Job Search and Career Advice Platform

Enable job alerts via email!

SAP Authorizations Architect

Human Resources Department of Ras Al Khaimah Government

Ras Al Khaimah

On-site

AED 300,000 - 400,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A government agency in Ras al-Khaimah is seeking an experienced SAP Authorizations Architect to design and manage SAP security across its various platforms. The ideal candidate will have 10-15 years of expertise in SAP Security and Authorizations, as well as knowledge of cloud-based Identity and Access Management systems. This role includes ensuring compliance with government security standards and conducting access reviews. Candidates must hold a Bachelor's or Master's degree in Computer Applications.

Qualifications

  • 10-15 years of SAP Security & Authorizations expertise required.
  • Strong knowledge of cloud-based IAM essential.
  • Experience in SAP GRC, particularly Access & Process Control.

Responsibilities

  • Design and govern SAP role architecture for various systems.
  • Conduct periodic access reviews and ensure compliance.
  • Collaborate with teams to secure integrations and APIs.

Skills

SAP Security & Authorizations expertise
Cloud-based IAM
S/4HANA role design
BTP Security
Adherence to NIST and ISO27001
English proficiency

Education

Bachelors / Master in Computer Applications

Tools

SAP GRC
Azure AD
OAuth
Job description

The SAP Authorizations Architect will be responsible for designing, governing, and continuously improving SAP Security, Identity & Access Management (IAM), and Authorizations across the RAK Government SAP Landscape hosted on RISE with SAP (Private Cloud). This includes S/4HANA, BW on HANA, SAP BTP, SAP Fiori, SAP CPI, SAP SAC, SAP GRC, and SAP API Management.

The role ensures end-to-end access governance, role design, SoD compliance, security audits, and enforcement of RAK Government cybersecurity and IT governance policies. The Architect will lead the definition of role concepts (Business, Composite, Technical), design and optimize Fiori & backend authorization models, coordinate identity lifecycle processes, manage OAuth/Trust configurations, review Cloud IAM entitlements, and conduct periodic access reviews.

The position requires 10–15 years of SAP Security & Authorizations expertise, strong knowledge of cloud-based IAM, SAP GRC AC/PC, S/4HANA role design, BTP Security, Identity Providers, Certificates, and adherence to NIST, ISO27001, and UAE Government security standards.

KEY ACCOUNTABILITIES & RESPONSIBILITIES
  1. Design and govern SAP role architecture for S/4HANA, Fiori, BW, BTP, CPI, SAC, and API Management.
  2. Develop and maintain Business, Composite, and Single roles with strict SoD compliance.
  3. Perform SU24 maintenance, SU53 analysis, STAUTHTRACE troubleshooting, and end-to-end authorization debugging.
  4. Implement and optimize Fiori catalogs, groups, spaces, and OData authorization concepts.
  5. Manage cloud IAM: IAS/IPS, Azure AD integrations, OAuth tokens, Trust configurations, and SSO (SAML2).
  6. Ensure compliance with RAK Government security standards, NIST, ISO27001, and SAP Security Notes.
  7. Conduct periodic access reviews, user attestation, and adherence to audit requirements.
  8. Manage SAP Identity lifecycle processes (joiner, mover, leaver) across On-Prem, Cloud, and BTP.
  9. Design and enforce least-privilege, zero-trust aligned authorization structures.
  10. Deep expertise in SAP GRC - Access & Process Control.
  11. Review and implement SAP Security Notes, patch compliance, and vulnerability remediation.
  12. Perform risk assessments, mitigations, and audit-ready documentation.
  13. Collaborate with Basis, Functional, and Development teams to secure integrations, RFCs, and APIs.
  14. Support SAP BTP subaccount security (roles, entitlements, trust, connectivity).
  15. Manage Certificate, OAuth client, and SSO configurations.
  16. Provide expert consulting during releases, upgrades, new modules, and system migrations.
  17. Review and implement SAP Security Notes, patch compliance, and vulnerability remediation.
  18. Perform risk assessments, mitigations, and audit-ready documentation.
Educational Qualification

Bachelors / Master in Computer Applications

Experience

10–15 years in SAP Security, Authorizations, GRC & IAM (including minimum 2 years in Cloud / RISE with SAP).

Certifications

SAP Security/GRC Certification, Cloud IAM (Azure/Okta), Cybersecurity certifications (ISO27001, CISSP, CISM beneficial).

English Language (spoken and written) – Essential

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.