Job Description
About the Role:
We are looking for a seasoned SAP GRC Consultant with 6+ years of experience in implementing and managing SAP GRC Access Control solutions. The ideal candidate will have a strong understanding of Segregation of Duties (SoD) principles and SOX compliance requirements, along with hands-on expertise in configuring GRC components such as MSMP workflows, BRF+ rules, and LDAP integration. Experience in the manufacturing industry is essential, with a focus on production system integration, audit readiness, and operational risk management.
Requirements
- Minimum 5 years of experience as a GRC Consultant.
- Strong expertise in SAP GRC Access Control 10.x/12.x.
- In-depth knowledge of SoD concepts, risk analysis, and remediation strategies.
- Experience with SOX compliance and audit requirements.
- Proficient in MSMP workflow configuration, BRF+, and EAM setup.
- Hands-on experience with Compensating Controls, Mitigation Controls, and Custom Risk ID creation.
- Strong understanding of Ruleset configuration and access provisioning.
- Experience with LDAP integration and user lifecycle management.
- Excellent communication, documentation, and stakeholder management skills.
- SAP Security and Authorization knowledge is a plus.
- SAP GRC certification is desirable.
Preferred Qualifications
- Experience in regulated industries such as Manufacturing, Aerospace, Defense, etc.
- Familiarity with GDPR, ISO 27001, or other compliance frameworks.
- Ability to work independently and manage multiple priorities in a fast-paced environment.