> Markdown version of [/jobs/ext/2077447-sap-application-security-lead](https://www.wearedevelopers.com/jobs/ext/2077447-sap-application-security-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SAP Application Security Lead - **Company:** Accenture - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $116,900.0 - $243,100.0 - **Contract:** Permanent contract - **Skills:** Identity and Access Management, Role-Based Access Control, SAP (Applications), SAP GRC, SAP HANA, SAP Security, User-Centered Design, User Provisioning Software, Sap Fiori, SAP S/4HANA, User Administration - **Published:** August 16, 2026 - **Apply:** https://www.dcjobsite.com/job.asp?id=3355987840&tx=UT545THZ&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Extensive experience in SAP Security Management, S/4HANA security, SAP GRC (12.0+), and Fiori Catalog/Group design * Proven leadership experience managing security workstreams in large-scale ERP transformations * Deep knowledge of SoD frameworks, Global Rule Sets, and mitigating control design * Strong communication and interpersonal skills for collaboration with Workstream Leads, Auditors, and CISOs * Experience with project planning, resource management, and maintaining security risk logs * Ability to align security strategy with business objectives while supporting an optimized Fiori user experience * Experience mentoring junior team members in federal security compliance (NIST/FISMA) * Experience with IAM integration with federal SSO or PIV/CAC authentication Eligibility requirements: * U.S. Citizenship required * Ability to obtain a Public Trust government clearance ## Description Leads the SAP Application Security and Identity Access Management (IAM) capability for the S/4HANA program. This role is responsible for the strategic design, implementation, and governance of the security framework, ensuring all user management functions adhere to the "Least Privilege" principle and comply with federal security standards. You will direct the configuration of SAP GRC to automate User Management (UM) and Segregation of Duties (SoD) analysis, while leading the security workstream through design, build, testing, deployment, audit, and sustainment phases. This role requires expertise in complex security analysis, role architecture, SoD risk mitigation, and SAP GRC Access Control. You will manage relationships with auditors, CISOs, and workstream leads and guide junior team members in SAP HANA security, Fiori access design, and troubleshooting., * Lead and govern User Access Management (UAM), overseeing end-to-end design, implementation, and maintenance of S/4HANA security roles, including Fiori authorizations * Architect SAP GRC Security Components, leading analysis, design, and testing of SAP GRC Access Control (ARA, ARM, EAM, CUP) * Oversee SoD Risk Assessments and establish protocols for identifying and remediating Segregation of Duties and Critical Action risks * Direct user provisioning and role design processes, ensuring compliance with Security Management controls and federal audit requirements * Manage User Access Reviews (UAR) through periodic certification of user entitlements * Lead support for internal and external audit requests related to user access controls * Monitor and report on overall security posture, including SoD violations and high-risk access * Collaborate with functional leads to ensure secure integration across B2R, P2P, and O2C modules * Manage, mentor, and train junior security specialists to build capability in SAP security and federal compliance * Ensure adherence to delivery methodology for managing the full security lifecycle ## Related Videos - [Evolving the developer experience in the age of AI](https://www.wearedevelopers.com/videos/100201-evolving-the-developer-experience-in-the-age-of-ai) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Building Security Champions](https://www.wearedevelopers.com/videos/193-building-security-champions) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Best Companies to Work For in Berlin: Top 14 Companies in 2023 ](https://www.wearedevelopers.com/magazine/188-best-companies-to-work-for-in-berlin-top-14-companies-in-2023) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production)