Senior Application Security, SAP Consultant

Job not on LinkedIn

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $175k - $195k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 8%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of C5MI

C5MI

201 - 500 employees

Founded 2016

💼 Consulting

🏢 Enterprise

📦 Logistics

Consulting • Enterprise • Logistics

C5MI is a supply‑chain transformation and systems implementation firm that operationalizes SAP enterprise systems for real‑time execution. The company focuses on implementing and sustaining SAP S/4HANA, SAP EWM (Extended Warehouse Management), and SAP TM (Transportation Management), and builds end‑to‑end solutions that connect digital core systems to Industry 4. 0 technologies (digital manufacturing, AMRs/AGVs, RFID, digital twins) and AI/automation to improve visibility, adaptability, predictability and autonomy across warehouses and distribution networks. C5MI offers program and project management, an Automation Center of Excellence, federal contract support, and cloud/partner integrations (Google Vertex AI, UiPath AI Center, Zebra RFID, Kinexon, etc. ) to drive supply chain resilience, operational clarity, and execution at scale.

📋 Description

• Own the SAP authorization concept, including role architecture, naming standards, derivation strategy, and role-change governance • Design the segregation of duties framework, rulesets, risk definitions, mitigating controls, ownership, and monitoring frequency • Design governance, risk, and compliance solution architecture across access risk analysis, access request management, business role management, and emergency access management • Design preventive segregation of duties enforcement and risk simulation within request workflows • Design cross-system access risk analysis for integrated applications • Design user access review and recertification programs, including scope, frequency, reviewers, and evidence retention • Map access controls to applicable risk management and information system control frameworks • Design privileged access management, emergency access governance, and audit logging • Own workstreams or key solution components and solve complex problems across modules and interfacing systems • Lead functional-area design, options analysis, effort and risk assessment, and recommendations to solution architecture • Serve as subject matter expert for milestone gate reviews, government working groups, and formal design review responses • Mentor Level III consultants • Support authority to operate, cybersecurity, audit, and compliance activities and produce control evidence • Support cutover, go-live, hypercare, and transition to the sustainment organization • Travel to client sites up to 50% for workshops, design sessions, testing, cutover, and go-live activities • Participate in quality assurance and protect sensitive information according to security policies • Perform other related tasks assigned by the direct supervisor

🎯 Requirements

• Bachelor’s degree in a related field or equivalent experience; 5-7 years of relevant experience with a Bachelor’s or Master’s degree, or 7-10 years of relevant experience without a Bachelor’s degree • 5+ years of SAP Security and SAP governance, risk, and compliance experience • Authorization design ownership on at least one full lifecycle implementation • Deep expertise in SAP S/4HANA authorization concept design, role architecture, and Fiori security • Experience designing and customizing segregation of duties rulesets and mitigating control frameworks • Experience designing SAP Access Control solutions across access risk analysis, access request management, business role management, and emergency access management • Experience producing access control evidence for external financial audit or information system controls testing • Must meet DoDM 8140.03 IAT Level II baseline certification requirements, such as CompTIA Security+ CE, before being granted privileged access • Must obtain any computing environment certification required by the Government within six months of assignment • Ability to own workstreams and key solution components and solve complex problems with minimal oversight • Experience supporting multi-system SAP landscapes and enterprise-scale implementations • Must hold an active Secret clearance or be able to obtain and maintain one prior to assignment; requires U.S. citizenship

🏖️ Benefits

• Medical coverage • Dental coverage • Vision coverage • Life insurance coverage • Long-term disability coverage • 401(k) plan • Bonus opportunities • Paid holidays • Paid time off • Personal development investment • Reasonable accommodation for disability or religious observance

Apply Now

Similar Jobs

🔥 3 hours ago

FICO

1001 - 5000

💼 Consulting

🛡️ Insurance

🏥 Healthcare

Lead IAM Engineer designing cloud-based identity governance and access platforms for FICO, a global analytics software company. Strengthening enterprise security through IAM, PAM, federation, and least-privilege controls.

🔥 8 hours ago

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Information Security Engineer supporting Cisco’s cloud compliance certifications, audits, and security frameworks. Building scalable compliance capabilities across Cisco Cloud offerings.

🕒 Yesterday

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Leading partner go-to-market strategy for Cisco’s Splunk Security portfolio. Scaling launches, sales plays, and readiness programs across global security channel partners.

🕒 2 days ago

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Security channel growth manager scaling Splunk cybersecurity partner go-to-market motions at Cisco. Driving market readiness, launches, enablement, and partner-led growth across U.S. remote locations.

🕒 2 days ago

Skylight

11 - 50

🏭 Manufacturing

📣 Marketing

💼 Consulting

Product Security Engineer securing Skylight’s family-focused calendar products, apps, and cloud platform. Owning vulnerability remediation, bug bounty operations, security tooling, and threat modeling.