GRC Public Cloud
Required skills for this role
SAPBRM
About this role
Your Role - Job Role
SAP GRC & Public Cloud Security
- Configure and manage SAP S/4HANA Public Cloud business catalogs, business roles, and business users.
- Design and implement Role-Based Access Control (RBAC) aligned with business requirements and SAP cloud security best practices.
- Support access governance processes across SAP Public Cloud applications.
- Manage user provisioning, role assignments, access reviews, and role redesign activities.
- Conduct periodic access certification and compliance reviews.
SAP GRC Access Governance
- Perform Segregation of Duties (SoD) analysis and risk assessments.
- Identify critical access risks and define mitigation controls.
- Support access request approval workflows and governance processes.
- Conduct user access reviews and compliance monitoring activities.
- Coordinate remediation activities for audit findings and control deficiencies.
- Maintain risk matrices, role mapping documents, and compliance reports.
SAP S/4HANA Public Cloud Security
- Design and maintain:
- Business Roles
- Business Catalogs
- Business Users
- Restriction Types and Values
- IAM Applications and Authorizations
- Support security configuration for SAP Fiori applications in Public Cloud.
- Manage Identity and Access Management (IAM) concepts within SAP Public Cloud.
- Troubleshoot authorization and access-related issues.
SAP BTP & Cloud Identity Services
- Support integration of SAP S/4HANA Public Cloud with SAP BTP.
- Configure and support:
- SAP Identity Authentication Services (IAS)
- SAP Identity Provisioning Services (IPS)
- SAP Cloud Identity Access Governance (IAG)
- Assist in Single Sign-On (SSO) and Identity Federation implementations.
- Support user lifecycle management and cloud identity governance initiatives.
Compliance & Audit Management
- Ensure compliance with internal controls, SOX, ITGC, and corporate security policies.
- Support audit requests, compliance assessments, and access reviews.
- Prepare audit evidence, risk reports, and mitigation documentation.
- Drive continuous improvement of cloud security and governance processes.
Your Profile - Skills Required :
Mandatory Skills
- 6-12 years of SAP Security and GRC experience.
- Strong hands-on experience in SAP S/4HANA Public Cloud Security.
- Experience with SAP Public Cloud authorization concepts.
- Expertise in:
- Business Roles
- Business Catalogs
- IAM Concepts
- RBAC Design
- User Administration
- Access Governance
- Segregation of Duties (SoD)
- Experience in SAP GRC Access Control or SAP Cloud Identity Access Governance (IAG).
- Strong knowledge of SAP Fiori Security and authorization concepts.
- Experience supporting compliance, audit, and risk management activities.
- Understanding of SAP Cloud security architecture and identity management processes.
Preferred Skills
- SAP Cloud Identity Access Governance (IAG).
- SAP Identity Authentication Service (IAS).
- SAP Identity Provisioning Service (IPS).
- SAP Business Technology Platform (BTP) Security.
- SAP GRC Access Control (ARA, ARM, EAM, BRM).
- Experience with SAP SuccessFactors, Ariba, Concur, or other SAP Cloud applications.
- Knowledge of SAP Cloud ALM and cloud governance frameworks.
- SAP Security or SAP GRC certifications.
Soft Skills
- Strong communication and stakeholder management skills.
- Ability to work with business users, auditors, compliance teams, and leadership stakeholders.
- Excellent analytical and troubleshooting skills.
- Strong documentation and governance mindset.
- Ability to lead workshops, role design discussions, and access governance reviews.