Overview
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a SAP GRC Specialist based in the United States.
Full job description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a SAP GRC Specialist based in the United States. This is a fully remote opportunity for an experienced SAP security professional to help design, operate, and strengthen access-control frameworks across complex enterprise SAP environments. The role covers SAP S/4HANA, ECC, BW/4HANA, Fiori, BTP, and SuccessFactors landscapes, with a strong focus on secure and auditable operations. You will lead role design, user provisioning, segregation-of-duties analysis, and governance activities aligned with least-privilege principles. The position also involves hands-on administration of SAP GRC Access Control and Process Control, as well as support for audits and remediation initiatives. You will collaborate with business, compliance, audit, Basis, DBA, and security teams to manage risk and maintain effective controls. This role offers the opportunity to contribute to enterprise security strategy while mentoring colleagues and improving SAP security practices. The ideal candidate combines deep SAP authorization expertise with strong technical troubleshooting, documentation, and stakeholder-management skills.
Design, maintain, and continuously improve SAP authorization concepts and role structures for enterprise business processes, applying least-privilege principles. Build and manage master, derived, composite, and business roles across SAP S/4HANA, ECC, and Fiori applications. Configure and operate SAP GRC Access Control capabilities, including Access Risk Analysis (ARA), Access Request Management (ARM), Business Role Management (BRM), and Emergency Access Management (EAM). Conduct segregation-of-duties analysis and coordinate remediation efforts with business process owners, security teams, compliance stakeholders, and internal audit. Configure SAP GRC provisioning workflows, including request types, approval paths, and integrations with identity and access-management platforms. Operate SAP GRC Process Control to support continuous controls monitoring, policy management, and governance activities. Implement and maintain security configurations for SAP Fiori applications, including catalogs, groups, and front-end authorizations. Configure security for SAP BTP and cloud applications using technologies such as XSUAA, IAS, and IPS. Support SOX, GxP, PCI, and other SAP security audits, including investigation and documented remediation of audit findings. Implement and maintain transport security, table logging, and audit logging in accordance with enterprise security policies. Monitor and address SAP Security Notes in collaboration with Basis and database administration teams. Maintain detailed technical documentation covering architecture, design decisions, configurations, runbooks, and operational procedures. Mentor junior team members and contribute to knowledge transfer and the continuous improvement of SAP security practices. Requirements Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related technical discipline. 5+ years of professional experience in SAP Security and/or SAP GRC within enterprise environments. Strong hands-on knowledge of SAP authorization concepts, security architecture, and role design. Deep practical experience with SAP GRC Access Control, particularly ARA, ARM, BRM, and EAM. Experience supporting SAP security audits, compliance activities, and remediation initiatives. Hands-on experience securing SAP Fiori, SAP BTP, and other cloud-based SAP applications. Familiarity with SAP IDM or third-party identity governance and administration (IGA) platforms. Working knowledge of SAP GRC Process Control and continuous controls monitoring. Strong understanding of regulatory and compliance frameworks such as SOX, GxP, and PCI. Excellent analytical, troubleshooting, communication, and technical documentation skills. Ability to collaborate effectively with technical teams, business stakeholders, auditors, and compliance professionals. SAP Security or GRC certifications are preferred. Experience with SAP Cloud Identity Services, including IAS, IPS, and SCIM-based integrations, is a plus. Familiarity with HANA security and analytic privileges is beneficial. Exposure to continuous controls monitoring frameworks and SAP RISE / GROW security operating models is advantageous. Benefits 100% remote position within the United States. Full-time, direct W2 employment. Annual salary range of $100,000–$150,000 , depending on experience, skills, and qualifications. Opportunity to work on complex enterprise SAP security and governance environments. Exposure to SAP S/4HANA, ECC, BW/4HANA, Fiori, BTP, SuccessFactors, and modern identity technologies. Opportunities to mentor team members and contribute to security standards and best practices. Support for professional development and continued growth in SAP Security and GRC. Sponsorship: U.S. Citizens, Green Card Holders, EAD Holders, and H-1B transfer candidates are encouraged to apply; new H-1B visa petitions are not sponsored for this position.
Tips for this job
Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.
- Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
- Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
- Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
- Apply through the original employer or official recruitment destination shown on this page.
Verification notes
laptop-ats-crawler v3
Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.
jobgether (lever) ↗Browse current Job and Scholarship listings from jobgether (lever) →