Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Advisor System Admin - SAP Security image - Rise Careers
Job details

Advisor System Admin - SAP Security

CURRENT EMPLOYEES - Please apply using "Jobs Hub" in Workday. This career site is for external applicants only.

The SAP Security/GRC Admin is responsible for the management and support of SAP Roles and Security with the Diamondback SAP environment. This position will provide technical and thought leadership in the design, development, implementation, and support of the SAP Role Administration functions across the entire landscape. This role will also provide key contributions in a cross functional approach in the overall and ongoing management, testing and support of the SAP landscape for patches, upgrades and day to day operational issues.


 

Job Duties and Responsibilities:

  • Design, deploy and maintain security solutions that enables the business community to achieve
    their goals while providing proper identity and access management controls
  • Analyze processes and system user needs to deliver quality solutions that meet both business and functional end-to-end requirements
  • Drive overall security strategy including role design and provisioning for S4Hana ecosystem including SAP S/4 HANA, FIORI, GTS, Solution manager, HANA & other Databases, BTP, etc.
  • Identify security risks, determines the root causes of security violations, suggest the risk mitigation and control measures and build required procedures and controls
  • Ensures SAP security development and deployment execution align with standards, methodologies, and processes
  • Identify the root cause of the issues and providing a permanent solution. Work with the Functional team in proposing solutions for the overall stability of the applications
  • Daily monitoring of jobs that are necessary for the GRC application(s) to run effectively and efficiently, for example nightly management risk analysis reporting
  • Responsible for day-to-day technical support and resolution of security issues, troubleshooting sap security problems including approval procedures and all the necessary compliance
  • Develop and maintain processes with applicable documentation related to security by coordinating with IT management and governance teams
  • Work with IT management as well as governance groups to facilitate appropriate controls around user/system access
  • Proactively Interact with senior management to discuss and explain issues affecting users or systems
  • Generate SOX/ad hoc reports on monthly/quarterly/semi-annual basis
  • Provide production support and enhancement testing for existing security roles and positions/functions
  • Work closely with SAP functional teams to create roles, profiles and authorizations that meet audit requirements as well as functional requirements for end users
  • Maintain Segregation of Duties for the SAP environment (e.g. HR/Payroll, BASIS, Security Administration, and BI)
  • Work collaboratively with a team to design, build and deploy security frameworks, devices
    and applications
  • Vulnerability Assessment and Penetration Testing: Conduct regular security assessments, vulnerability scans, and penetration tests to identify and address potential security weaknesses in SAP S/4 environments.
  • Be able to provision and de-provision users and roles with appropriate SAP security levels
  • Able to effectively prioritize tasks in a high-speed environment
  • Candidate must have strong problem-solving skills, be self-directed and capable of working with minimal supervision
  • Must have a strong, demonstrated commitment to customer service and be committed to pro-active review of processes and procedures to continually enhance service quality, service delivery and support
  • Cross Training Support for other SAP S/4 HANA Cross-functional team
  • Occasional work in off-hours to minimize disruption to business

Required Qualifications:

  • Bachelor's Degree in Business Management, Information Systems or related field or
    equivalent in years of experience
  • Four (4+) years in-depth experience in SAP GRC, Role Administration & Security implementation, and production support in ECC 6.0/S4-HANA
  • Experience with SAP S/4 HANA security and authorizations
  • Experience in SAP S/4 HANA version 1909 or later
  • Experience in creating and assigning FF ID's and extracting Fire Fighter logs
  • In-Depth understanding of SAP Security Role design & GRC Architecture
  • Very good understanding of role remediation, setting up of SAP Security processes
  • Expertise in SAP Security automation and scripts creation for mass maintenance
  • Expertise in Running and publishing various SOX reports like, UAR, Critical Actions, SOD,
    Critical Permissions, Firefighter Log Review
  • Experience in maintaining and troubleshooting Structural Authorizations

Preferred Qualifications:

