Cybersecurity GRC Analyst, SAP Platform

McKesson

Cork

Hybrid

EUR 56,000 - 94,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

McKesson Ireland is seeking an experienced Cybersecurity GRC Analyst, SAP Platform to support and strengthen our Governance, Risk, and Compliance program. You will help ensure regulatory and internal control requirements while improving risk management across the enterprise.

You will partner with business, security, audit, and technology teams to implement and maintain effective controls, manage SAP GRC solutions, and support audit readiness.

Qualifications

  • 4+ years of experience in SAP GRC, IT risk, compliance, IT audit, cybersecurity governance, or related fields.
  • Bachelor's degree in Information Systems, Information Security, Risk Management, Accounting, Business, or a related discipline; or equivalent experience.
  • Hands‑on experience with SAP GRC Access Control, Process Control, or Risk Management.
  • Experience performing Segregation of Duties (SoD) analysis and remediation.
  • Experience conducting User Access Reviews and access governance activities.
  • Experience supporting SOX compliance, ITGC testing, and audit documentation.
  • Strong understanding of risk management, internal controls, and compliance frameworks.
  • Strong analytical, communication, and stakeholder management skills.

Responsibilities

  • Administer and support the SAP GRC Suite, including Access Control, Process Control, and Risk Management.
  • Perform SoD analysis, identify conflicts, and partner with stakeholders on remediation activities.
  • Lead User Access Reviews (UARs) and support Privileged Access Monitoring to ensure appropriate system access.
  • Execute and document ITGC and SOX control testing, maintaining audit-ready evidence and compliance documentation.
  • Support internal and external audits by providing evidence, responding to inquiries, and tracking remediation activities.
  • Conduct risk assessments and control reviews to identify gaps and recommend improvements.
  • Monitor control effectiveness, compliance metrics, and reporting to support leadership decision-making.
  • Partner with cross-functional teams to strengthen governance, risk, compliance, and security practices across the organization.

Skills

SAP GRC
IT risk
Compliance
IT audit
Governance
SOX
Audit documentation

Education

Bachelor's degree in Information Systems

Tools

SAP GRC Access Control
Process Control
Risk Management
SAP BTP
Azure

Job description

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

At McKesson, we are advancing healthcare through innovation, integrity, and operational excellence. We are seeking an experienced Cybersecurity GRC Analyst, SAP Platform to support and strengthen our Governance, Risk, and Compliance (GRC) program. In this role, you will help ensure compliance with regulatory and internal control requirements while improving risk management processes across the enterprise.

You will partner with business, security, audit, and technology teams to implement and maintain effective controls, manage SAP GRC solutions, and support audit readiness. This role is ideal for a professional who combines strong technical expertise with a passion for compliance, risk reduction, and continuous improvement.

At McKesson, we care about the well-being of the patients and communities we serve, and that starts with caring for our people. That’s why we have a Total Rewards package that includes comprehensive benefits to support physical, mental, and financial well-being. Our Total Rewards offerings serve the different needs of our diverse employee population and ensure they are the healthiest versions of themselves.

As part of Total Rewards, we are proud to offer a competitive compensation package at McKesson. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered.

