CURRENT EMPLOYEES - Please apply using "Jobs Hub" in Workday. This career site is for external applicants only.
The SAP Security/GRC Admin is responsible for the management and support of SAP Roles and Security with the Diamondback SAP environment. This position will provide technical and thought leadership in the design, development, implementation, and support of the SAP Role Administration functions across the entire landscape. This role will also provide key contributions in a cross functional approach in the overall and ongoing management, testing and support of the SAP landscape for patches, upgrades and day to day operational issues.
Job Duties and Responsibilities:
Design, deploy and maintain security solutions that enables the business community to achievetheir goals while providing proper identity and access management controlsAnalyze processes and system user needs to deliver quality solutions that meet both business and functional end-to-end requirementsDrive overall security strategy including role design and provisioning for S4Hana ecosystem including SAP S/4 HANA, FIORI, GTS, Solution manager, HANA & other Databases, BTP, etc.Identify security risks, determines the root causes of security violations, suggest the risk mitigation and control measures and build required procedures and controlsEnsures SAP security development and deployment execution align with standards, methodologies, and processesIdentify the root cause of the issues and providing a permanent solution. Work with the Functional team in proposing solutions for the overall stability of the applicationsDaily monitoring of jobs that are necessary for the GRC application(s) to run effectively and efficiently, for example nightly management risk analysis reportingResponsible for day-to-day technical support and resolution of security issues, troubleshooting sap security problems including approval procedures and all the necessary complianceDevelop and maintain processes with applicable documentation related to security by coordinating with IT management and governance teamsWork with IT management as well as governance groups to facilitate appropriate controls around user/system accessProactively Interact with senior management to discuss and explain issues affecting users or systemsGenerate SOX/ad hoc reports on monthly/quarterly/semi-annual basisProvide production support and enhancement testing for existing security roles and positions/functionsWork closely with SAP functional teams to create roles, profiles and authorizations that meet audit requirements as well as functional requirements for end usersMaintain Segregation of Duties for the SAP environment (e.g. HR/Payroll, BASIS, Security Administration, and BI)Work collaboratively with a team to design, build and deploy security frameworks, devices
and applicationsVulnerability Assessment and Penetration Testing: Conduct regular security assessments, vulnerability scans, and penetration tests to identify and address potential security weaknesses in SAP S/4 environments.Be able to provision and de-provision users and roles with appropriate SAP security levelsAble to effectively prioritize tasks in a high-speed environmentCandidate must have strong problem-solving skills, be self-directed and capable of working with minimal supervisionMust have a strong, demonstrated commitment to customer service and be committed to pro-active review of processes and procedures to continually enhance service quality, service delivery and supportCross Training Support for other SAP S/4 HANA Cross-functional teamOccasional work in off-hours to minimize disruption to business
Required Qualifications:
Bachelor's Degree in Business Management, Information Systems or related field orequivalent in years of experienceFour (4+) years in-depth experience in SAP GRC, Role Administration & Security implementation, and production support in ECC 6.0/S4-HANAExperience with SAP S/4 HANA security and authorizationsExperience in SAP S/4 HANA version 1909 or laterExperience in creating and assigning FF ID's and extracting Fire Fighter logsIn-Depth understanding of SAP Security Role design & GRC ArchitectureVery good understanding of role remediation, setting up of SAP Security processesExpertise in SAP Security automation and scripts creation for mass maintenanceExpertise in Running and publishing various SOX reports like, UAR, Critical Actions, SOD,
Critical Permissions, Firefighter Log ReviewExperience in maintaining and troubleshooting Structural Authorizations
Preferred Qualifications:
Experience in SAP security engagements with cloud applications, Azure, etcExperience in supporting end-to-end SAP Security projects, Security and GRC workshops,testing support, Cutover prep, and Hyper care activitiesExperience in Role design in S/4 with Catalog and Group for Fiori Apps and good analytical skills in issue resolutionSAP GRC CertificationIn-Depth understanding on FIORI requirement specifications, design, development, and testingIn-Depth understanding of core BASIS functions and activitiesMinimum of three (3+) years of SAP experience within a large organization including implementing and supportingExperience in creating/maintaining GRC solutionsExperience creating user and security roles for Fiori applicationsExperience with SOD development and ongoing controlsRole administration across multiple landscapeOil and Gas experience preferredExperience with system monitoring, background job administration, spool administrationExperience working with SAP GRC 10.0/10.1, SAP HCM and SAP Solution ManagerExperience with SAP GRC Access Control configuration that includes MSMP and BRFPlusExperience in designing, configuring, and implementing SAP GRC Access Request Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), and Business Role Management (BRM)Strong knowledge in provisioning to SAP LDAP and SAP Enterprise Portal platforms for ABAP Roles, UME Roles, and Portal Roles/Groups.
Relocation:
This position is not eligible for relocation assistance.
Work Authorization:
Diamondback Energy is not currently sponsoring employment visas for this position.
Diamondback is an Equal Employment Opportunity Employer. Diamondback provides equal employment opportunities to all qualified applicants without regard to race, sex, sexual orientation, gender identity, national origin, color, age, religion, veteran or disability status, genetic information, pregnancy, or any other status protected by law. Diamondback participates in E-Verify. Learn more about E-Verify.