Live opening · Posted 1 day ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Job ID: [[id]]
CRH's Americas Materials business is the leading provider of building materials in North America. The aggregates, asphalt, ready mixed concrete, paving and construction services we deliver are critical to building our world. Our operations span 45 U.S. states and two Canadian provinces with over 30,000 employees across 1,700 operating locations.
Position Overview
We are seeking an experienced SAP Security Manager to lead application security and GRC across our full SAP landscape, including SAP S/4HANA, SAP Business Technology Platform (BTP) and Business Data Cloud (BDC) — including Datasphere and SAP Analytics Cloud — and SuccessFactors (Employee Central and Employee Central Payroll). This role owns the strategy and governance for role design, access provisioning, and controls across all in-scope platforms, leads a team of security and GRC professionals, and manages the end-to-end security request process through the ServiceNow–SAP GRC integration. The ideal candidate combines deep SAP security and GRC expertise with proven people-management experience and is comfortable representing security in audits, projects, and executive-level discussions.
Key Responsibilities (Essential Duties and Functions)
Team Leadership & People Management
Hire, lead, mentor, and develop a team of SAP Security and GRC Leads/Analysts, setting goals and career development plans
Establish coverage models and escalation paths to support security incidents and access requests across all in-scope platforms
Build a culture of accountability and continuous improvement within the security team
Security & GRC Strategy and Governance
Own the strategy for application security design and GRC access control configuration across SAP projects and enhancements
Establish and govern the centralized process for role administration and role design for functional (order to cash, procure to pay, record to report) and cross-functional (reporting, IT, testing) processes
Set standards for security rules, controls, and role-to-user assignment across all production and non-production systems
Own GRC ruleset design, segregation-of-duties (SoD) governance, and post-go-live maintenance in partnership with SI/AMS partners
Own GRC Firefighter (emergency access) governance, including assignment, approval, and periodic review processes
Platform-Specific Security Ownership
Own security and access governance for SAP BTP, including Datasphere and SAP Analytics Cloud (SAC), as part of Business Data Cloud (BDC)
Own security for SuccessFactors modules in use, including Employee Central (EC) and Employee Central Payroll (ECP), ensuring appropriate role design and data privacy controls for sensitive HR and payroll data
Ensure consistent security governance across SAP S/4HANA, Fiori, BTP/BDC, and SuccessFactors, and drive alignment on cross-platform identity and access strategy
Access Request Management (ServiceNow – SAP GRC Integration)
Own the end-to-end security request lifecycle managed through the ServiceNow–SAP GRC integration, from intake through approval, provisioning, and review
Partner with the ServiceNow platform team to maintain and improve the integration, ensuring requests, approvals, and audit trails remain accurate and reliable
Monitor SLAs for access request turnaround and drive process improvements to reduce cycle time and manual intervention
Audit, Compliance & Risk
Ensure SOX ITGC security controls are designed, operating effectively, and evidenced for internal and external audits
Train control owners on performing user access reviews and ensure timely completion
Own license compliance activities, including user counts, license type assignment, and data consolidation for license audits
Provide audit evidence and serve as the primary point of contact for internal and external auditors on SAP security matters
Vendor & Stakeholder Management
Manage SI/AMS partners delivering security-related project and support activities, holding them accountable to SLAs and quality standards
Approve security changes across all functional modules, ensuring alignment with organizational standards and change management processes
Provide regular status, risk, and compliance reporting to senior leadership and program stakeholders
Partner with the Basis and Development managers to ensure security is embedded across infrastructure and development practices
Qualifications
Education/Experience
12+ years of SAP security experience, including GRC access contro
Employment type
Full Time
More openings worth a look
Recently tracked roles with full details and direct application links.