What You'll Do
  • Administer and support the SAP GRC Suite, including Access Control, Process Control, and Risk Management.
  • Perform Segregation of Duties (SoD) analysis, identify conflicts, and partner with stakeholders on remediation activities.
  • Lead User Access Reviews (UARs) and support Privileged Access Monitoring to ensure appropriate system access.
  • Execute and document ITGC and SOX control testing, maintaining audit-ready evidence and compliance documentation.
  • Support internal and external audits by providing evidence, responding to inquiries, and tracking remediation activities.
  • Conduct risk assessments and control reviews to identify gaps and recommend improvements.
  • Monitor control effectiveness, compliance metrics, and reporting to support leadership decision-making.
  • Partner with cross-functional teams to strengthen governance, risk, compliance, and security practices across the organization.
Basic Requirements
  • 4+ years of experience in SAP GRC, IT risk, compliance, IT audit, cybersecurity governance, or related fields.
  • Bachelor's degree in Information Systems, Information Security, Risk Management, Accounting, Business, or a related discipline; or equivalent experience.
  • Hands‑on experience with SAP GRC Access Control, Process Control, or Risk Management.
  • Experience performing Segregation of Duties (SoD) analysis and remediation.
  • Experience conducting User Access Reviews and access governance activities.
  • Experience supporting SOX compliance, ITGC testing, and audit documentation.
  • Strong understanding of risk management, internal controls, and compliance frameworks.
  • Strong analytical, communication, and stakeholder management skills.
Technical Skills and Key Experience Areas
  • SAP Basis, HANA/Oracle/MSSQL DBA, Business Objects, Linux and Windows administration.
  • Platform experience across SAP RISE, SAP BTP, and other SAP SaaS deployments.
  • Hyperscaler platform experience including Microsoft Azure and GCP.
  • Advanced Identity and Access Management (SSO/MFA) leveraging OpenID, SAML, Kerberos, SPNego, LDAP, Active Directory, Okta, and SAP Identity Provider.
  • Privileged Access Management across OS, database, and application layers in SAP and non-SAP environments, including CyberArk.
  • IGA, SAP GRC, and SailPoint expertise.
  • SOX/SOC controls across OS, database, and application layers in SAP and non-SAP environments.
Preferred Skills/Experience
  • SAP security administration experience within ECC, S/4HANA, or cloud environments.
  • Knowledge of Privileged Access Management (PAM) concepts and monitoring practices.
  • Experience supporting regulatory, internal, or external audits.
  • Familiarity with automated controls monitoring and compliance reporting tools.
  • Experience developing compliance dashboards, metrics, and management reporting.
  • Professional certifications such as CISA, CRISC, CISSP, SAP GRC, or similar.
  • Experience driving control-gap remediation and continuous improvement initiatives.
  • Knowledge of healthcare, pharmaceutical, distribution, or highly regulated industries.

Our Base Pay Range for this position

€56,300 - €93,800

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. SOX and Compliance Analyst, SAP Applications
Sr. SOX and Compliance Analyst, SAP Applications

McKesson • Cork

Hybrid
EUR 72,000 - 120,000
Total Rewards package
Competitive compensation
SOX and Compliance Analyst
SOX and Compliance Analyst

McKesson • Cork

Hybrid
EUR 56,000 - 94,000
Operations Manager, SOX and Compliance
Operations Manager, SOX and Compliance

McKesson • Cork

Hybrid
EUR 56,000 - 94,000
Sr IAM Engineer – SAP Security (Integration)
Sr IAM Engineer – SAP Security (Integration)

McKesson • Cork

On-site
EUR 66,000 - 110,000
Sr IAM Engineer - SAP Security (Integration)
Sr IAM Engineer - SAP Security (Integration)

McKesson Corporation • Ireland

On-site
EUR 66,000 - 110,000
Comprehensive benefits package
Performance-based bonuses
Long-term incentive opportunities
Sr. IAM Engineer – SAP Security HANA
Sr. IAM Engineer – SAP Security HANA

McKesson • Cork

On-site
EUR 66,000 - 110,000
Comprehensive benefits
Competitive compensation package
Sr. IAM Engineer - SAP Security HANA
Sr. IAM Engineer - SAP Security HANA

McKesson Corporation • Ireland

On-site
EUR 66,000 - 110,000
Comprehensive benefits package
Senior SAP GRC & SOX Compliance Analyst
Senior SAP GRC & SOX Compliance Analyst

McKesson • Cork

Hybrid
EUR 72,000 - 120,000
Total Rewards package
Competitive compensation
SAP GRC Analyst — SoD & SOX Compliance
SAP GRC Analyst — SoD & SOX Compliance

McKesson • Cork

Hybrid
EUR 56,000 - 94,000
SOX & GRC Compliance Analyst (SAP & IAM)
SOX & GRC Compliance Analyst (SAP & IAM)

McKesson • Cork

Hybrid
EUR 56,000 - 94,000