SAP User & Role Management

REWE digital
Málaga, Spain
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, German

Job location

Málaga, Spain

Tech stack

ABAP
Open Data Protocol
SAP Applications
SAP GRC
SAP HANA
SQL Databases
Data Logging
IT General Controls (ITGC)
SAP Fiori

Job description

The URM Product, which is responsible for role management for all SAP applications, is looking for someone with strong analytical skills and in-depth security knowledge to shape our SAP authorization environment: from GRC standards and SoD controls to HANA and Fiori authorizations. You combine your technical knowledge with regulatory compliance security and translate business requirements into stable, audit-proof solutions, taking risks into account. What you will do:

  • SAP GRC Access Control (AC): Design, operation and further development of ARA analyses & rulesets, EAM/Firefighter processes including logging/review, ARM workflows and (if used) BRM catalogues; Definition & maintenance of SoD rules and control points.
  • Authorisations, Fiori and ABAP authorisations: Architecture & maintenance of PFCG roles for Fiori (spaces/pages, catalogues, OData services, SICF), transaction/object authorisations, reference and technical users; quality assurance (role tests, evidence).
  • SAP HANA security: Design and administration of HANA roles and privileges (system/object/schema/analytic), HDI context, authorisation checks and recertifications; close coupling to GRC controls.
  • IKS & Audits: Evidence management (ITGC, A1/A3 audits), recertifications/UAR, evidence-based processes, risk and measure documentation.
  • Change & Automation: Integration into ALM/ChaRM processes, maintenance of ticket/workflow routes, continuous improvement (automation, templates, standardisation).
  • Advisory & collaboration: Sparring for specialist areas/role owners, clear separation of functions (four-eyes principle), knowledge transfer within the team.

Requirements

  • Very good understanding of security principles (least privilege, SoD, risk-based approach) and compliance/ICS in the SAP environment.

  • Practical experience in SAP GRC AC (at least ARA + EAM/Firefighter; ideally ARM/BRM) including ruleset maintenance and SoD simulation.

  • In-depth experience in Fiori authorisations (spaces/pages, catalogues, OData) and PFCG role design.

  • In-depth knowledge of SAP HANA authorisations (roles, privileges, HDI) and confident SQL reading skills for analyses.

  • Strong analytical skills, structured documentation, communication in German and English.

  • Your availability to travel to Germany on a more or less regular basis

  • Willingness to be regularly present in the Malaga office and if necessary relocate to Andalusia

Benefits & conditions

  • A startup-like culture with fascinating opportunities, combined with the security of being part of a major corporate force in the REWE Group
  • Challenging tasks but also a tech playground
  • Work in a modern office, fostering creativity, collaboration, and agility
  • A flexible, autonomous work environment where your ideas will contribute to our collective success
  • Open communication culture in an international environment with steady growth, and more to come!

Our Benefits:

  • Hybrid work and flexible working time
  • Company conditions for private medical insurance
  • Ticket Restaurant
  • Professional development opportunities: English/German courses, and further IT education/trainings
  • Day off on your Birthday
  • 25 days paid vacation

What are you waiting for? Our expansion in Spain is an invitation for you to shape the future for millions of customers - every day. Join us as we pioneer nearshore activities and write the next chapter of our digital conquest. Ready to redefine digital retail? ¡Vámonos!

About the company

We are the home for techies all around the world. In our tech we combine IT and non-IT specialists from a wide range of fields. Together, we bring innovations to life - for retail to enhance the everyday lives of millions of people. REWE digital Spain belongs to REWE Group, one of the leading trade and tourism groups in Germany and Europe with around 440,000 employees. In REWE digital overall there are over 2,300 IT specialists who set standards for IT implementation in the retail industry and development of new technologies for the sector. REWE digital Spain is located in the Technological Park of Andalusia (PTA) in Malaga. As a team of more than 60 colleagues, we drive innovation for REWE digital in Germany.

Apply for this position