SAP IAM Security Specialist (Hybrid, Porto)
Portuguese company hiring for a hybrid SAP IAM Security Specialist position based in Porto / Vila Nova de Gaia, Portugal. Candidates must already be based in Portugal.
- Location: Porto / Vila Nova de Gaia, Portugal
- Work Model: Hybrid – Average 3–4 days per month in the office
- Language Requirements: English – Fluent (Mandatory)
- Seniority: Senior (5+ years)
- Sector: Automotive Technology
- Rate: €2700 – 3000 RV
About the Opportunity
We are looking for an experienced SAP IAM Security Specialist who is passionate about Identity & Access Management, SAP Security, governance, and compliance. In this role, you will collaborate with business stakeholders and technical teams to design secure authorization models, improve governance processes, and ensure compliance with security and audit requirements across SAP landscapes.
You will play a key role in defining IAM strategies, implementing scalable authorization concepts, supporting security projects, and driving continuous improvements in access governance for a global enterprise environment.
Key Responsibilities
- Advise business stakeholders on authorization concepts and Segregation of Duties (SoD) principles.
- Translate business access requirements into secure technical authorization models.
- Lead and contribute to IAM and SAP Security projects across on-premises and cloud environments.
- Monitor compliance, critical access, and support periodic access reviews and recertification processes.
- Design and continuously improve IAM architecture, governance models, security policies, and documentation.
- Analyze audit findings and security risks, implementing sustainable remediation actions.
- Collaborate with business process owners and IT teams to define scalable authorization models.
- Contribute to continuous improvement initiatives across IAM and security governance.
Required Qualifications
- Minimum 5 years of experience as an SAP IAM Security Specialist or in a similar role.
- Proven experience with SAP authorization management and Identity & Access Management.
- Fluent English (mandatory).
Required Technical Skills
- SAP Authorization Management
- PFCG Roles
- Identity & Access Management (IAM)
- Identity Governance & Administration (IGA)
- Role Engineering
- RBAC / ABAC Authorization Models
- User Lifecycle Management (Joiner / Mover / Leaver)
- Access Reviews & Recertification
- Critical Access Management
- Segregation of Duties (SoD)
- SAP GRC / Access Control (nice to have)
Governance, Risk & Compliance
- Security Governance
- Compliance Monitoring
- Internal Controls
- Audit Preparation
- Audit Evidence Management
- Risk Assessment
- Remediation Tracking
- Policy & Procedure Documentation
- RACI Models
IT Operations
- ITIL
- IT Service Management
- Incident Management
- Change Management
- Problem Management
- Access Request Processes
Project Delivery
- Waterfall Methodology
- Hybrid Project Delivery
What We're Looking For
- Strong understanding of business processes and SAP authorization concepts.
- Ability to translate business requirements into scalable security solutions.
- Excellent analytical and problem‑solving skills.
- Strong communication skills with both technical and non‑technical stakeholders.
- Proactive attitude with a strong sense of ownership.
- Highly organized professional with excellent documentation skills.
- Ability to prioritize work in dynamic enterprise environments.
- Passion for governance, compliance, and continuous improvement.
Ideal Candidate Profile
The ideal candidate has extensive experience in SAP IAM Security, combining deep technical expertise with a solid understanding of governance, compliance, and business processes. You are comfortable designing authorization models, managing identity lifecycles, supporting audit activities, and implementing secure access strategies across SAP environments. You communicate effectively with business and technical teams, proactively identify risks, and contribute to building scalable, compliant, and secure enterprise solutions.