Description
Summary:The SAP GRC & Security Lead is responsible for overseeing the implementation and management of SAP GRC solutions, ensuring compliance with internal policies and external regulations, and conducting Segregation of Duties (SoD) checks. This role also involves developing and managing security roles across SAP landscapes, supporting Fiori applications, administering user provisioning, and ensuring timely resolution of security tasks. Additionally, the lead manages offshore security teams, drives process improvements, collaborates across teams, and plays a key role in audit and reporting activities to maintain system security and compliance.Key Responsibilities:
- Governance, Risk, and Compliance (GRC):
- Oversee the implementation and management of SAP GRC solutions to ensure compliance with internal policies and external regulations.
- Use the SAP GRC tool to conduct Segregation of Duties (SoD) checks prior to creating or modifying roles.
- Security Management:
- Develop, build, and modify roles across multiple SAP landscapes, including Fiori applications. Ensure role-building processes adhere to security policies and compliance requirements.
- Fiori Application Support:
- Work closely with the team to add apps to catalogs/groups and troubleshoot Fiori app issues in collaboration with the Client and Protera Basis teams.
- Security Tasks & Administration:
- Administer SAP user provisioning with correct roles and ensure user terminations are performed in a timely manner.
- Assist with Firefighter access and administration, as well as resolve audit requests and provide necessary documentation for annual audits.
- Support database refreshes, client copies, and SAP upgrades, ensuring pre/post-security tasks are conducted appropriately.
- Provide root cause and impact analysis for issues within various SAP modules and implement corrective measures.
- Audit & Reporting:
- Track all work assigned to Protera in the ServiceNow ticketing system.
- Ensure that audit reports are completed and submitted for annual audits, and implement Roles and Authorizations Quality Checks for various modules.
- User & Access Management:
- Troubleshoot access issues and authority issues related to user roles.
- Maintain up-to-date records in the ticketing tool and ensure tasks are completed within 2 business days or another mutually agreed-upon timeframe.
- Perform minor enhancement requests, including adding custom fields, workflows, multiple data sources/domains, and security for new custom applications, catalogs, groups, and spaces.
- Collaboration & Meetings:
- Attend daily Security standup meetings and weekly CAB (Change Advisory Board) meetings to review security-related tasks, issues, and solutions.
- Collaborate with cross-functional teams, including Client SAP teams and internal Protera teams, to ensure timely resolution of issues and continuous improvement of security processes.
- Process Improvement:
- Provide guidance on best practices for ongoing testing and validation of SAP controls. Work on enhancements to improve the overall security and efficiency of SAP systems.
- Offshore Team Management:
- Lead and manage a team of offshore SAP security analysts, ensuring effective collaboration and consistent delivery of tasks.
- Provide mentorship, training, and guidance to offshore team members, ensuring they adhere to internal processes, compliance requirements, and best practices.
- Regularly monitor and review the performance of the offshore team, conducting performance evaluations and identifying opportunities for skill development.
- Minimal Travel Requirements:
- The position will require minimal travel within the United States to collaborate with internal teams, attend key meetings, or participate in client engagements.
- Most interactions and team collaboration can be managed remotely, leveraging digital tools and communication platforms.
Requirements
Skills & Qualifications:
- Minimum of 5-7 years of experience in SAP GRC and security management.
- Proven track record in implementing and managing SAP security solutions, particularly with SAP Fiori and SAP Access Control.
- 3-5 years of experience in SAP Security or Basis administration, with hands-on experience in system configuration, user access management, and role-based security.
- Technical Skills:
- Strong understanding of SAP security frameworks, including user authentication, authorization concepts, and compliance policies.
- Familiarity with risk management frameworks and relevant compliance standards (e.g., SOX, GDPR).
- Hands-on experience with ServiceNow ticketing system, SAP GRC, and Fiori.
- Ability to work with clients on custom fields, workflows, and role updates.
- Certifications:
- SAP certifications in GRC, Security, or related fields are highly desirable (e.g., SAP Certified Technology Associate – SAP Security).
- Leadership & Communication:
- Proven ability to lead cross-functional teams and collaborate with different departments (e.g., IT, legal, audit).
- Strong verbal and written communication skills, with the ability to convey complex security concepts to non-technical stakeholders.
- Analytical Skills:
- Ability to assess complex risks, identify vulnerabilities, and develop effective security strategies.
- Strong problem-solving skills and attention to detail.
Benefits
Protera offers a variety of health and wellbeing programs. Benefit options include two PPO Medical plans, Dental, Vision, Health Savings Account, Flexible Spending Accounts, Dependent Care FSA, 401k retirement savings plan, company paid Life Insurance, Flexible PTO policy, Paid Holidays.