SAP Security and GRC Specialist
Aviso de fuente externaen Kaav Inc
Job Title: SAP Security and GRC SpecialistLocation: Remote / Mexico / LATAMDuration: 6 monthsPrimary Skills: SAP Security and GRC Specialist Note: Need Spanish speaking and support PST ti...
Salario
No especificado
Ubicación
Mexico City, Mexico
Tipo de empleo
Tiempo completo
Modalidad
No especificado
SAP Security and GRC Specialist
Mexico City, Mexico
Descripción del empleo
Job Title: SAP Security and GRC SpecialistLocation: Remote / Mexico / LATAMDuration: 6 monthsPrimary Skills: SAP Security and GRC Specialist
Note: Need Spanish speaking and support PST times, anywhere Nearshore is fine.
Description:This position is responsible for maintaining a secure, compliant, and well-governed SAP environment. Key duties include managing SAP security roles, overseeing GRC Access Control, implementing Segregation of Duties (SoD) governance, conducting user access reviews, ensuring audit preparedness, and maintaining compliance with SAP FUE licensing requirements.
Key Responsibilities
SAP Security RolesProvide support with Corporate and vendors\' user access and roles assignment.Evaluate and assess role changes requests from Corporate and the sites, ensuring alignment with SoD principles as well as our internal procedures and organizational structure.Offer immediate assistance and resolve high-priority authorization problems.Follow up on open service requests, incidents, and testing tasks. Work together with the AMS Security consultants, internal business users, and IT colleagues from all sites.Take part in upcoming SAP initiatives—including Fiori, new SAP modules, partner solutions, and organizational changes—in the security workstreams, ensuring adherence to SoD standards, industry best practices, and harmonization with internal procedures.Open to learn and manage security roles in SAP Cloud solutions like BTP, IAS, SuccessFactors, Concur, and SAC.
SAP GRC Access Control and Risk AnalysisManage the maintenance and improvements of our GRC Access Risk Analysis (ARA) and Emergency Access Management (EAM) practice.Support in extending our GRC footprint with modules such as Access Request Management (ARM), Business Role Management (BRM), and User Access Review (UAR).Propose new GRC solutions and features that can improve the organization’s risk and compliance posture. Increase awareness about security and compliance issues among business stakeholders and SAP users.
Audit and ComplianceExtract data for User Access Reviews and SoD Reports; assist with analysis and corrective actions.Use SAP GRC reports, Security Info System (SUIM), and IT Service Desk system to provide information for the SOX and ITGC Audits.Address SAP STAR report findings to manage FUE License usage across sites.Build SOP regarding audit tasks to seek automation opportunities.Internal Monitoring of GRC EAM and SoD reports along with security roles risk findings, awareness across sites and follow-up on solutions.
Qualifications& experienceBachelor’s or master’s degree in computer science, IT Security, or a related field, or an equivalent combination of education and professional experience5+ years of experience in the design, configuration, development, and support of role-based authorization concepts, enabler, and derived, composite, and Fiori role design, and implementation for S/4HANA and GRC Systems.5+ years of experience with SAP S/4 HANA, with in-depth knowledge of SAP security architecture and design.Processes comprehension and high level knowledge of SAP modules FI, MM, PM, SD, and HR-PY.Experience in at least 2 SAP implementations within Security and GRC workstreams.Proficiency in SAP Authorization Concepts, as well as the technical design, build, and troubleshooting of SAP security functions, ensuring compliance with Segregation of Duties and SAP best practices.Previous experience with other SAP solutions —including Group Reporting, Success Factors, and SAC—as well as technical tools such as BTP, IAS, and SSO, is highly beneficial.SAP Academy or CISA certifications are an asset.Experience with SOX controls, IT General Controls (ITGC) concepts and audit testing process is a strength.Demonstrates proactiveness, an innovative approach, strong risk awareness, and well-developed interpersonal and communication skills.
If you're interested, please share your updated resume to [email protected]
¿Es tuya esta vacante?
Reclámala gratis y recibe candidatos con video en CazVid.