Job Summary
The SAP Security / GRC Manager is responsible for leading SAP security strategy, governance, risk, and compliance initiatives across SAP landscapes. The role involves implementing and supporting SAP authorization concepts, Segregation of Duties (SoD) controls, risk mitigation, audit compliance, user access management, and SAP GRC solutions.
Your Key Responsibilities
- Responsible for decision-making, optimizing processes, resource management, and overseeing team management as needed for task execution.
- Accountable for allocating personnel, supervising team members, assigning tasks, ensuring that the team has the necessary tools and support to succeed in their roles and optimizing and evaluating their performance to meet organizational goals.
- Lead SAP Security and GRC implementation, enhancement, and support activities.
- Design, build, and maintain SAP security roles and authorizations across SAP ECC, S/4HANA, BW, CRM, SCM, SuccessFactors, Ariba, and Fiori environments.
- Manage SAP GRC Access Control modules including:
- Access Risk Analysis (ARA)
- Access Request Management (ARM)
- Emergency Access Management (EAM)
- Business Role Management (BRM)
- Define and enforce Segregation of Duties (SoD) policies and controls.
- Conduct periodic user access reviews, role redesign, and compliance assessments.
- Work with auditors during SOX, internal, and external audits.
- Manage user provisioning, firefighter access, and compliance reporting.
- Support SAP Fiori security, launchpad roles, catalogs,
groups, and spaces/pages.
- Perform security impact assessments during SAP implementations, upgrades, and migrations.
- Develop governance frameworks and security standards for SAP environments.
- Collaborate with business stakeholders, functional teams, Basis teams, and auditors.
- Lead offshore/onshore teams and mentor junior SAP security consultants.
Mandatory Skills
- Solid hands-on experience in SAP Security and Authorizations.
- Expertise in SAP GRC Access Control 10.x/12.x.
- Extensive experience in:
- Role Design
- Role Remediation
- User Administration
- SoD Risk Analysis
- Audit Compliance
- SAP ECC and S/4HANA Security experience.
- SAP Fiori Security administration and troubleshooting.
- Experience with SAP authorization concepts:
- PFCG
- SU24
- SU01
- Stauthtrace
- SU53
- Understanding of SAP Identity and Access Management processes.
- Knowledge of SAP security architecture and compliance frameworks.
Preferred Skills
- SAP IDM (Identity Management).
- SAP Cloud Identity Services (IAS/IPS).
- SAP BTP Security.
- SAP SuccessFactors Security.
- SAP Ariba Security.
- SAP HANA Database Security.
- Experience with SOX, GDPR, and ITGC compliance requirements.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 TechOps-SAP-Security-GRC-Manager-G (Pune)
🏢 EY
📍 Pune