SAP Application Security Analyst
Posted 9ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
SAP Application Security Analyst managing security framework and user access in S/4HANA program for federal clients. Collaborating with teams to enhance security compliance and documentation.
Responsibilities:
- Execute User Access Management (UAM): Perform the end-to-end design, build, and maintenance of S/4HANA security roles, with a specific focus on Fiori-specific authorizations, catalogs, and groups.
- Configure GRC Security Components: Execute the technical setup and testing of SAP GRC Access Control (ARA, ARM, EAM) to facilitate automated and compliant user provisioning.
- Perform SoD Risk Assessments: Execute protocols for identifying and remediating Segregation of Duties (SoD) and Critical Action risks across all functional workstreams (B2R, P2P, O2C, etc.).
- Maintain User Provisioning & Role Design: Ensure all role development and testing activities adhere to established Security Management controls and federal audit requirements.
- Support User Access Reviews (UAR): Execute the technical tasks for periodic certification processes to validate user entitlements and ensure continued business necessity.
- Facilitate Audit & Compliance Requests: Support internal and external audit inquiries related to user access by pulling system evidence, running reports, and performing remediation of findings.
- Monitor Security Posture: Perform regular monitoring and reporting on SoD violations and high-risk access, providing visibility into the overall health of the security environment.
- Collaborate with Functional Squads: Work closely with Functional Analysts to ensure that security designs are integrated seamlessly without hindering business productivity or process flow.
- Technical Documentation: Maintain rigorous documentation of security matrices, role definitions, and mitigating controls to ensure a transparent and defensible security posture.
- Understanding of federal security standards (e.g., NIST, FISMA) and their application within an SAP landscape.
Requirements:
- 2+ years of experience in SAP Security Management including S/4HANA Security, SAP GRC (10.x/12.0), and Fiori catalog/group design.
- Experience working with the SAP GRC Global Rule Set and implementing mitigating controls.
- Foundational understanding of Fiori Front-End and Back-End authorization integration.
- US Citizen (no dual citizenship)
- Must be eligible to obtain a government Secret Clearance
- Willingness to travel up to 25%.
Benefits:
- health insurance
- retirement plans
- paid time off
- professional development



















