The ERP Security Senior Analyst serves as a technical expert responsible for implementing and managing robust security controls across HR and Finance platforms within the SAP environment. This role focuses on role design, access governance, compliance, and integration with identity and access management (IAM) platforms to ensure secure and compliant SAP operations.
(REMOTE 8am-430pm)
Design, implement, and maintain SAP security roles and authorizations (e.g., PFCG, SU24, SU01).
Analyze and mitigate segregation of duties (SoD) risks using SAP GRC Access Control.
Secure custom SAP developments (RFCs, BAPIs, ABAP programs).
Collaborate with business process owners to ensure least privilege access principles.
Monitor SAP logs (SM20, STAD) and conduct forensic investigations.
Support SAP Fiori and S/4HANA application security (OData services, catalog roles).
Integrate SAP systems with IAM platforms (e.g., EntraID, Okta, Ping) for SSO.
Continuously assess and improve SAP security posture.
Develop and maintain security documentation, procedures, and standards.
Stay up to date on SAP security trends, vulnerabilities, and best practices.
Education:
Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience.
Experience:
7+ years of SAP security experience (ECC and/or S/4HANA).
Hands-on experience with SAP GRC Access Control.
Strong knowledge of SAP authorization concepts, RBAC, and SoD.
Experience with SAP Fiori, cloud security models, and custom SAP developments.
Familiarity with IAM integration (e.g., EntraID, Okta, CyberArk).
Ability to interpret and implement compliance requirements in SAP.
Strong communication and collaboration skills.
Expertise with Microsoft Purview, MIP, DLP, and secure AI data handling (e.g., TDE, DP, FHE).
Experience in data classification, taxonomy, lineage tracking, and enterprise data lifecycle management.
Experience in the utilities or other highly regulated industries.
Background in HR and Finance system conversions or SAP upgrades.
Ability to communicate effectively across cybersecurity, HR, and Finance teams.
Skill in translating compliance and business needs into SAP security controls.