SAP Security/GRC Consultant- Spain

1 month, 3 weeks ago
Full-time
Senior
Cybersecurity
Infosys

Infosys

Infosys specializes in providing comprehensive consulting and IT services that facilitate digital transformation for clients across various industries, leveraging advanced technologies and innovative solutions to enhance business processes and drive me...

Internet Software & Services
100K+
Founded 1981

Description

  • Lead SAP Security and GRC assessment, design, and implementation projects for clients across industries.
  • Conduct client workshops and requirements-gathering sessions to understand business and security needs.
  • Design and configure SAP security roles, authorizations, and GRC Access Control components.
  • Develop and enforce Segregation of Duties (SoD) policies to reduce risk and support compliance.
  • Deliver gap analyses, risk assessments, and remediation plans for SAP security and GRC environments.
  • Support clients during audits by preparing documentation, reports, and access review materials.
  • Provide strategic advice on SAP security best practices, compliance frameworks, and process improvements.
  • Collaborate with Basis, functional consultants, and IT auditors to implement secure SAP landscapes.
  • Conduct end-user training sessions and knowledge transfer workshops.
  • Stay current on SAP security trends, new releases, and regulatory changes.

Requirements

  • At least 5 years of consulting experience.
  • 3+ years of SAP Security and GRC consulting experience with multiple end-to-end implementations.
  • Hands-on experience with SAP ECC and/or S/4HANA Security.
  • Strong experience configuring SAP GRC Access Control modules, including Access Risk Analysis, Emergency Access Management, and Access Request Management.
  • Excellent client-facing and communication skills with the ability to explain technical concepts to non-technical stakeholders.
  • Proven track record of managing multiple client engagements and delivering quality results on time.
  • Strong knowledge of Sarbanes-Oxley (SOX), business process controls, IT General Controls, and IT governance.
  • Deep understanding of analyzing and redesigning business processes and IT General Controls in SAP and non-SAP landscapes.
  • Ability to support internal and external audits and help mitigate identified deficiencies and gaps.
  • Ability to retrieve, analyze, and present data from multiple sources and understand data flow across infrastructure and application landscapes.
  • Up-to-date understanding of cloud services, multi-cloud environments, and their integration concepts.
  • Experience with SAP Identity Management (IdM).
  • Knowledge of cloud-based SAP security and hybrid environments.
  • Experience working in Agile/Scrum environments.
  • Experience in global delivery and working with offshore resources.
  • Project-related mobility and willingness to travel.
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • More than 7 years of experience in financial or IT compliance, risk management, IT audit, and/or IT controls, with strong audit-firm experience such as Big Four preferred.
  • SAP Security or GRC certifications are a plus, such as SAP Certified Technology Associate – SAP Access Control.

Benefits

  • Competitive compensation and benefits package.
  • Access to top training and development opportunities.
  • Career growth support to help achieve personal goals.
  • Work at a globally renowned management consulting firm with global reach.
  • Inclusive and entrepreneurial culture.
  • Exposure to market-leading brands and high-impact transformation work.
  • Recognized employer with strong training and career paths across Europe.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Associate Principal Red Team Consultant

UltraViolet Cyber 501-1000 Computer and Network Security

UltraViolet Cyber is hiring a remote Associate Principal Red Team Consultant to lead client-facing offensive security engagements that simulate advanced adversaries across enterprise, cloud, and social engineering attack surfaces.

Active Directory AWS Azure C# DNS GCP Go Metasploit Penetration Testing PowerShell Python SIEM
10 hours, 44 minutes ago

Cybersecurity Executive

PartnerOne 51-250 Media

Partner One is seeking a cybersecurity executive to lead a global business serving enterprise, government, defense, and critical infrastructure customers, with responsibility for growth, operational performance, product direction, and long-term value creation.

Cybersecurity
1 day, 10 hours ago

Cybersecurity Director

Business Wire 251-1K Media

Business Wire is seeking a Cybersecurity Director to lead its information security, governance, risk, and compliance efforts across existing and new client solutions in data center and cloud environments.

AWS Azure Cybersecurity Penetration Testing
2 days, 10 hours ago

IAM/IGA Consultant, Professional Services

Saviynt 251-1K Internet Software & Services

Saviynt is seeking a Remote IAM/IGA Consultant in Professional Services to design, deploy, and support its identity governance platform for enterprise customers.

2 days, 10 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers