Grc Cibersecurity Senior Specialist

Ferrovial
Madrid, Spain
about 1 month ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Audit Trail Microsoft Azure Document Management Systems Identity and Access Management SAP ERP SAP (Applications) SAP Implementation Systems Integration Google Cloud
+5 more
IT General Controls (ITGC) Cyber Threat Analysis SAPBasis SAP S/4HANA SailPoint

Job description

Experteer Overview Aunque la experiencia profesional y las cualificaciones son clave para este puesto, asegúrese de comprobar si posee las habilidades interpersonales preferibles antes de solicitar, si se requieren.In this role you will drive GRC and SOX IT controls across SAP environments, ensuring robust access governance and audit readiness.You will partner with audit, compliance and IT teams to design, implement and document controls, while leading the SoD program and applying AI-driven techniques to optimize processes.You will operate in a global, fast-paced setting, contributing to a secure, compliant IT landscape across international business units.This is a chance to shape risk management and compliance at a scale that matters for a multinational infrastructure leader.Compensaciones / Beneficios* Lead GRC and SoD initiatives aligned with business and compliance requirements* Own the SoD ruleset: analyze conflicts, simulate changes and drive remediation* Strengthen GRC controls including access governance, workflows and emergency access management* Oversee the implementation of SAP access management controls including SAP roles and authorization model* Ensure SOX compliance, maintain documentation, support audit processes and ensure audit trails* Coordinate ITGCs walkthroughs, respond to audit requests, track findings and drive deficiency closure* Use AI tools (role mining, clustering, anomaly detection) to optimize controls execution and evidence generation* Support in projects, integrations, APIs, data migrations and deployments including S/4HANA transformation and SailPoint/Pathlock integration* Govern user access lifecycle, perform periodic access reviews with SAP Basis, business role owners* Investigate access-related incidents and firefighter usage* Maintain policies, procedures, naming standards and SoD exception handling guidelines* Develop dashboards and KPIs on risk posture, SoD trends and provisioning performance* Collaborate with Finance, Internal/External Audit, Internal Control and Compliance to align IT controls with financial process risksResponsabilidades* 7+ years in complex cybersecurity environments in large organizations* Strong hands-on SAP authorization models, SoD management and GRC controls* Experience in S/4HANA transformations* Proven track record managing full SOX audit cycles with external xqbhyrx auditors* Experience designing security governance and risk management frameworks* Familiar with GDPR, ISO **** and NIST Experience in security incident management, cyber intelligence, audits and reviews* Experience using AI for automation of repetitive tasks* Experience with AWS, Azure or Google Cloud security implications* Strong communication, stakeholder management and negotiation skills; English C1+* Ability to innovate, multitask and solve problems in fast-paced environmentsRequisitos principales* comprehensive benefits package* employee wellbeing initiatives* global mobility opportunities* cutting-edge productivity tools* collaborative environment* career development

Requirements

perform periodic access reviews with SAP Basis, business role owners* Investigate access-related incidents and firefighter usage* Maintain policies, procedures, naming standards and SoD exception handling guidelines* Develop dashboards and KPIs on risk posture, SoD trends and provisioning performance* Collaborate with Finance, Internal/External Audit, Internal Control and Compliance to align IT controls with financial process risksResponsabilidades* 7+ years in complex cybersecurity environments in large organizations* Strong hands-on SAP authorization models, SoD management and GRC controls* Experience in S/4HANA transformations* Proven track record managing full SOX audit cycles with external xqbhyrx auditors* Experience designing security governance and risk management frameworks* Familiar with GDPR, ISO **** and NIST Experience in security incident management, cyber intelligence, audits and reviews* Experience using AI for automation of repetitive tasks* Experience with AWS, Azure or Google Cloud security implications* Strong communication, stakeholder management and negotiation skills; English C1+* Ability to innovate, multitask and solve problems in fast-paced environmentsRequisitos principales* comprehensive benefits package* employee wellbeing initiatives* global mobility opportunities* cutting-edge productivity tools* collaborative environment* career development

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

1:06 min

Developer experience and project variety at scale

Alexandra Petri · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all