SAP Security & GRC Architect (Strategic Design & Transformation)

HCLTech

Lucknow

On-site

INR 1,200,000 - 2,400,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

HCLTech is seeking a seasoned SAP Security & GRC Architect to lead enterprise-wide security strategy for SAP landscapes across ECC, S/4HANA, and cloud environments. You will translate business and regulatory requirements into scalable security architectures and drive transformation roadmaps.

The role demands deep SAP GRC, S/4HANA security design, and strong executive communication skills to partner with leadership and customers globally.

Qualifications

  • 15+ years SAP experience with 10+ years in SAP Security & GRC and 5+ years in architect/advisory roles.
  • Deep expertise in SAP authorization concepts (PFCG, SU24, org-level design), Fiori/S/4HANA catalog and space security, and HANA DB security.
  • Strong hands-on background with SAP GRC Access Control and exposure to SAP IAG / Cloud Identity services.
  • Proven experience designing SoD rulesets, role architectures, and access governance at enterprise scale.
  • Demonstrated experience in full-cycle S/4HANA security design (greenfield, brownfield, or bluefield).
  • Solid understanding of SOX, ITGC, ISO 27001, NIST; comfortable owning audit conversations.

Responsibilities

  • Define enterprise SAP Security and GRC strategy aligned with business and cyber-security objectives.
  • Design target-state SAP Security architectures for ECC, S/4HANA, RISE with SAP, SAP BTP, SAP SAC, Ariba, SuccessFactors, MDG, IBP and other SAP solutions.
  • Develop security transformation roadmaps for SAP modernization programs.
  • Lead SAP Security assessments, maturity reviews, and governance workshops.
  • Establish SAP Security standards, policies, and enterprise design principles.
  • Define enterprise SoD frameworks and risk strategies.
  • Design and govern SAP GRC Access Control solutions (ARA, ARM, EAM, BRM).
  • Establish SAP controls aligned with SOX, ITGC, GDPR, ISO27001, NIST, and internal audit requirements.
  • Lead compliance and audit engagements with internal and external auditors.
  • Provide strategic recommendations for risk reduction and governance optimization.
  • Design security models for S/4HANA transformations and RISE with SAP environments.
  • Define security architecture for SAP BTP services, cloud integrations, APIs, and extensions.
  • Develop Fiori security concepts, catalog design strategy, and role architecture.
  • Drive SAP Identity and Access Management transformation initiatives.
  • Serve as Security Design Authority for customer programs.
  • Conduct executive-level workshops with customer leadership.
  • Translate regulatory requirements into practical SAP security controls.
  • Provide thought leadership on industry trends, SAP roadmap direction, and emerging risks.
  • Support RFPs, solutioning, estimations, due diligence, and customer presentations.

Skills

SAP Security concepts
GRC Access Control (ARA/ARM/EAM/BRM)
SoD design & risk frameworks
S/4HANA security design
Fiori security and role architecture
SAP BTP security & cloud integrations
Identity governance (IAM)
Executive communication

Tools

SAP GRC Access Control 10.x/12.x
SAP IAG / Cloud Identity

Job description

Experience

15+ years SAP experience with 10+ years in SAP Security & GRC and at least 5 years in Architect / Advisory roles.

Role Summary

We are seeking a highly experienced and dynamic SAP Security & GRC Architect to lead enterprise-wide SAP Security, Governance, Risk, and Compliance strategy initiatives for global customers. This role is not a support or administration position. The successful candidate will act as a trusted advisor Customer and business leadership teams, helping define security roadmaps, governance frameworks, target operating models, and transformation strategies across SAP landscapes.

The ideal candidate should possess deep expertise across SAP ECC, S/4HANA, SAP BTP, SAP Fiori, SAP GRC, Cloud Platforms, Identity Governance, and emerging SAP security technologies while being capable of translating business and regulatory requirements into scalable and secure SAP architectures.

