FABIEN
BREMMER
FABIEN
BREMMER
Senior Manager — Technology Risk · AI Innovation
Driving Secure
Transformations
Result-driven and people-oriented Senior Manager with deep expertise in IT Governance, Risk & Compliance, SAP Security, and ERP Transformations.
From Security by Design initiatives at Heineken to SOx Compliance at Booking.com — I advise senior stakeholders, manage cross-functional teams, and ensure risks are managed across the full landscape.
What sets me apart: I build AI-powered platforms and autonomous agents that transform how organizations approach risk and compliance — combining deep GRC expertise with cutting-edge technology.
Professional Experience
Leading complex engagements across IT GRC, SAP Security, Business Process Redesign, and Project Risk Management. Key role in large-scale SAP transformations, Security by Design, and AI-driven innovation.
Internal audits on ICF, Agile/DevOps, Data Management, Incident & Problem Management. Supporting the organization's digital transformation.
External IT Assurance for Financial Statements and SOC/ISAE reports. Integrated audits combining business process controls and ITGCs.
Sales, delivery, and project management of Unified Communications solutions. Managing client relationships, budgets and cross-department coordination.
Key Engagements
Led a portfolio of SAP-focused initiatives. Implementing IGA/IAM solution covering access risk, emergency access, user lifecycle and authorization management.
Led IT Security controls deployment across Finance, Supply Chain, Legal, Corporate Affairs and HR for ~50 applications globally.
SOx Compliance during SAP ECC → S/4HANA & SAP GRC transformation. Developed tailored IT Governance Framework through multi-level interviews and workshops.
SAP Security workstream during ECC → S/4HANA migration. Fiori Design, Authorization Concept, SoD Risk Management and IT Controls.
Agentic Governance Platform
An AI-native platform that orchestrates autonomous agents across six governance domains — from identity lifecycle to audit evidence — replacing fragmented manual processes with intelligent, self-governing workflows.
AI-Augmented
GRC Consulting
I don't just advise on GRC — I build the tools. From custom MCP servers that interface directly with SAP systems to knowledge bases that autonomously surface best practices and procedures during live engagements.
By combining both MCP servers, I conducted a fully automated Penetration Test on a SAP S/4HANA system. The Knowledge Base MCP provided the approach, procedures and good practices from SAP literature, while the ABAP MCP server autonomously executed the tests via RFC — delivering a comprehensive security assessment with minimal manual effort.
Designing and deploying autonomous AI agents that execute complex GRC tasks — from risk assessments to compliance checks — with human-in-the-loop oversight.
Automated control testing, continuous monitoring, and intelligent risk scoring through custom AI frameworks and data pipelines.
Data connectors for SAP (RFC/OData), Microsoft Graph, SCIM 2.0, and REST APIs — enabling automated GRC data extraction across the landscape.
Power BI integration, advanced data transformation, and interactive dashboards for real-time risk insights and executive reporting.
Building specialized AI skill sets and prompt frameworks that encode deep GRC domain knowledge into reusable, production-grade AI capabilities.
Certifications & Education
Ready to transform
your risk landscape?
Whether it's SAP Security, GRC strategy, ERP transformation, or AI-driven innovation — let's explore how I can help drive secure, intelligent outcomes.