Principal SAP Security Control Architect

1 week ago


Mumbai Maharashtra, India LyondellBasell Industries Full time

Location: Mumbai, IN, 400076
- Req ID: 86097
- Facility: Mumbai-470
- Department: Enterprise Solution Architecture
- Division: Innovation

**Basic Function**:
**Roles & Responsibilities**:
A SAP Security Control Architect is responsible for ensuring the security of a company's SAP systems. They develop and implement security policies and procedures, conduct security assessments, and perform audits to identify vulnerabilities and risks. They also design SAP Application Security models (Access control and Process control), manage business workshops for requirement gathering, and convert business requirements into technical design/authorization matrix and documentation.:

- Continuously conducting comprehensive assessments of existing controls frameworks, policies, and procedures within SAP systems to identify weaknesses, gaps, and areas of non-compliance.
- Designing and implementing remediation plans to address identified control deficiencies, ensuring alignment with industry best practices, regulatory requirements, and organizational objectives.
- Collaborating with other LYB IT architects and IT CoE and Product teams to design and implement technical solutions that enhance control mechanisms within SAP landscapes, including configuration changes, system upgrades, and integration with third-party tools.
- Collaborating with internal audit and business stakeholders to understand control requirements and risk assessments.
- Systematically design and implement technical solutions to mitigate control risks using best practices and industry standards.
- Regularly document and communicate control remediation activities and their impact on business processes.
- Staying up-to-date on the latest SAP security threats and vulnerabilities.
- Participating in continuous improvement initiatives to enhance the overall security posture of the SAP environment.
- Providing strategic leadership and creative thinking to help the technical delivery team through the project lifecycle
- Creating conceptual architecture views, Architecture Technical designs, collect and document architecture significant decisions and architecture key constraints
- Analyzing architecture alternatives and provide recommendations on best options, considering input from the development teams
- Working on multiple concurrent projects, meet business expectations, influence outcomes and maintain stated timelines
- Keep up to date on industry architectural standards and trends
- Establishing security controls to ensure protection of LYB systems.
- Creating documents such as System Security Plan (SSP), Security Assessment Report (SAR), Contingency Planning, Incident Response Plan, Technical Risk Assessments(TRA) Plans of Actions and Milestones (POA&Ms)

**Min. Qualifications**:
This is a SAP security control architect position requiring either a degreed professional who possesses a Bachelor's degree in Computer Science, Business or Engineering with a minimum of eight (8) years of relevant experience. This individual must demonstrate strong technical SAP security expertise and knowledge in each of the following technology disciplines:

- Bachelor’s degree or higher in information technology, Computer Science or a related discipline
- 15 years of professional experience in SAP security, controls and remediation.
- Minimum of 5 years of experience in SAP security and controls.
- Proven experience in identifying, analyzing, and remediating SAP control deficiencies.
- In-depth understanding of SAP security concepts, including authorization, segregation of duties, and user access management.
- Experience with GRC tools such as SAP GRC AC or similar solutions.
- Strong understanding of SAP modules (e.g., FI/CO, MM, SD) and associated controls frameworks (e.g., SAP GRC).
- Experience with internal audit methodologies and frameworks is a plus.
- Knowledge of relevant compliance regulations (e.g., SOX, GDPR).
- Strong understanding of data privacy and security best practices is a plus.
- Strong analytical and problem-solving skills.
- Ability to work independently and as part of a team.
- Excellent project management skills.
- Demonstrated problem solving, multi-tasking, troubleshooting skills with a high degree of flexibility
- Experience in Software Development Life Cycle (SDLC) / Agile development / DevOps
- Strong analytical skills with the ability to understand key business processes and related issues
- Strong self-leadership and ability to work independently and manage conflict
- Demonstrated competency in accurately identifying the scope of work and preparing thorough, accurate and detailed schedule estimates.
- Non-functional requirements gathering and solutioning experience
- Ability to develop successful relationships with external and internal partners
- Possessing experience leading end SAP Security implementations and controls integration projects.
- Good understanding of SAP systems such ECC, S/4, Ariba, SuccessFactors and Non-SAP systems such as Sale



  • Mumbai, Maharashtra, India SAP Full time ₹ 15,00,000 - ₹ 45,00,000 per year

    We help the world run betterAt SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...


  • Mumbai, Maharashtra, India LyondellBasell Full time

    LyondellBasell NYSE LYB As a leader in the global chemical industry LyondellBasell strives every day to be the safest best operated and most valued company in our industry The company s products materials and technologies are advancing sustainable solutions for food safety access to clean water healthcare and fuel efficiency in more than 100...

  • Principal Architect

    2 weeks ago


    Pune, Maharashtra, India Cognizant Full time

    **Job Summary** **Responsibilities** - Lead the design and implementation of SAP Security solutions to ensure the protection of sensitive data and compliance with industry standards. - Oversee the deployment and management of SAP GRC Access Control to streamline access management processes and mitigate risks. - Provide expertise in ABAP Authorization to...

  • Presales Expert

    7 days ago


    Mumbai, India SAP Full time

    **We help the world run better** **What you'll do** This is an expert level role in the customer advisory team of SAP India, which drives Digital and Technology Innovations with some of the large companies in India. The Industry Business Architect (IBA) acts as a trusted advisor to customers by helping them solve their business challenges and address...


  • Pune, Maharashtra, India SAP Full time

    **We help the world run better** At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and...

  • Associate Principal

    2 weeks ago


    Mumbai, India Bristlecone Full time

    Job Title: Associate Principal - SAP ABAP **Job Description**: - We are looking for talent that wants to be a part of the transformative journey with us at Bristlecone _( ) ABOUT US: Our transformative solutions in Digital Logistics, Cognitive Manufacturing, Autonomous Planning, Smart Procurement and Digitalization are positioned around key industry...


  • Pune, Maharashtra, India Medtronic Full time

    At Medtronic you can begin a life-long career of exploration and innovation, while helping champion healthcare access and equity for all. You’ll lead with purpose, breaking down barriers to innovation in a more connected, compassionate world. **Responsibilities may include the following and other duties may be assigned**: - Develop and deliver solutions...


  • Mumbai, India LTIMindtree Full time

    **Experience**: 5-8 years. **Must have experience with**: - BTP platform architecture understanding, - Strong skills in developing BTP security roles. - Understanding of BTP launchpad roles, groups, catalog. - SAP BTP trust configuration. - Secure software development best practices. - Authorization using XSUAA. - Principal propagation. - Good...

  • SAP Security

    2 days ago


    Pune, Maharashtra, India TransformHub Full time

    **SENIOR ENGINEER - SAP SECURITY** **Key Responsibilities** - User Access Management: Create, modify, and revoke user access rights within the SAP environment based on approved business roles, ensuring appropriate segregation of duties and compliance with company policies and regulations. - User, Role Administration AS ABAP and Java - Troubleshooting and...

  • SAP Security

    7 days ago


    Pune, Maharashtra, India Skillety Technologies Full time

    **Job Title**: SAP Security **Responsibilities**: - Maintaining and troubleshooting SAP Authorizations for our current SAP system landscape (GRC, ERP, SRM, SCM, XI/PI, Solution Manager, MES, BI,MDM, Business Objects, EP, Fiori, IBP & Ariba) - Analysis, design and transfer of business requirements into a SAP Security landscape - Build Roles/ Authorizations/...