25 Aug
|
HCLTech
|
Lucknow
Experience
15+ years SAP experience with 10+ years in SAP Security & GRC and at least 5 years in Architect / Advisory roles.
Role Summary
We are seeking a highly experienced and agile SAP Security & GRC Architect to lead enterprise-wide SAP Security, Governance, Risk, and Compliance strategy initiatives for global customers. This role is not a support or administration position. The successful candidate will act as a trusted advisor Customer and business leadership teams, helping define security roadmaps, governance frameworks, target operating models, and transformation strategies across SAP landscapes.
The ideal candidate should possess deep expertise across SAP ECC, S/4HANA, SAP BTP, SAP Fiori, SAP GRC, Cloud Platforms, Identity Governance, and emerging SAP security technologies while being capable of translating business and regulatory requirements into scalable and secure SAP architectures.
Key Responsibilities
Security Strategy & Architecture
- Define enterprise SAP Security and GRC strategy aligned with business and cyber-security objectives.
- Design target-state SAP Security architectures for ECC, S/4HANA, RISE with SAP, SAP BTP, SAP SAC, Ariba, SuccessFactors, MDG, IBP and other SAP solutions.
- Develop security transformation roadmaps for SAP modernization programs.
- Lead SAP Security assessments, maturity reviews, and governance workshops.
- Establish SAP Security standards, policies, and enterprise design principles.
Governance, Risk & Compliance
- Define enterprise Segregation of Duty (SoD) frameworks and risk strategies.
- Design and govern SAP GRC Access Control solutions (ARA, ARM, EAM, BRM).
- Establish SAP controls aligned with SOX, ITGC, GDPR, ISO27001, NIST, and internal audit requirements.
- Lead compliance and audit engagements with internal and external auditors.
- Provide strategic recommendations for risk reduction and governance optimization.
S/4HANA & Cloud Security
- Design security models for S/4HANA transformations and RISE with SAP environments.
- Define security architecture for SAP BTP services, cloud integrations, APIs, and extensions.
- Develop Fiori security concepts, catalog design strategy, and role architecture.
- Drive SAP Identity and Access Management transformation initiatives.
Advisory & Consulting
- Serve as Security Design Authority for customer programs.
- Conduct executive-level workshops with customer leadership.
- Translate regulatory requirements into practical SAP security controls.
- Provide thought leadership on industry trends, SAP roadmap direction, and emerging risks.
- Support RFPs, solutioning, estimations, due diligence, and customer presentations.
Operating Model & Governance
- Design enterprise SAP Security operating models.
- Establish governance structures, RACI matrices, and control ownership.
- Define KPIs, compliance reporting, and security health frameworks.
- Implement continuous improvement programs across SAP Security and GRC functions.
Leadership
- Mentor architects, leads, and security consultants.
- Build reusable frameworks, accelerators, and best practices.
- Collaborate with Cyber Security, IAM, Audit, Risk, Infrastructure, and SAP Platform teams.
Required Qualifications
- 15+ years SAP experience with 10+ years in SAP Security & GRC and at least 5 years in Architect / Advisory roles.
- Deep expertise in SAP authorization concepts (PFCG, SU24, org-level design), Fiori/S/4HANA catalog- and space-based security, and HANA DB security.
- Strong hands-on background (past or current) with SAP GRC Access Control 10.x/12.x (ARA, ARM, EAM, BRM) and exposure to SAP IAG / Cloud Identity services.
- Proven experience designing SoD rulesets, role architectures, and access governance models at enterprise scale.
- Demonstrated experience in at least one full-cycle S/4HANA security design (greenfield, brownfield, or bluefield).
- Solid understanding of audit and compliance frameworks: SOX, ITGC, ISO 27001, NIST; comfortable owning audit conversations.
- Ability to communicate complex security concepts to executives and non-technical stakeholders; strong documentation and presentation skills.
📌 SAP Security & GRC Architect (Strategic Design & Transformation) (Lucknow)
🏢 HCLTech
📍 Lucknow