Jobgether
Accountabilities: Design, maintain, and continuously improve SAP authorization concepts and role structures for enterprise business processes, applying least-privilege principles. Build and manage master, derived, composite, and business roles across SAP S/4HANA, ECC, and Fiori applications. Configure and operate SAP GRC Access Control capabilities, including Access Risk Analysis (ARA), Access Request Management (ARM), Business Role Management (BRM), and Emergency Access Management (EAM). Conduct segregation-of-duties analysis and coordinate remediation efforts with business process owners, security teams, compliance stakeholders, and internal audit. Configure SAP GRC provisioning workflows, including request types, approval paths, and integrations with identity and access-management platforms. Operate SAP GRC Process Control to support continuous controls monitoring, policy management, and governance activities. Implement and maintain security configurations for SAP Fiori applications, including catalogs, groups, and front-end authorizations. Configure security for SAP BTP and cloud applications using technologies such as XSUAA, IAS, and IPS. Support SOX, GxP, PCI, and other SAP security audits, including investigation and documented remediation of audit findings. Implement and maintain transport security, table logging, and audit logging in accordance with enterprise security policies. Monitor and address SAP Security Notes in collaboration with Basis and database administration teams. Maintain detailed technical documentation covering architecture, design decisions, configurations, runbooks, and operational procedures. Mentor junior team members and contribute to knowledge transfer and the continuous improvement of SAP security practices. Requirements Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related technical discipline. 5+ years of professional experience in SAP Security and/or SAP GRC within enterprise environments. Strong hands-on knowledge of SAP authorization concepts, security architecture, and role design. Deep practical experience with SAP GRC Access Control, particularly ARA, ARM, BRM, and EAM. Experience supporting SAP security audits, compliance activities, and remediation initiatives. Hands-on experience securing SAP Fiori, SAP BTP, and other cloud-based SAP applications. Familiarity with SAP IDM or third-party identity governance and administration (IGA) platforms. Working knowledge of SAP GRC Process Control and continuous controls monitoring. Strong understanding of regulatory and compliance frameworks such as SOX, GxP, and PCI. Excellent analytical, troubleshooting, communication, and technical documentation skills. Ability to collaborate effectively with technical teams, business stakeholders, auditors, and compliance professionals. SAP Security or GRC certifications are preferred. Experience with SAP Cloud Identity Services, including IAS, IPS, and SCIM-based integrations, is a plus. Familiarity with HANA security and analytic privileges is beneficial. Exposure to continuous controls monitoring frameworks and SAP RISE / GROW security operating models is advantageous. Benefits 100% remote position within the United States. Full-time, direct W2 employment. Annual salary range of $100,000–$150,000, depending on experience, skills, and qualifications. Opportunity to work on complex enterprise SAP security and governance environments. Exposure to SAP S/4HANA, ECC, BW/4HANA, Fiori, BTP, SuccessFactors, and modern identity technologies. Opportunities to mentor team members and contribute to security standards and best practices. Support for professional development and continued growth in SAP Security and GRC. Sponsorship: U.S. Citizens, Green Card Holders, EAD Holders, and H-1B transfer candidates are encouraged to apply; new H-1B visa petitions are not sponsored for this position. How Jobgether works: We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Why Apply Through Jobgether? Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1