Key Responsibilities
Security Strategy & Architecture
  • Define enterprise SAP Security and GRC strategy aligned with business and cyber-security objectives.
  • Design target-state SAP Security architectures for ECC, S/4HANA, RISE with SAP, SAP BTP, SAP SAC, Ariba, SuccessFactors, MDG, IBP and other SAP solutions.
  • Develop security transformation roadmaps for SAP modernization programs.
  • Lead SAP Security assessments, maturity reviews, and governance workshops.
  • Establish SAP Security standards, policies, and enterprise design principles.
Governance, Risk & Compliance
  • Define enterprise Segregation of Duty (SoD) frameworks and risk strategies.
  • Design and govern SAP GRC Access Control solutions (ARA, ARM, EAM, BRM).
  • Establish SAP controls aligned with SOX, ITGC, GDPR, ISO27001, NIST, and internal audit requirements.
  • Lead compliance and audit engagements with internal and external auditors.
  • Provide strategic recommendations for risk reduction and governance optimization.
S/4HANA & Cloud Security
  • Design security models for S/4HANA transformations and RISE with SAP environments.
  • Define security architecture for SAP BTP services, cloud integrations, APIs, and extensions.
  • Develop Fiori security concepts, catalog design strategy, and role architecture.
  • Drive SAP Identity and Access Management transformation initiatives.
Advisory & Consulting
  • Serve as Security Design Authority for customer programs.
  • Conduct executive-level workshops with customer leadership.
  • Translate regulatory requirements into practical SAP security controls.
  • Provide thought leadership on industry trends, SAP roadmap direction, and emerging risks.
  • Support RFPs, solutioning, estimations, due diligence, and customer presentations.
Operating Model & Governance
  • Design enterprise SAP Security operating models.
  • Establish governance structures, RACI matrices, and control ownership.
  • Define KPIs, compliance reporting, and security health frameworks.
  • Implement continuous improvement programs across SAP Security and GRC functions.
Leadership
  • Mentor architects, leads, and security consultants.
  • Build reusable frameworks, accelerators, and best practices.
  • Collaborate with Cyber Security, IAM, Audit, Risk, Infrastructure, and SAP Platform teams.
Required Qualifications
  • 15+ years SAP experience with 10+ years in SAP Security & GRC and at least 5 years in Architect / Advisory roles.
  • Deep expertise in SAP authorization concepts (PFCG, SU24, org-level design), Fiori/S/4HANA catalog- and space-based security, and HANA DB security.
  • Strong hands-on background (past or current) with SAP GRC Access Control 10.x/12.x (ARA, ARM, EAM, BRM) and exposure to SAP IAG / Cloud Identity services.
  • Proven experience designing SoD rulesets, role architectures, and access governance models at enterprise scale.
  • Demonstrated experience in at least one full-cycle S/4HANA security design (greenfield, brownfield, or bluefield).
  • Solid understanding of audit and compliance frameworks: SOX, ITGC, ISO 27001, NIST; comfortable owning audit conversations.
  • Ability to communicate complex security concepts to executives and non-technical stakeholders; strong documentation and presentation skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SAP GRC Security
SAP GRC Security

Orcapod Consulting Services • Pune District

Hybrid
INR 1,800,000 - 2,400,000
Senior SAP Security Analyst
Senior SAP Security Analyst

Arthrex India • Maharashtra

On-site
INR 2,500,000 - 4,200,000
SAP GRC Consultant Sr
SAP GRC Consultant Sr

Stefanini North America and APAC • Hyderabad

On-site
INR 1,800,000 - 2,400,000
SAP GRC and Security Consultant
SAP GRC and Security Consultant

PwC • Pune District, Bengaluru, Hyderabad

Hybrid
INR 1,500,000 - 2,300,000
SAP GRC Implementation Consultant (7+ Years )
SAP GRC Implementation Consultant (7+ Years )

HypTechie • India

Hybrid
INR 1,700,000 - 2,000,000
SAP HCM Security Consultant
SAP HCM Security Consultant

Tecnoprism • Pune District

On-site
INR 1,200,000 - 2,400,000
Architect - SAP Governance and Risk Compliance
Architect - SAP Governance and Risk Compliance

PepsiCo • Hyderabad

On-site
INR 1,908,000 - 2,863,000
Architect - SAP Security And Authorizations
Architect - SAP Security And Authorizations

PepsiCo • Hyderabad

On-site
INR 1,500,000 - 2,900,000
Sap Security
Sap Security

GyanSys Inc. • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Senior SAP Roles & Rights Expert
Senior SAP Roles & Rights Expert

BMW TechWorks India Private Limited • Chennai District

On-site
INR 1,800,000 - 3,200,000