Now hiring

Sr. Expert SAP Security (Bucharest, RO, 013329) @ OMV Group

Bucharest, RO, 013329OnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Your tasks Define, maintain, and continuously improve SAP security, authorization, and access governance concepts across the SAP landscape of the Borealis Group/Borouge International. Design and govern SAP roles, profiles, authorization objects, organizational restrictions, and user access models. Ensure SAP role design adheres to least-privilege, need-to-know, and segregation of duties principles. Own SAP user access management processes, including provisioning, de-provisioning, privileged access, emergency access, and periodic access reviews. Act as the SAP Security and SAP GRC subject matter expert for business, project, compliance, and audit stakeholders. Manage and continuously improve SAP Governance, Risk and Compliance (GRC) processes and capabilities. Configure and maintain SAP GRC Access Control functionalities, including Access Risk Analysis, Access Request Management, Emergency Access Management (Firefighter), Business Role Management, and User Access Reviews. Define and maintain SAP GRC rule sets, risk definitions, workflow configurations, and mitigation controls in collaboration with business representatives and control owners. Monitor, assess, and remediate segregation of duties conflicts, critical access risks, privileged access risks, and security exceptions. Ensure compliance with internal controls, audit requirements, regulatory obligations, and access governance standards. Your skills University degree Master in IT, Computer Science, Business Administration, Engineering, Finance, or a related discipline. Relevant professional experience: >7 years Advanced expertise in SAP Security, SAP Authorizations, SAP GRC, Access Governance, and related Identity and Access Management disciplines. Advanced knowledge of SAP authorization concepts, including Roles and Profiles, Authorization Objects, Organizational Restrictions, Composite and Derived Roles, and tools such as SU24, PFCG, SU53, ST01, and STAUTHTRACE. Experience with SAP S/4HANA, SAP Fiori Security, and SAP security requirements across major SAP modules, preferably including FI/CO, MM, SD, PP, PM, QM, and WM/EWM. Experience with user lifecycle management, privileged access management, emergency access, and access recertification processes. Advanced knowledge of SAP GRC is mandatory. Hands-on experience with SAP GRC Access Control, including Access Risk Analysis, Access Request Management, Emergency Access Management (Firefighter), Business Role Management, and User Access Reviews. Experience maintaining SAP GRC rule sets, workflows, risk libraries, mitigation controls, and segregation of duties frameworks. Ability to translate audit and control requirements into practical SAP Security and SAP GRC processes. Familiarity with IT General Controls, change management, access management processes, and control documentation. Advanced ability to advise business, project, audit, and compliance stakeholders on SAP Security, Access Governance, risk, and control-related topics. Proven experience working in industrial, manufacturing, or other regulated and audit-driven environments; experience in the chemical industry is an advantage. Knowledge of Identity and Access Management solutions integrated with SAP, including Microsoft Entra ID, ServiceNow, and third-party Identity Management platforms. SAP certifications in Security, Authorizations, SAP GRC, and/or SAP S/4HANA are considered an advantage. Fluent English skills (spoken and written).

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores