SAP Security & Authorization Consultant – Contract Position – HIRING ASAP

Location: Mostly remote working, with occasional office visits in Zurich
Start Date: ASAP
Duration: 6-month contract
Maximum Rate: 600 CHF per day – B2B Contract

Key Responsibilities
  • Responsible for all SAP on premise and public cloud-based systems in terms of authorization and security management (SAP ECC, SAP S/4 Public Cloud, SAP BW/4HANA, SAC, IBP, Ariba)
  • IT system owner for the SAP GRC system(S) and the implemented processes for access management and FireFigher processes
  • Manage and maintain system security, including user roles, authorizations, and password policies, while ensuring segregation of duties (SoD) compliance for all relevant SAP systems
  • Design, implement and secure SAP roles and authorization models tailored to business need
  • Ensure SAP systems meet standards like SOX, GDPR, ISO27K, and collaborate with auditors for documentation and compliance reviews (access and role reviews)
  • Serving as the main contact for SAP-related security incidents, efficiently resolving them, and conducting thorough investigations with proper documentation and followup actions
  • Support the 1st level support for day-to-day operations in the user access management process, give guidance to use the GRC processes in the best possible way.
  • Work on SAP projects representing the security stream (SAP rollouts & large company projects)
  • Create and maintain the SOPs for all relevant SAP systems
  • Be involved into the internal IT control framework by providing the required data for testing the ITGC in the SAP security and authorization area
  • Provide training to global & local business users for the SAP GRC processes
Required Skills & Experience
  • Minimum 5 – 10 years’ experience as functional SAP security and authorization consultant
  • Strong knowledge of SAP system architecture, including SAP Basis/BTP, SAP S/4HANA, SAP ECC
  • Strong experience in working with SAP GRC/IAG systems
  • Strong experience in managing user, roles in SAP ECC and S/4, profiles, and security in SAP
  • Familiarity with regulatory frameworks such as SOX, ISO27K, or similar compliance standards
  • Experience with SAP system audits and security assessments
  • Good understanding on the end-to-end SAP processes like procure to pay or order to cash
  • Functional security and authorization consultant with hands on system experience
  • Understands the business context of the position and is willing to proactively work with the different business counter parts