TechOps-SAP-Security-GRC-Manager-GDSN02
EY
EY
Join EY, a global leader, and embark on a journey to build a career that is uniquely yours. Leverage our worldwide scale, supportive culture, and cutting-edge technology to become the best version of yourself.
As a TechOps SAP Security/GRC Manager within our Global Delivery Services (GDS), you will be pivotal in leading SAP security strategy, governance, risk, and compliance initiatives. This role offers a unique opportunity to contribute to the growth of a leading firm by ensuring the stability of global 500 companies through innovative SAP solutions.
Global Delivery Services forms EY's worldwide network of service delivery centers, playing a crucial role in EY's growth agenda. Our journey, which began in 2002, now comprises over 80,000 professionals across ten international locations, providing exceptional client service in consulting, assurance, tax, strategy, and more.
Lead SAP Security and GRC implementation, enhancement, and support activities, including design, build, and maintenance of SAP security roles and authorizations across various SAP environments (ECC, S/4HANA, BW, CRM, SCM, SuccessFactors, Ariba, Fiori).
Manage SAP GRC Access Control modules such as Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM). This includes defining and enforcing Segregation of Duties (SoD) policies, conducting user access reviews, and collaborating with auditors during SOX and other audits.
Oversee user provisioning, firefighter access, compliance reporting, and Fiori security. You will also conduct security impact assessments, develop governance frameworks, collaborate with business stakeholders, and lead offshore/onshore teams, mentoring junior consultants.
This role requires 10-12 years of experience with a strong hands-on background in SAP Security and Authorizations, complemented by expertise in SAP GRC Access Control 10.x/12.x.
Essential experience includes Role Design, Role Remediation, User Administration, SoD Risk Analysis, and Audit Compliance. Proficiency in SAP ECC and S/4HANA Security, along with SAP Fiori Security administration, is mandatory. A solid understanding of SAP authorization concepts (PFCG, SU24, SU01, STAUTHTRACE, SU53) and SAP Identity and Access Management processes is crucial.
A Bachelor's degree in Computer Science, Information Technology, or a related field is required. SAP Security and/or SAP GRC Certification is preferred, and relevant compliance certifications (CISA, CISM, CISSP) are advantageous. Strong leadership, analytical, problem-solving, and stakeholder management skills are key competencies for this position.
EY Global Delivery Services ( EY GDS)
Management Consulting