysis Authorization
Objects to secure data access via BI queries and reports.
Created BI and Workbook Roles for casual users, Power users and Admin.
Troubleshoot BI users using RSECADMIN to identify the failed Info-Objects.
Secured Info-Cubes and Info-Providers to provide essential Production security for BI
Admin.
Developed security test plans and procedures for both ECC and BI Roles.
Extensively tested ECC and BI Composite Roles and adjusted authorization checks via
SU24.
Created and tested Production Roles for ABAP, Basis and Security team and user
support.
Created user’s master record and assigned Roles via CUA all clients.
Trouble shoot CUA related problems and applied necessary Notes for sequential
processing of IDOCs in child clients.
Co nsultant, Advanced Technical suppo rt, 1999-2005.
REALTY WORLD, Network Administrator, 11/2002 to 2/2005
Bo lingbro o k, IL
Maintained ROUTERS, HUB, SWITCHES, and network printers.
Installed operating systems on Servers/Workstations such as Windows 2003, Windows
XP, VISTA, and Windows 2000.
Maintained network connectivity such as users, printing and applications.
Managed internal database, user accounts. Perform necessary software and hardware
upgrades as required.
L U CENT TECHNOLOGIES, Network Engineer, 01/2001 to 08/2002
Naperville, IL.
Maintenance, configuration, deployment of various Applications and inventory control &
proprietary Data Analysis Tools.
Created new images, performed software and hardware upgrades. Duties included but
not limited to troubleshooting and providing first level technical support to RF Engineers
and log calls into Remedy tracking system.
M OTOROLA, Network Engineer, 03/2000 To 08/2000
Ho ffm an Estates, IL.
Installed and upgraded of networking and communication devices running on UNIX
(SPARC3500) systems.
Tested and troubleshoot of communication software, and populating database
(Informix).
D E BIS IT SERVICES, Support Engineer, 04/1999 to 02/2000
L ISL E , IL.
Remotely (Netfinity) managed and maintained 270 servers.
Installed, upgraded, and maintained operating systems and application software.
Monitored LAN to Mainframe connectivity between Microsoft SNA Servers and IBM
AS400.
Assisted in performance tuning, resource monitoring, backups, and disaster recovery
processes. Logged incoming calls into Remedy system.
IBM , TECH SYSTEMS, Help Desk, 03/1998 to 04/1999
Naperville, IL.
Provided technical customer support on a LAN/WAN in a multi Operating System
environment that included UNIX, NT and Windows 95/98. Record calls in Remedy.
Certificatio ns and Pro ficiencies
MCSE Certified
Database Administrator Oracle PL/SQL
Certificate of completion for SAP Courses - GRC300, ADM920, AD960, ADM940 & EP200
Educatio n
BS in Liberal Arts ( 4 Year degree)