ERP Security Team Lead
Location: King Abdullah Economic City, 02
Department: IT
Position Overview:
The ERP Security Team Lead is responsible for managing and overseeing the design, implementation, and governance of security strategies across the organization's enterprise resource planning (ERP) systems. This role ensures that user access, role design, segregation of duties, and compliance requirements are effectively enforced to protect sensitive business data and support regulatory and audit standards. The individual will supervise a team of security analysts and work closely with IT, internal audit, and business process owners to define access controls, maintain system integrity, and manage risk across the ERP landscape.
Key Responsibilities:
- Define and enforce the SAP security architecture and governance model.
- Align security policies with organizational and compliance requirements (e.g. SOX, GDPR, FDA).
- Collaborate with audit and compliance teams to support internal and external audits.
- Oversee design, implementation, and maintenance of role-based access controls (RBAC) using SAP standard and custom roles.
- Ensure proper segregation of duties (SoD) and mitigate SoD risks using tools like SAP GRC Access Control.
- Oversee full lifecycle of SAP GRC Access Control components
- Monitor security parameters in S/4HANA, SAP Gateway, SAP Fiori Front-End Server, and HANA DB.
- Implement and maintain security patches in coordination with BASIS and Infrastructure teams.
- Work closely with SAP functional and technical teams to ensure secure design of roles and access during projects.
- Participate in S/4HANA implementations, migrations, and upgrades as the security lead.
- Use SAP GRC to manage risk analysis, firefighter access, and compliance reporting.
- Ensure compliance with standard global security frameworks.
- Coordinate with cybersecurity and SOC teams to respond to SAP-related threats or vulnerabilities.
- Maintain documentation of security architecture, role design, policies, and procedures.
Skills:
- Deep understanding of role-based access control (RBAC), authorization objects, authorization concepts in S/4HANA, Fiori Launchpad security, CDS views, and HANA DB security.
- Expertise in Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), Business Role Management (BRM), and SoD rule configuration.
- Proficiency with SAP Solution Manager, SAP Identity Management (IDM), SAP Access Control, and SAP Fiori security administration.
- Design, implementation, and maintenance of roles, profiles, and authorizations, including SoD conflict analysis and mitigation.
- Experience integrating SAP security with enterprise IAM solutions (e.g., Active Directory, Azure AD, SAML, Single Sign-On).
- Ability to apply SAP Security Notes and patches effectively.
- Knowledge of regulatory frameworks like SOX, GDPR, ISO 27001, and ITGC controls relevant SAP environments.
- Experience securing SAP NetWeaver, Gateway, Fiori Frontend Server, and HANA database.
- Coordinating security tasks in SAP implementation, upgrade, and migration projects, following SAP Activate or other methodologies.
- Managing SAP security in transport/change management processes ensuring secure deployments.
- Knowledge of SAP Cloud Platform security, SAP BTP, and hybrid cloud environments.
Minimum Qualifications:
- Bachelor’s degree in computer science, Information Technology, Computer Applications, or a related field.
- 8+ years of hands on experience in SAP security and GRC
- At least 3 years in a leadership or team lead role overseeing SAP projects
- Proven experience in managing full lifecycle SAP implementations (Planning to go-live and support).
- SAP certification is a must, ideally in BASIS, Cloud Implementation or Security.
Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid’s equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.)
By Submitting your application, you understand and agree that your personal data will be processed in accordance with our Candidate Privacy Notice. If you are a California resident, please refer to our California Candidate Privacy Notice.
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say
