SAP Security Consultant

Enzo Tech Group

Poland

On-site

PLN 134,000 - 212,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Enzo Tech Group is seeking a GRC & Authorization Consultant to govern user access, roles, and authorizations within an AMS environment. You will collaborate with AMS functional and security teams, business process owners, and client stakeholders to ensure least-privilege access is enforced and changes are properly documented and approved.

The role focuses on authorization governance, role design, and remediation tracking, with responsibility for SoD controls and audit evidence.

Qualifications

  • Strong experience in GRC, application authorization, IAM, or access governance.
  • Experience in AMS, managed services, or application-support environments.
  • Solid understanding of least-privilege and SoD controls.

Responsibilities

  • Manage and govern user access, roles, authorizations, and SoD within AMS.
  • Ensure authorization activities are controlled, traceable and meet SLAs.
  • Support access reviews, recertification, and privileged access governance.
  • Review changes to roles/authorizations and ensure proper approvals before production.
  • Maintain audit-ready evidence and respond to audit findings.

Skills

GRC
Identity & Access Management
Access governance
Role-based access control
Audit & compliance
Stakeholder management
Analytical skills

Job description

Contract : 6 Months - Freelance

Start : ASAP (August)

Role Overview

The GRC & Authorization Consultant is responsible for managing and governing user access, roles, authorizations, and Segregation of Duties (SoD) within an Application Management Services (AMS) environment.

The consultant will work closely with AMS functional and technical teams, business process owners, security teams, service management, and client stakeholders to ensure that authorization-related activities are controlled, traceable, and delivered in line with agreed SLAs.

Key Responsibilities
  • Authorization Management within AMS
  • Manage and govern application roles, user authorizations, and access-control requirements as part of ongoing AMS support.
  • Assess authorization requirements arising from incidents, service requests, change requests, enhancements, and business changes.
  • Ensure access is granted according to approved business requirements and the principle of least privilege.
  • Review and approve proposed changes to roles and authorization structures in line with agreed governance processes.
  • Support the creation, modification, testing, and retirement of roles where required.
  • Ensure appropriate documentation and approvals exist before authorization changes are moved into production.
  • Work with functional and technical AMS teams to resolve authorization-related issues.
Access Governance & Reviews
  • Support periodic user access reviews and access-certification activities.
  • Coordinate with business owners to confirm that existing access remains appropriate.
  • Identify and remediate obsolete, excessive, duplicate, or conflicting access.
  • Support joiner, mover, and leaver processes from an authorization-governance perspective.
  • Review privileged and sensitive access within applications supported by the AMS service.
  • Ensure temporary and emergency access is appropriately controlled and removed when no longer required.
GRC & Compliance
  • Maintain authorization controls in accordance with client security policies and applicable compliance requirements.
  • Maintain audit-ready evidence for access requests, approvals, role changes, SoD reviews, and mitigating controls.
  • Support internal and external audits relating to user access and logical security.
  • Respond to audit findings and coordinate authorization-related remediation actions.
  • Maintain relevant GRC documentation, control descriptions, procedures, and operating evidence.
  • Ensure AMS processes continue to meet agreed compliance and control standards following application or organisational changes.
The GRC & Authorization Consultant will be responsible for supporting and maintaining:
  • User authorization and role-governance processes.
  • Segregation of Duties rules and conflict assessments.
  • Role and authorization change requests.
  • Authorization-related incident and problem resolution.
  • Access review and recertification activities.
  • Privileged and sensitive-access governance.
  • Mitigating and compensating controls.
  • Audit and compliance evidence.
  • Authorization-related risks and remediation tracking.
  • Role design and authorization documentation.
  • Operational procedures and support documentation.
  • SLA/KPI reporting for authorization-related AMS activities.
Skills & Experience
  • Strong experience in GRC, application authorization, Identity & Access Management, or access governance.
  • Experience working within an AMS, managed services, or application-support environment.
  • Strong understanding of role-based access control and least-privilege principles.
  • Strong knowledge of Segregation of Duties controls and risk management.
  • Experience analysing and resolving authorization-related incidents and service requests.
  • Experience managing role and access changes within controlled change-management processes.
  • Experience supporting user access reviews and recertification.
  • Experience working with business process owners, functional teams, technical teams, and security stakeholders.
  • Understanding of audit requirements relating to logical access and authorization controls.
  • Ability to work within defined SLAs, ticketing processes, and service-management procedures.
  • Strong analytical, documentation, and stakeholder-management skills.
Role Boundary

The role is specifically responsible for GRC and authorization governance within the AMS service, including roles, access controls, Segregation of Duties, and associated compliance activities.

The role is not intended to own wider GRC activities across the organisation or general application support.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SAP Security & Authorizations Consultant
SAP Security & Authorizations Consultant

N-iX • Województwo małopolskie

Hybrid
PLN 255,000 - 383,000
Flexible working format
Competitive salary
Professional development tools
+2
SAP Security & Authorizations Consultant
SAP Security & Authorizations Consultant

N-iX • Poland

Hybrid
PLN 254,000 - 340,000
Flexible working format
Competitive salary
Personalized career growth
+2
GRC & Authorization Consultant — AMS Access Governance
GRC & Authorization Consultant — AMS Access Governance

Enzo Tech Group • Poland

On-site
PLN 134,000 - 212,000
SAP Security Analyst / Consultant (She/He/They)
SAP Security Analyst / Consultant (She/He/They)

Accenture Poland • Warszawa

On-site
Permanent employment contract
Individual support from a People Lead
Wide training package
+5
Senior SAP Security Consultant – IAM & GRC
Senior SAP Security Consultant – IAM & GRC

Accenture Poland • Warszawa

On-site
PLN 180,000 - 240,000
GRC Analyst/Consultant
GRC Analyst/Consultant

Link Group • Poland

Hybrid
PLN 120,000 - 200,000
Senior Information Security Engineer
Senior Information Security Engineer

SmartRecruiters • Kraków

On-site
PLN 180,000 - 270,000
Senior ServiceNow Developer - Secops / GRC
Senior ServiceNow Developer - Secops / GRC

NTT DATA Europe & Latam • Warszawa

On-site
PLN 210,000 - 270,000
SAP IAM Analyst / Consultant (She/He/They)
SAP IAM Analyst / Consultant (She/He/They)

Accenture • Poland

Hybrid
PLN 70,000 - 100,000
Private medical care
Life insurance
Employee Assistance Program
+3
SAP DMS Techno Functional Consultant
SAP DMS Techno Functional Consultant

RED GLOBAL TRANSPORTES • Warszawa

On-site
PLN 302,000 - 431,000