SAP Security GRC
Job Summary
Capgemini is a global leader in consulting digital transformation technology and engineering services. We harness the power of technology to deliver business value and help organizations accelerate their journey towards is a global leader in consulting digital transformation technology and engineering services. We harness the power of technology to deliver business value and help organizations accelerate their journey towards innovation.
Capgemini is a global leader in consulting digital transformation technology and engineering services. We harness the power of technology to deliver business value and help organizations accelerate their journey towards innovation.
- Act as a Subject Matter Expert (SME) for SAP GRC Access Control and SAP Security Governance.
- Lead the implementation support and enhancement of SAP GRC Access Control solutions across SAP landscapes.
- Partner with business stakeholders auditors compliance teams and SAP functional teams to establish robust access governance and compliance frameworks.
- Drive Segregation of Duties (SoD) access risk management emergency access management and user provisioning initiatives.
- Ensure regulatory compliance audit readiness and adherence to organizational security policies.
- Support SAP S/4HANA ECC Fiori and SAP Cloud application security requirements.
- Implement configure and support SAP GRC Access Control modules including:
- Access Risk Analysis (ARA)
- Access Request Management (ARM)
- Emergency Access Management (EAM)
- Business Role Management (BRM)
- Configure and maintain risk rulesets mitigating controls and compliance policies.
- Perform Segregation of Duties (SoD) analysis and remediation activities.
- Manage access provisioning workflows and approval processes.
- Support periodic user access reviews and certification campaigns.
- Develop compliance reports dashboards and audit-related documentation.
- Ensure effective governance of user access lifecycle management.
- Design build and maintain SAP security roles and authorizations across SAP applications.
- Implement Role-Based Access Control (RBAC) aligned with business and compliance requirements.
- Design and maintain:
- Single Roles
- Composite Roles
- Derived Roles
- Firefighter Roles
- Business Roles
- Support user access provisioning role assignment and security administration activities.
- Conduct security reviews role optimization and authorization assessments.
- Identify assess and mitigate access and compliance risks across SAP systems.
- Configure mitigating controls and monitor compliance effectiveness.
- Support SOX ITGC internal audits and external compliance assessments.
- Perform risk analysis for new role designs user provisioning requests and system changes.
- Collaborate with business process owners to reduce access conflicts and compliance violations.
- Support SAP Fiori security integration with GRC Access Control.
- Manage Fiori catalogs groups spaces pages and authorization concepts.
- Analyze and resolve authorization issues related to SAP S/4HANA and Fiori applications.
- Support S/4HANA role redesign and security transformation initiatives.
- Coordinate with audit teams during compliance reviews and security assessments.
- Prepare evidence reports and risk mitigation documentation.
- Ensure adherence to corporate security policies and regulatory standards.
- Drive continuous improvements in access governance and compliance processes.
- 6-12 years of SAP Security and GRC experience.
- Strong hands-on experience in SAP GRC Access Control.
- Expertise in:
- Access Risk Analysis (ARA)
- Access Request Management (ARM)
- Emergency Access Management (EAM)
- Business Role Management (BRM)
- Strong knowledge of Segregation of Duties (SoD) concepts and risk remediation.
- Experience in SAP Security & Authorization administration.
- Hands-on experience with:
- Role Design
- User Administration
- Firefighter ID Management
- Access Reviews
- Compliance Reporting
- Experience in SAP S/4HANA Security and Fiori Security.
- Strong understanding of SAP authorization concepts and RBAC methodologies.
- Knowledge of audit compliance and risk management practices.
- SAP GRC Process Control experience.
- SAP BTP Security experience.
- SAP Identity Authentication Service (IAS) and Identity Provisioning Service (IPS).
- SAP Cloud Identity Access Governance (IAG).
- BW/4HANA Security experience.
- Knowledge of SOX ITGC GDPR and regulatory compliance frameworks.
- SAP Security and SAP GRC certifications preferred.
- Strong communication and stakeholder management skills.
- Ability to interact with business users auditors and leadership teams.
- Excellent analytical and problem-solving capabilities.
- Strong documentation and governance mindset.
- Ability to lead workshops compliance discussions and risk review meetings.
- Opportunities to work with global clients on innovative SAP projects.
- Dynamic and inclusive workplace culture.
- Continuous learning and professional development support.
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way youd like where youll be supported and inspired bya collaborative community of colleagues around the world and where youll be able to reimagine whats possible. Join us and help the worlds leading organizationsunlock the value of technology and build a more sustainable more inclusive world.
Act as a Subject Matter Expert (SME) for SAP GRC Access Control and SAP Security Governance. Lead the implementation support and enhancement of SAP GRC Access Control solutions across SAP landscapes. Partner with business stakeholders auditors compliance teams and SAP functional teams to establish robust access governance and compliance frameworks. Drive Segregation of Duties (SoD) access risk management emergency access management and user provisioning initiatives. Ensure regulatory compliance audit readiness and adherence to organizational security policies. Support SAP S/4HANA ECC Fiori and SAP Cloud application security as a Subject Matter Expert (SME) for SAP GRC Access Control and SAP Security the implementation support and enhancement of SAP GRC Access Control solutions across SAP with business stakeholders auditors compliance teams and SAP functional teams to establish robust access governance and compliance Segregation of Duties (SoD) access risk management emergency access management and user provisioning regulatory compliance audit readiness and adherence to organizational security SAP S/4HANA ECC Fiori and SAP Cloud application security requirements.
Make it real
About Company
A global leader in consulting, technology services and digital transformation, we offer an array of integrated services combining technology with deep sector expertise.