Назад
Company hidden
8 часов назад

Lead Cyber Security Engineer (SAP/Workday)

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Lead Cyber Security Engineer (SAP/Workday): Architecting and governing SAP and Workday security, privileged access, cross-application SoD, and secure SAP Joule AI integrations with an accent on Responsible AI, identity governance, and regulatory compliance. Focus on redesigning Firefighter workflows, building unified access-risk controls, and enforcing least-privilege security across enterprise platforms.

Location: Onsite at the Corporate JTL Building in Springdale, Arkansas, United States. 1st shift. Relocation assistance is not available.

Company

hirify.global is a large food manufacturing company with enterprise SAP, Workday, identity, compliance, and access governance environments.

What you will do

  • Lead the redesign and governance of SAP Emergency Access Management and Firefighter processes, including workflows, logging, auditing, and training.
  • Architect secure SAP Business AI and Joule integrations using IAS/IPS, SCIM provisioning, OIDC authentication, and principal propagation.
  • Implement AI security controls covering authentication, authorization, encryption, masking, content filtering, and retrieval-augmented generation processes.
  • Establish cross-application Segregation of Duties rules and controls across SAP, Workday, and other enterprise systems.
  • Integrate SAP and Workday privileged access requirements into the enterprise PAM framework and oversee access reviews, JML processes, and certification cycles.
  • Partner with IT Security, HRIS, Audit, Compliance, and business stakeholders on risk assessments, remediation, reporting, and security architecture.

Requirements

  • 5–10+ years of SAP security and GRC experience, including SAP roles and authorizations, Firefighter, SoD analysis, access risk remediation, S/4HANA, and Fiori.
  • 3–5+ years of Workday security configuration experience with domain policies, security groups, hierarchies, permissions, and SoD controls.
  • Experience designing and operating PAM/EAM workflows, enforcing least privilege, and supporting audits, monitoring, and compliance.
  • Knowledge of SAP Business AI/Joule, IAS/IPS, SCIM, OIDC, identity federation, principal propagation, and Responsible AI security controls.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field.
  • Must be able to work onsite in Springdale, Arkansas, on the 1st shift. Visa sponsorship is not available now or in the future.

Nice to have

  • CISSP, CISM, CISA, SAP Security/GRC, or Workday Security certification.
  • Experience with SAP Ariba, Concur, Fieldglass, SAP IAG, SIEM and GRC platform integration.
  • Experience leading large security initiatives, mentoring teams, and driving change adoption.

Culture & Benefits

  • Paid time off for employees and their families.
  • 401(k) plans.
  • Health, life, dental, vision, and prescription drug benefits.
  • Responsible use of approved AI tools is expected, including protection of sensitive information and validation of AI-generated outputs.
  • Background checks may be required for certain roles.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →