Quick Summary
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a SAP GRC Specialist based in the United States.
This is a fully remote opportunity for an experienced SAP security professional to help design, operate, and strengthen access-control frameworks across complex enterprise SAP environments.
The role covers SAP S/4HANA, ECC, BW/4HANA, Fiori, BTP, and SuccessFactors landscapes, with a strong focus on secure and auditable operations.
You will lead role design, user provisioning, segregation-of-duties analysis, and governance activities aligned with least-privilege principles.
The position also involves hands-on administration of SAP GRC Access Control and Process Control, as well as support for audits and remediation initiatives.
You will collaborate with business, compliance, audit, Basis, DBA, and security teams to manage risk and maintain effective controls.
This role offers the opportunity to contribute to enterprise security strategy while mentoring colleagues and improving SAP security practices.
The ideal candidate combines deep SAP authorization expertise with strong technical troubleshooting, documentation, and stakeholder-management skills.
-
Design, maintain, and continuously improve SAP authorization concepts and role structures for enterprise business processes, applying least-privilege principles.
-
Build and manage master, derived, composite, and business roles across SAP S/4HANA, ECC, and Fiori applications.
-
Configure and operate SAP GRC Access Control capabilities, including Access Risk Analysis (ARA), Access Request Management (ARM), Business Role Management (BRM), and Emergency Access Management (EAM).
-
Conduct segregation-of-duties analysis and coordinate remediation efforts with business process owners, security teams, compliance stakeholders, and internal audit.
-
Configure SAP GRC provisioning workflows, including request types, approval paths, and integrations with identity and access-management platforms.
-
Operate SAP GRC Process Control to support continuous controls monitoring, policy management, and governance activities.
-
Implement and maintain security configurations for SAP Fiori applications, including catalogs, groups, and front-end authorizations.
-
Configure security for SAP BTP and cloud applications using technologies such as XSUAA, IAS, and IPS.
-
Support SOX, GxP, PCI, and other SAP security audits, including investigation and documented remediation of audit findings.
-
Implement and maintain transport security, table logging, and audit logging in accordance with enterprise security policies.
-
Monitor and address SAP Security Notes in collaboration with Basis and database administration teams.
-
Maintain detailed technical documentation covering architecture, design decisions, configurations, runbooks, and operational procedures.
-
Mentor junior team members and contribute to knowledge transfer and the continuous improvement of SAP security practices.
Requirements
~1 min read-
Bachelor’s degree in Computer Science, Engineering, Information Technology, or a related technical discipline.
-
5+ years of professional experience in SAP Security and/or SAP GRC within enterprise environments.
-
Strong hands-on knowledge of SAP authorization concepts, security architecture, and role design.
-
Deep practical experience with SAP GRC Access Control, particularly ARA, ARM, BRM, and EAM.
-
Experience supporting SAP security audits, compliance activities, and remediation initiatives.
-
Hands-on experience securing SAP Fiori, SAP BTP, and other cloud-based SAP applications.
-
Familiarity with SAP IDM or third-party identity governance and administration (IGA) platforms.
-
Working knowledge of SAP GRC Process Control and continuous controls monitoring.
-
Strong understanding of regulatory and compliance frameworks such as SOX, GxP, and PCI.
-
Excellent analytical, troubleshooting, communication, and technical documentation skills.
-
Ability to collaborate effectively with technical teams, business stakeholders, auditors, and compliance professionals.
-
SAP Security or GRC certifications are preferred.
-
Experience with SAP Cloud Identity Services, including IAS, IPS, and SCIM-based integrations, is a plus.
-
Familiarity with HANA security and analytic privileges is beneficial.
-
Exposure to continuous controls monitoring frameworks and SAP RISE / GROW security operating models is advantageous.
What We Offer
~2 min readLocation & Eligibility
Listing Details
- Posted
- September 22, 2026
- First seen
- September 27, 2026
- Last seen
- September 27, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 46%
- Scored at
- September 27, 2026
Signal breakdown
Similar Ap Specialist jobs
View all →Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.