Uma candidatura feita para esta oferta — um currículo e uma carta de apresentação personalizados que vão ao encontro do anúncio.
Indorama Ventures seeks an experienced SAP Security & GRC Lead in Mumbai to define, govern, and enhance SAP security architectures and GRC processes across ECC, S/4HANA, and related systems.
You will drive access governance, SOX/GDPR compliance, and audit readiness while partnering with business, IT, and audit teams to mitigate risk and enable secure operations.
Mumbai, India
Full time
JR101258
That's the purpose of Indorama Ventures, and we want you with us on this journey!
We are looking for innovative, collaborative professionals who are ready to embrace the challenge of working in a company that is constantly expanding internationally.
We value flexibility, partnership, and believe that the impact of our actions goes far beyond the chemical industry.
Here, diversity matters.
Our work environment is inclusive, diverse, and guided by respect, ethics, and equal opportunities for all.
The SAP Security & GRC Lead is responsible for defining, managing, and governing SAP security architecture, and continuous improvement of Security & SAP GRC processes across Indovina. This role ensures secure access management, regulatory compliance, audit readiness, and risk mitigation while partnering closely with business, IT, audit, and compliance teams
Lead end to end SAP security administration across ECC, S/4HANA, BW/BI, MDG, CRM, Ariba, and related systems
Design and maintain authorization concepts and role architecture (Single, Composite, Derived, Business, and Fiori roles)
Maintain and optimize SU24 authorization proposals for standard and custom transactions
Perform advanced authorization troubleshooting using SU53, ST01, STAUTHTRACE, SM20, SUIM
Manage mass user administration (user provisioning, role assignments, locking/unlocking, validity extensions)
Lead implementation and operational support of SAP GRC Access Control (10.1 / 12.0):
Access Risk Analysis (ARA)
Access Request Management (ARM)
Emergency Access Management (EAM / Firefighter)
Business Role Management (BRM)
User Access Review (UAR)
Review MSMP workflows, BRF+ rules, and request path approvals.
Manage SoD rule sets, risk functions, mitigation controls, and simulation scenarios.
Ensure effective Firefighter access governance, including FFID ownership, controller reviews, and log monitoring.
Perform periodic risk analysis, remediation, and mitigation assignments at user and role level.
Design and support Fiori security
Catalogs, Groups, Spaces, Tiles
0Data service authorizations
Troubleshoot Fiori authorization issues using system traces and error logs Compliance, Audit & Risk Management
Act as SAP security & GRC SPOC for internal & external audits (SOX, ITGC, GDPR, SOC, etc.)
Prepare and provide audit evidence, access reports (SUIM, SM20), and remediation documentation.
Drive continuous audit readiness, access reviews, and control effectiveness.
Support license audits and optimization initiatives through role and access analysis.
Maintain SAP risk registers aligned with enterprise GRC and compliance frameworks.
Ensure adherence to enterprise security policies and regulatory controls
Identity, Access & Integration
Ensure secure user lifecycle management: joiner, mover, leaver processes.
Coordinate SAP security activities with Corporate Security, Basis, Functional, and Infrastructure teams.
Reporting & Continuous Improvement
Generate GRC dashboards, risk reports, firefighter usage reports, and management summaries.
Identify and implement process improvements to reduce provisioning time and audit findings.
Drive automation and standardization across SAP security and GRC operations.
Continuously improving access provisioning efficiency and compliance posture
Mentorship
Mentor junior consultants or analysts and foster a collaborative team environment.
Bring strong thought-leadership mindset with clear understanding of business requirements and SAP solutions. Required Knowledge/Skills: Technical Skills
SAP ECC & S/4HANA Security
SAP GRC Access Control 10.1 / 12.0
Fiori Security & Gateway Authorizations
SoD Risk Analysis & Mitigation
Authorization Troubleshooting (SU53, ST01, STAUTHTRACE) Required Experience:
8-10 years of experience in SAP Security & GRC
Familiarity with ERP systems (SAP, Oracle) and compliance standards
Compliance Knowledge
SOX, ITGC, GDPR
SAP Audit & Access Controls
License and security compliance
Soft Skills
Excellent analytical, problem-solving, and communication skills.
Excellent verbal and written communication skills, with the ability to engage both technical and non-technical audiences.
SAP Security / GRC Certifications preferred Required Education: Bachelor's degree in business, Engineering or related field.
A competitive compensation package, including:
The division you'll be joining is a global leader in the chemical industry. We offer a broad portfolio of solutions and high delivery standards to markets such as Crop Solutions, Home and Personal Care, Coatings, Energy & Resources, and Performance Products.
Indovinya is the global specialty chemical and surfactants division of Indorama Ventures, dedicated to delivering high-value-added and sustainable solutions that help industries move forward responsibly. With operations across 10 countries, 15 manufacturing locations, and 7 R&D centers worldwide, Indovinya combines deep scientific expertise with strong application know-how to support customers across a broad range of markets.
As a leading producer of nonionic surfactants and ethylene oxide in the Americas and one of the largest ethoxylation companies globally, Indovinya serves key industries including Personal Care, Home Care, Crop Solutions, Coatings & Performance Solutions and Energy & Resources. Through close collaboration and tailored innovation, the company develops high-performing solutions designed to meet evolving market needs.
Guided by the belief that chemistry can transform the world, Indovinya advances responsible progress by creating solutions that enhance everyday products, enable cleaner energy, improve agricultural efficiency, and promote safer and more sustainable manufacturing practices.