Назад
Company hidden
3 дня назад

SAP Architect Authorization and Security

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Germany/Finland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SAP Architect Authorization and Security (SAP S/4HANA, SAP BTP): Designing and governing authorization and security frameworks across a modern SAP landscape with an accent on role architecture, identity integration, and segregation of duties. Focus on redesigning authorization models, hardening SAP platforms, and building secure access patterns for Fiori, APIs, and side-by-side extensions.

Location: Finland or Germany, hybrid

Company

hirify.global is a global industrial technology leader providing material handling solutions across more than 50 countries.

What you will do

  • Design and maintain the target authorization model for SAP S/4HANA, including roles, authorization objects, naming conventions, and segregation of duties controls.
  • Lead the redesign and optimization of the existing SAP authorization landscape, reducing conflicts and strengthening governance.
  • Define security and authorization models across SAP Fiori, SAP BTP, APIs, and side-by-side extensions.
  • Architect identity and access management solutions using SAP Cloud Identity Services, Single Sign-On, and Microsoft Entra ID integration.
  • Establish security standards, guardrails, and reusable frameworks for delivery teams.
  • Drive SAP platform hardening, secure configurations, audit readiness, and continuous security improvements.

Requirements

  • Several years of hands-on experience in SAP security and authorizations, including role redesign or authorization remediation initiatives.
  • Strong expertise in SAP S/4HANA security, SAP Fiori authorizations, PFCG roles, authorization objects, and segregation of duties analysis.
  • Experience with SAP BTP security, role collections, trust configuration, SAML, OAuth, and OIDC.
  • Knowledge of SAP Cloud Identity Services and enterprise identity integration with Microsoft Entra ID.
  • Understanding of SAP RISE, Private Cloud Edition, cloud security principles, Clean Core architecture, GDPR, NIS2, and SOX-related controls.
  • Fluent English required; the role is based in Finland or Germany with hybrid office attendance.

Culture & Benefits

  • Work with international and distributed teams across a global organization.
  • Collaborate with stakeholders across manufacturing, industrial equipment, finance, procurement, logistics, and order management.
  • Work with modern SAP technologies during a major SAP transformation journey.
  • Contribute to innovation, safety, sustainability, and continuous improvement initiatives.
  • Applications are reviewed on an ongoing basis, and interviews may begin before the 13.09.2026 deadline.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →