Live opening · Posted 16 hours ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
C5MI is not your typical consulting firm. We are a high-performance team of SAP and supply chain experts who solve complex, mission critical challenges for organizations that cannot afford failure.
We hire consultants who thrive in complexity, move fast, take ownership, and deliver under pressure. At C5MI, you will not be siloed or stuck in theory. You will be hands on, client facing, and directly influencing outcomes that matter.
Our culture rewards initiative, accountability, and continuous growth. This is a place where your expertise is valued, your work is meaningful, and your performance truly matters. If you’re energized by learning through real-world challenges, collaborating with top-tier talent, and expanding your capabilities every day, C5MI is where strong consultants level up.
Position Summary:
The Senior Application Security SAP Consultant is responsible for SAP application security and governance, risk, and compliance within an SAP S/4HANA environment, covering authorization design, role management, segregation of duties enforcement, and the access control evidence required to sustain system authorization and support financial audit, in support of a large-scale, greenfield SAP S/4HANA financial management modernization program for a Department of War (DoW) organization. As the senior SAP security authority on the program, the consultant owns the authorization concept and segregation of duties architecture, designs the governance, risk, and compliance control framework, and is accountable for access control evidence at audit and authorization milestones. This position operates at the Senior level of the C5MI job architecture and contributes to delivery across a five-gate milestone structure spanning pre-design approval, preliminary design review, critical design review, production readiness review, and closeout.
Note: This position is contingent upon contract award.
Essential Functions and Responsibilities:
Owns the SAP authorization concept for the program, including the role architecture, naming standards, derivation strategy, and the governance process for role change.
Designs the segregation of duties framework, including ruleset design and customization, risk definitions, and the mitigating control catalog with assigned ownership and monitoring frequency.
Designs the governance, risk, and compliance solution architecture across access risk analysis, access request management, business role management, and emergency access management.
Designs preventive segregation of duties enforcement so that access risk is evaluated and resolved before provisioning rather than detected after the fact, including risk simulation within the request workflow.
Designs cross-system access risk analysis extending beyond the core platform to integrated applications within the program landscape.
Designs the user access review and recertification program, including campaign scope, frequency, reviewer assignment, and evidence retention.
Owns the mapping of access controls to applicable control frameworks, including access control family requirements under the risk management framework and information system general controls tested during financial audit.
Designs privileged access management for the SAP landscape, including privileged role restriction, emergency access governance, and logging sufficient to support audit and inspector general examination.
Solves complex problems spanning multiple variables, modules, and interfacing systems; owns a workstream or key solution component within the assigned process area.
Leads design for the as
More openings worth a look
Recently tracked roles with full details and direct application links.