
SAP GRC Expert
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Illinois.
• Act as the subject matter expert in SAP GRC for the ISSO team.
• Ensure governance, risk mitigation, and compliant access throughout the IL5 S/4HANA ecosystem.
• Oversee role governance, which includes design, lifecycle management, and entitlement hygiene.
• Enforce and enhance Segregation of Duties rulesets, mitigation controls, and access risk assessments.
• Lead access review initiatives and certification cycles.
• Manage the integration of SAP GRC with identity systems such as Okta, Active Directory, and LDAP.
• Configure and maintain emergency access (Firefighter) procedures, including AO authorization and SIEM alerting.
• Assist with RMF/ATO documentation, eMASS updates, CORA evidence preparation, and alignment of Cyber/Audit workflows.
• Contribute to Zero Trust architecture through PAP policy models and secure access practices.
• Collaborate with Cyber and Audit teams to influence enterprise-wide risk management decisions.
• Minimum of Interim Secret clearance.
• Over 7 years of experience with SAP GRC.
• At least 3 years of experience supporting DoD or Federal environments.
• Expert proficiency in SAP GRC Access Control 12.x, covering role design, SoD analysis, risk rules, and business role management.
• Strong expertise in entitlement governance and role lifecycle management.
• Comprehensive understanding of SAP authorization structures and composite role architecture.
• Familiarity with SAP attributes such as Company Code, Cost Center, Profit Center, Plant, Personnel Number, and Organizational Unit.
• Practical experience in integrating GRC with Okta, Active Directory, and LDAP.
• Capability to configure and uphold emergency access workflows with monitoring and alerting mechanisms.
• Experience in supporting RMF/ATO, eMASS controls, and compliance evidence cycles.
• Knowledge of Zero Trust PAP architecture.
• DoD 8140 Foundational 461 certification, Systems Security Analyst – Intermediate or higher.
• One or more certifications such as CCSP, Cloud+, GICSP, GISF, GSEC, or Security+.
• SAP GRC Access Control certification is mandatory.
• DoD 8140 Residential certification as applicable.
• Preferred SAP Security certification.
• Experience with SAP GRC Process Control and Risk Management modules is a plus.
• Familiarity with Splunk ES for SAP audit monitoring is desirable.
• Understanding of ACAS/Tenable.SC scanning for SAP compliance is preferred.
• Knowledge of AWS IAM Identity Center permission sets and integration patterns is advantageous.
• Flexible time off benefit.
• Extensive learning resources.
• Healthcare benefits.
• Wellness benefits.
• Financial benefits.
• Retirement benefits.
• Family support benefits.
• Continuing education benefits.
• Time off benefits.
• Support for a flexible work-life balance.
• Competitive compensation.
Laboratorios Médicos Colonia del Valle - Olab
Insight IT
White Hat Gaming
TRM Labs
Get handpicked remote jobs straight to your inbox weekly.