  • Experience in SAP security engagements with cloud applications, Azure, etc
  • Experience in supporting end-to-end SAP Security projects, Security and GRC workshops,
    testing support, Cutover prep, and Hyper care activities
  • Experience in Role design in S/4 with Catalog and Group for Fiori Apps and good analytical skills in issue resolution
  • SAP GRC Certification
  • In-Depth understanding on FIORI requirement specifications, design, development, and testing
  • In-Depth understanding of core BASIS functions and activities
  • Minimum of three (3+) years of SAP experience within a large organization including implementing and supporting
  • Experience in creating/maintaining GRC solutions
  • Experience creating user and security roles for Fiori applications
  • Experience with SOD development and ongoing controls
  • Role administration across multiple landscape
  • Oil and Gas experience preferred
  • Experience with system monitoring, background job administration, spool administration
  • Experience working with SAP GRC 10.0/10.1, SAP HCM and SAP Solution Manager
  • Experience with SAP GRC Access Control configuration that includes MSMP and BRFPlus
  • Experience in designing, configuring, and implementing SAP GRC Access Request Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)
  • Strong knowledge in provisioning to SAP LDAP and SAP Enterprise Portal platforms for ABAP Roles, UME Roles, and Portal Roles/Groups.

Relocation:

This position is not eligible for relocation assistance.

Work Authorization:

Diamondback Energy is not currently sponsoring employment visas for this position.

Diamondback is an Equal Employment Opportunity Employer. Diamondback provides equal employment opportunities to all qualified applicants without regard to race, sex, sexual orientation, gender identity, national origin, color, age, religion, veteran or disability status, genetic information, pregnancy, or any other status protected by law. Diamondback participates in E-Verify. Learn more about E-Verify.

Average salary estimate

$135000 / YEARLY (est.)
min
max
$110000K
$160000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Electra Hybrid Boulder, Colorado, United States
Posted 15 hours ago

Electra is hiring a Senior IT Data Security & OT Risk Engineer to drive IT/OT security frameworks, risk programs, and compliance across global industrial and enterprise environments.

Photo of the Rise User
Posted 7 hours ago

CyberSheath seeks a Detail-oriented Helpdesk Technician Level II to deliver remote Tier 2 support and manage client IT systems across cloud and on-prem environments for DIB customers.

Tyto Athene is hiring a Cyber Security Analyst III to lead RMF/ATO package development and operational cybersecurity support for AFRC systems at Warner Robins, GA.

Mercury Insurance seeks a Technical Support Technician I to remotely deliver hardware and software support, device deployments, imaging, and troubleshooting for end-user computing across the U.S.

Photo of the Rise User

Geeks on Site is hiring experienced on-call IT field technicians to deliver on-demand onsite PC, Mac and printer support across the Chicago-Naperville-Elgin area.

Photo of the Rise User
Posted 52 minutes ago

Bezos Academy seeks a hands-on IT Support Engineer to provide end-user support, build workflows and automation, and help scale Technology Services while working remotely on Eastern Time.

Children's Mercy is hiring an onsite Information Systems Inventory Analyst to maintain accurate hardware and software inventory and manage asset lifecycle activities using ServiceNow (HamPro/SamPro).

Posted 13 hours ago

Covenant Health is hiring a Senior Systems Analyst to design, manage, and secure the organization’s server, virtualization, and Microsoft infrastructure supporting a large regional healthcare network.

Posted 19 hours ago

Lead the IT transformation for a growing veterinary platform by rebuilding infrastructure, implementing security best practices, and evolving into a Director-level role as the IT function scales.

Posted 12 hours ago

Experienced Azure Cloud Engineer needed for a full-time, onsite role in College Park supporting Navy Forge with cloud maintenance, IaC automation, and migration efforts.

godirect Hybrid MA-Braintree, 30 Braintree Hill Office Park
Posted 15 hours ago

Provide executive-level deskside and remote IT support as a Lead Solutions Engineer, resolving complex Windows, Microsoft 365, AV, and infrastructure issues at Voya's Braintree, MA office.

Chick-fil-A is hiring a Senior Lead Systems Analyst to own and advance authentication and authorization strategy across its Identity Ecosystem.

Photo of the Rise User
Posted 9 hours ago

ING Americas is hiring a Contract Database Administrator to support and secure its cloud-based Oracle and SQL Server environments while driving performance, compliance, and incident response.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, onsite
DATE POSTED
August 22, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!