Overview
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Application Security SAP Consultant based i
Full job description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Application Security SAP Consultant based in United States. This senior-level role leads SAP application security and governance, risk, and compliance for a large-scale SAP S/4HANA financial modernization program. You will own the authorization concept, role architecture, segregation of duties framework, and access control governance across a complex enterprise environment. The position combines hands-on solution design with strategic leadership, audit readiness, and cybersecurity requirements. You will serve as a recognized subject matter expert, working with technical teams, stakeholders, and government groups throughout major design and delivery milestones. The role also provides opportunities to mentor consultants and influence the maturity of SAP security practices. Travel to client sites may reach 50% depending on program requirements.
Own the SAP authorization concept, including role architecture, naming standards, derivation strategies, and governance processes for role changes. Design segregation of duties frameworks, including rulesets, risk definitions, mitigating controls, ownership, and monitoring requirements. Design SAP governance, risk, and compliance solutions covering access risk analysis, access requests, business role management, and emergency access management. Establish preventive segregation of duties controls and risk simulation within access request workflows, including cross-system access risk analysis for integrated applications. Design user access review and recertification programs, including campaign scope, frequency, reviewer assignments, and evidence retention. Map access controls to applicable risk management and financial audit control frameworks and produce supporting evidence for audits and authorization milestones. Design privileged access management capabilities, including privileged role restrictions, emergency access governance, and audit-ready logging. Lead assigned security workstreams and solution components, performing options analysis, effort and risk assessments, and presenting recommendations to solution architecture teams. Serve as the SAP security subject matter expert during milestone gate reviews, government working groups, and formal design reviews. Mentor consultants and contribute to improving functional depth and solution design maturity across the team. Support authority-to-operate, cybersecurity, audit, compliance, cutover, go-live, and post-deployment activities, including transition to the sustainment organization. Travel to client locations for workshops, design sessions, testing, cutover, and go-live activities as required by the program. Requirements: Bachelor’s degree in a related field or equivalent professional experience; a master’s degree or advanced certification is a plus. 5+ years of SAP Security and SAP governance, risk, and compliance experience, including ownership of authorization design on at least one full lifecycle implementation. Deep expertise in SAP S/4HANA authorization concepts, role architecture, and Fiori security. Demonstrated experience designing and customizing segregation of duties rulesets and mitigating control frameworks with defined ownership and monitoring. Strong experience designing SAP Access Control solutions across access risk analysis, access request management, business role management, and emergency access management. Experience producing access control evidence for external financial audits or information systems controls testing. Experience supporting multi-system SAP environments and enterprise-scale implementations. Demonstrated ability to independently own workstreams, solve complex problems, and make design decisions with minimal oversight. Must meet applicable DoD IAT Level II baseline certification requirements, such as CompTIA Security+ CE, before receiving privileged access and obtain any required computing environment certification within the required timeframe. Must hold an active Secret security clearance or be able to obtain and maintain one before assignment; eligibility requires U.S. citizenship. Experience with federal ERP modernization, defense business systems, risk management framework authorization activities, identity and access management integrations, or SAP HANA database security is preferred. Experience with federated authentication, hardware-based multifactor authentication, or segregation of duties redesigns is a plus. CISSP, CISA, SAP Security, SAP Access Control, or equivalent security and audit certifications are preferred. Strong communication, leadership, collaboration, accountability, and mentoring skills are essential. Benefits: Annual salary of $175,000–$195,000. Compensation may vary based on experience, qualifications, skills, and location. Medical, dental, and vision insurance. Life insurance and long-term disability coverage. 401(k) plan. Bonus opportunities. Paid holidays and paid time off. Opportunity to work on complex, mission-critical SAP and security programs. Professional development and continuous learning opportunities. Collaborative environment emphasizing ownership, initiative, accountability, and innovation. Opportunity to contribute directly to high-impact modernization and cybersecurity initiatives. Remote position within the United States, with client-site travel of up to 50% depending on program needs.
Tips for this job
Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.
- Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
- Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
- Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
- Apply through the original employer or official recruitment destination shown on this page.
Verification notes
laptop-ats-crawler v3
JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.
Apply through JobOpportunity →Browse current JobOpportunity listings from jobgether (lever) →