SAP Application Manager

Nouryon

Navi Mumbai

On-site

INR 2,000,000 - 3,000,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Nouryon is seeking a SAP Security & Controls Governance Lead located in Navi Mumbai, India, responsible for enterprise-wide SAP access risk management and controls governance. This contract position requires 12-15 years of experience in SAP security and GRC, with a focus on compliance across all SAP environments.

The successful candidate will bridge IT, Finance, Internal Audit, and Business Process Owners to strengthen security and improve compliance.

Qualifications

  • 12-15 years of SAP security and GRC experience required.
  • Must have experience with SOX in a public or IPO-bound company.

Responsibilities

  • Own enterprise SAP SOD policy and governance framework.
  • Define and enforce role ownership model.
  • Implement least-privilege principles.

Skills

SAP security and GRC experience
Expertise in SAP ECC and/or S/4HANA security architecture
Experience with SAP GRC Access Control
Understanding of ITGC and financial reporting risk
Cross-functional communication

Job description

Purpose of the Job

The SAP Security & Controls Governance Lead is responsible for enterprise-wide SAP access risk management and controls governance across all SAP environments. This role owns SAP segregation of duties (SOD) governance, role design standards, access risk monitoring, and automated control integrity to ensure compliance with SOX, internal control, and enterprise risk management requirements. This role bridges IT, Finance, Internal Audit, and Business Process Owners to strengthen security design, reduce control risk, and improve system-enabled compliance.

Note: This is a contract position with a tenure of one year.

Job Responsibilities
A. SAP Segregation of Duties (SOD) Governance
  • Own enterprise SAP SOD policy, standards, and governance framework.
  • Design and maintain SOD ruleset aligned to financial reporting risks.
  • Able to support on the cross-system SOD’s and ensuring alignment with SAP functionality (new Tcodes, Fiori apps, CDS views, custom developments).
  • Oversee role design standards and naming conventions.
  • Review and approve new role requests and structural role changes.
  • Lead quarterly access risk review process.
  • Monitor emergency access (Firefighter) governance.
  • Oversee mitigation control design and documentation.
  • Drive remediation of toxic combinations.
B. SAP Security Governance
  • Define and enforce role ownership model (GPO alignment).
  • Implement least-privilege principles and maintain global role catalog.
  • Partner with IAM team on provisioning workflows.
  • Lead security-related configuration reviews.
  • Support audit and SOX walkthroughs.
  • Oversee user access review automation.
C. SAP Controls Governance
  • Own governance over:
    • Automated configurable controls.
    • Key system reports used as SOX controls.
    • Interface controls and Workflow approvals.
    • Change management security impacts.
  • Validate design and integrity of automated controls.
  • Coordinate with ITGC owner for change management alignment.
D. Strategic & Cross-Functional
  • Act as liaison between IT, finance, internal audit, global process owners.
  • Support IPO/SOX readiness.
  • Identify automation opportunities in GRC and SA.
Experience & Skills
  • 12-15 years SAP security and GRC experience.
  • Deep expertise in SAP ECC and/or S/4HANA security architecture.
  • Experience with SAP GRC Access Control (AC).
  • SOX experience in public or IPO-bound company.
  • Strong understanding of ITGC, Automated controls and financial reporting risk.
Preferred
  • Experience in manufacturing environment.
  • Experience leading global role redesign.
  • Experience preparing for IPO or remediation program.
  • Governance mindset (not just ticket processor).
  • Strong cross-functional communication.
  • Ability to challenge business leaders on risk.
  • Executive presence.
  • Structured documentation and policy writing.
  • Data-driven analysis.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SAP Security Consultant
SAP Security Consultant

Greytip Software Private Limited • Bengaluru

On-site
INR 3,500,000 - 5,200,000
Senior SAP Security Analyst
Senior SAP Security Analyst

Arthrex India • Maharashtra

On-site
INR 2,500,000 - 4,200,000
SAP GRC (Access Control & Process Control) Consultant
SAP GRC (Access Control & Process Control) Consultant

VMC Soft Technologies, Inc • Hyderabad

On-site
INR 2,500,000 - 4,500,000
SAP Security & GRC Consultant
SAP Security & GRC Consultant

GyanSys Inc. • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Sap Security
Sap Security

GyanSys Inc. • Bengaluru

On-site
INR 2,500,000 - 4,000,000
SAP GRC and Security Consultant
SAP GRC and Security Consultant

CIEL HR • Hyderabad, Bengaluru

On-site
INR 1,200,000 - 1,800,000
SAP GRC and Security Consultant
SAP GRC and Security Consultant

PwC • Pune District, Bengaluru, Hyderabad

Hybrid
INR 1,500,000 - 2,300,000
SAP Security and GRC Consultant
SAP Security and GRC Consultant

Placement Baba • New Delhi

On-site
INR 600,000 - 1,200,000
SAP SOD Senior Consultant/Manager
SAP SOD Senior Consultant/Manager

Protiviti India • Gurugram District, Bengaluru, Mumbai

On-site
INR 1,500,000 - 2,100,000
SAP GRC Security
SAP GRC Security

Orcapod Consulting Services • Pune District

Hybrid
INR 1,800,000 - 2,400,000