NEX
Nexperia Germany GmbH
SAP GRC & Authorization Engineer (m/f/d)
Vor einem Monat veröffentlicht
Vollzeit
Arbeitsort: Hamburg
Unbefristet
Vor Ort
Ihre Aufgaben
About the role
The SAP GRC & Authorization Engineer is responsible for designing, implementing, and maintaining secure access controls within Nexperia’s SAP landscape. This role ensures compliance with internal policies and external regulations through effective use of SAP GRC tools and robust authorization concepts. The engineer plays a key role in safeguarding sensitive business data and enabling secure operations across SAP platforms. This position reports to the Head of IT Cybersecurity & Operations.
This is your new job- Develop and maintain SAP roles and profiles across modules (ECC, S/4HANA, BW, Fiori), ensuring alignment with business processes and compliance requirements
- Lead configuration and operation of SAP GRC Access Control components including ARA, ARM, BRM, and EAM
- Implement and monitor segregation of duties (SoD) controls, conduct risk analysis, and manage remediation activities
- Oversee provisioning and de-provisioning processes, ensuring secure and efficient access across SAP systems
- Support internal and external audits by providing access reports, evidence, and mitigation plans
- Identify and implement improvements in SAP security architecture, processes, and tools
- Work closely with SAP functional teams, internal audit, compliance, and business stakeholders to ensure secure and compliant access
- Maintain comprehensive documentation and provide guidance to IT and business users on SAP security and GRC processes
- Design, configure, and maintain the internal control framework within the SAP Process Control system
- Map and implement Processes, Risks, and Controls (PRC) based on business requirements and compliance objectives (e.g., SOX, GDPR)
- Develop and maintain Automated Controls and Configurable Controls by connecting SAP PC to source systems like S/4HANA
- Administer the end-to-end compliance workflow, including scheduling and launching Control Self-Assessments (CSAs) and Tests of Effectiveness (TOEs)
This is you
- Bachelor’s or Master’s degree in Information Technology, Business Informatics, or related field
- 5+ years of experience in SAP security, GRC, or IT compliance roles
- Relevant certifications (e.g., SAP Certified Technology Associate - System Security and Authorizations, CISA, CISM) are a plus
- Experience in a global enterprise environment is preferred
- Deep understanding of SAP authorization concepts and role design
- Hands-on experience with SAP GRC Access Control modules
- Strong knowledge of SoD principles and regulatory frameworks (e.g., SOX, GDPR)
- Familiarity with SAP platforms (ECC, S/4HANA, BW, Fiori)
- Proficiency in SAP security reporting and audit support
- Strong analytical and problem-solving skills
- Excellent communication and stakeholder management abilities
- Ability to work independently and lead initiatives
Dies ist eine auf dritten Jobbörsen gefundene Stellenanzeige. Wir bieten hierfür keinen Support, können diese aber jederzeit offline stellen. Für weitere Informationen: Datenschutzhinweise | Anzeige melden.
Nexperia Germany GmbH
Arbeitsort: Hamburg
IT, Informationstechnologie