SAP Security Consultant / SAP GRC Consultant
- SAP security design, implementation, and support across multiple S/4HANA landscapes
- SAP user administration, role lifecycle management, and authorisation troubleshooting
- Strong knowledge of SAP authorisation concepts (roles, profiles, users, transports)
- Hands-on experience with SAP GRC Access Control (ARA, EAM, ARM)
- Design and maintenance of SoD rulesets, risk analysis, mitigation controls, and compliance reporting
- S/4HANA role redesign and simplification using business role concepts
- Understanding of SAP HANA and Fiori security concepts at an integration level
- Implementation of CI/CD and DevSecOps security best practices for SAP landscapes
- Secure role and transport management within automated deployment pipelines
- Integration of SAP systems with security tooling such as Security-Bridge
- Vulnerability monitoring, secure configuration, and code security oversight
- Knowledge of Privileged Access Management (PAM) solutions, including CyberArk
- Documentation of SAP security controls, processes, and role designs
- Identification and remediation of security risks in complex SAP environments
- Conduct SAP security assessments, analyse system configurations and authorizations and remediate security findings
- Strong collaboration with Basis, Development, Functional, and Security teams
- Clear communication of security risks, controls, and remediation options