The SAP Security Specialist acts as a subject matter expert on the SAP S / 4HANA project, designing, developing, and implementing roles while following established procedures and best practices. The specialist participates in requirements gathering, testing, documentation, knowledge transfer, cutover planning, and task execution.
- The specialist will also provide after-hours and weekend support when necessary.
Roles and Responsibilities
Design, build, test, and deploy SAP roles with associated entitlements, translating functional requirements into technical design.Process SAP access requests and ensure appropriate approvals are granted. Assign roles to grant access to secured IT environments.Integrate SAP, AD, portal, and cloud applications with the IGA tool (Saviynt).Collaborate with stakeholders to gather requirements for new SAP systems or application integrations within IAM tools and processes.Support the implementation of SAP security for new deployments and upgrades.Provide technical assistance for issues related to SAP authorizations.Ensure compliance with CN IT standards (e.g., Security, Architecture, Project Delivery Methodology, SOX, etc.).Create and maintain accurate process documentation.Technical Skills
Minimum Of 5 Years Of Experience With SAP Authorization In Environments Such As ECC, Solution Manager, BW, HANA, GRC, And Fiori. More Specifically
SAP ABAP & Fiori
User Management, including SNC (SU01, SU10, EWZ5)Security roles (PFCG), Master / Derived, and authorizationsFiori Catalogs and Groups, and their management within security rolesManagement of security roles using transports (Solution Manager ChaRM)Cloud applications (BTP, IBP, SAC, Datasphere, Workzone, ABAP on Cloud, Cloud ALM, Signavio, EnableNow, Vertex)Security access / privileges (Roles, Role Collections, Groups, etc.)User and access management in BTP Cloud Foundry, SAP HANA Cloud, and related servicesCloud Identity ServicesUnderstanding of authentication and provisioning mechanisms for connected applicationsHANA Database
User ManagementSecurity roles (catalog and repository-based)Identity and Access Management (IAM)
Work experience with IAM tools such as IBM Security Identity Manager (ISIM), Saviynt, or SailPointStrong understanding of Identity & Access Management concepts and best practices with hands-on experience (e.g., provisioning / de-provisioning, SSO, privileged access management, segregation of duties)General Skills and Competencies
Results-oriented, with the ability to deliver quality products in a timely mannerAbility to manage multiple assignments simultaneouslyStrong problem-solving skills through ingenuity and creativityHigh attention to detailStrong time management and organizational skillsAbility to prioritize effectively among multiple requestsCapacity to work under pressure with limited supervision, while maintaining a sense of urgencyAbility to resolve complex security issues through research and technical troubleshootingStrong teamwork and collaboration skills; able to adapt communication to different audiencesAssets
Experience with SAP HR authorization securityFamiliarity with SAP GRC (Governance, Risk, and Compliance) solutionsKnowledge of SAP Fiori and its security aspectsExperience with SAP Cloud Platform security featuresUnderstanding of data privacy regulations and their application to SAP environmentsExperience conducting security audits and assessmentsAbility to develop and deliver training on SAP security best practicesAnalytical skills to identify and mitigate security risksExperience integrating SAP systems with third-party applicationsSkills Required
Sap Abap, Sap Fiori, Sap Hana, Sap Grc, User Management