Entity:
Technology
Job Family Group:
Job Description:
About Bp
Our purpose is to deliver energy to the world, today and tomorrow. For over 100 years, bp has focused on discovering, developing, and producing oil and gas in the nations where we operate. We are one of the few companies globally that can provide governments and customers with an integrated energy offering. Delivering our strategy sustainably is fundamental to achieving our ambition to be a net zero company by 2050 or sooner.
You will work with
This role will work within Digital Security team and is expected to work in close collaboration with geographically diverse stakeholders including Technical Product Managers and Owners and to collaborate with wider teams within Technology and assist them with providing security advice and performing security risk assessments on different SAP and non-SAP products.
Let me tell you about the role
As an Information Security Specialist, you will be involved in providing security advice, performing assessments, guiding end users, and documenting procedures. You will be responsible for leading and performing SAP Risk management activity to identify, assess and mitigate risk by closely collaborating with different business and technical stakeholders.
What you will deliver
Provide security advice and guidance to SAP product teams and business units.
Perform regular audit and compliance checks to ensure adherence to security policies and standards.
Document and update security procedures and best practices.
Collaborate with other SAP teams and stakeholders to ensure alignment and integration of security solutions.
Lead SAP risk management activities to identify, assess, and mitigate risks within SAP systems.
Perform a fit-gap analysis of the controls library and update them as appropriate.
Facilitate the ownership of risks and remediation activities in line with Group policies.
Provide reporting and insights to senior management.
Troubleshoot and resolve security issues and incidents.
Develop and implement cybersecurity policies, standards, and best practices tailored to the organization's requirements.
Oversee and implement Security Information and Event Management (SIEM) systems to detect threats across SAP environments.
Implement SAP GRC solutions to manage risk, compliance, and access control across SAP systems.
Provide guidance on implementation of S4HANA critical roles, SoD Risks, and access controls.
Conduct cyber risk assessments of various SAP systems.
Ensure compliance with the Manage IT Security policy by conducting regular digital security-led and self-assessment processes, testing, and scans.
Drive cyber security behaviours, identifying areas for improvement, and reinforcing necessary actions.
Present security design to relevant stakeholders for approval and ensure alignment with organization policies.
Manage third party and vendor risk.
What you will need to be successful (experience and qualifications)
Deep knowledge of SAP security principles, tools, and approaches.
Proficiency with SAP GRC, S/4 HANA, FIORI, BTP and Cloud platform.
Experience in managing teams and stakeholder management.
Hands-on experience with SAP GRC Access Control and Process Control.
Expertise in SAP security, HANA DB, and ERP risk management.
Strong understanding of S/4 HANA to design appropriate security and compliance controls.
Well-versed with SOX, GDPR, DPDP data regulation, and NIST framework.
Outstanding problem-solving, analytical, and communication skills.
Essential Skills
Bachelor’s degree level education
At least 10 years of experience in SAP security setup and management
Skills that set you apart
SAP or Cyber Security-related certification would be an added advantage.
Exposure to large-scale SAP ERP migrations and automation-driven enhancements.
Experience working in highly regulated industries such as energy, finance, or manufacturing.
Desirable Behaviours:
Build and develop relationships across the business, within the digital Innovation and Engineering organization, and across supplier and software vendors - working to bring best in class knowledge across all stakeholders.
Consistently adhering to bp standards and compliance requirements to ensure all bp data and IT applications are protected to the highest level.
Empathetic: Cares about our people, our community, and our planet.
Curious: Seeks to explore and excel.
Creative: Imagines the extraordinary.
Inclusive: Brings out the best in each other.
Travel Requirement
Relocation Assistance:
Remote Type:
Skills:
Legal Disclaimer:
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, socioeconomic status, neurodiversity/neurocognitive functioning, veteran status or disability status. Individuals with an accessibility need may request an adjustment/accommodation related to bp’s recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.). If you would like to request an adjustment/accommodation related to the recruitment process, please contact us.
If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.
Other Jobs from BP
Senior enterprise technology engineer
Lead Enterprise Architect- Modern Device Management
Senior enterprise technology engineer
Senior enterprise technology engineer
Enterprise Technology Engineer
Senior Enterprise Technology Engineer
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say