We are seeking an experienced SAP Security & GRC Functional Lead to join our team at corporate headquarters in Cleveland, Ohio. This is a full-time, hybrid WFH leadership role responsible for the security and governance of an SAP environment spanning S/4HANA, ECC, and EWM. The Functional Lead will manage and direct our offshore SAP Security support team, serve as the primary U.S.-based point of accountability for SAP Security and GRC, and act as a key liaison between security, functional, technical, and cybersecurity teams.
Responsibilities
- Lead and manage the offshore SAP Security support team, including assigning work, reviewing quality, and providing day-to-day direction and mentorship.
- Own SAP Security strategy and operations across S/4HANA, ECC, and EWM environments.
- Serve as the escalation point for complex security, authorization, and access issues raised by the offshore team or business stakeholders.
- Direct and oversee SAP roles, authorizations, user access provisioning, and related security administration activities.
- Lead troubleshooting and root-cause resolution of security and authorization issues, including production escalations.
- Oversee role design, role changes, testing, and remediation efforts.
- Lead SAP GRC Access Control activities, including risk analysis, access risk remediation, and mitigation control design using ARA, ARM, and EAM.
- Partner with SAP functional, technical, and cybersecurity teams to ensure security requirements are integrated into projects and enhancements.
- Drive continuous improvement of SAP Security and GRC processes, controls, and documentation.
- Support audit and compliance activities related to SAP access and segregation of duties (SoD).
- Manage priorities and resourcing for ongoing SAP projects and enhancements from a security perspective.
Required Experience & Skills
- Bachelor's degree in Information Systems, Computer Science, Business, or a related field (or equivalent professional experience).
- 7+ years of hands-on SAP Security experience, including experience in a lead or senior consultant/analyst capacity.
- Demonstrated experience managing or leading a team, including offshore or distributed team members.
- Deep experience with SAP roles, authorizations, profiles, and user administration.
- Experience supporting SAP ECC and/or S/4HANA environments.
- Strong hands-on SAP GRC Access Control experience, including Access Risk Analysis (ARA), Access Request Management (ARM), and Emergency Access Management (EAM).
- Proven ability to troubleshoot and resolve complex SAP security and authorization issues.
- Strong communication and stakeholder management skills, with the ability to work across functional, technical, and cybersecurity teams.
- Ability to set priorities, manage competing demands, and provide clear direction to a support team.
- Must be based in, or willing to relocate to, the Cleveland, Ohio area to support work at corporate headquarters.
- Must be legally authorized to work in the United States. Sponsorship will not be provided for this position
Preferred Experience
- SAP certification(s) in Security, GRC, or a related module (e.g., SAP Certified Technology Associate - SAP System Security).
- SAP EWM security experience.
- Experience working across ECC, S/4HANA, and EWM in an integrated landscape.
- Experience with SAP GRC Process Control or Risk Management.
- Prior experience in an SAP Security architect or people-management role.