> Markdown version of [/jobs/ext/2698805-senior-specialist-erp-security-risk-compliance-services](https://www.wearedevelopers.com/jobs/ext/2698805-senior-specialist-erp-security-risk-compliance-services). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Specialist ERP Security, Risk & Compliance Services - **Company:** Johnson & Johnson - **Location:** Antwerpen, Belgium - **Experience:** Expert - **Salary:** €72,500.0 - €115,230.0 - **Contract:** Permanent contract - **Skills:** Accounting Information Systems, Cyber Security, Information Systems, Identity and Access Management, SAP (Applications), SAP GRC, SAP Security, Information Security Management System, IT General Controls (ITGC), Control Structures, Information Technology, Performance Monitor, SAP S/4HANA, GXP, Network Optimization, Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://www.careerjet.be/jobad/bea3bd900084152d66269f2e5794f354f0 ## About the Role * Bachelor's degree in Information Technology, Computer Science, Information Systems, Cybersecurity, Accounting Information Systems, or a related discipline required. * Master's degree or relevant professional certifications preferred, * Minimum 5+ years supporting SAP and/or JDE ERP environments in a security, compliance, governance, or related technology role. * Strong background in SAP Security, SAP GRC Access Control, Identity & Access Management (IAM), and compliance governance. * Proven track record managing SOX compliance programs, IT General Controls (ITGCs), audit support activities, and controls remediation initiatives. * Hands-on knowledge of Segregation of Duties (SoD) analysis, risk assessments, and control framework implementation. * Familiarity with SAP S/4HANA security architecture, controls design, and transformation programs is preferred. * Understanding of regulated environments and compliance requirements, including GxP, Data Privacy, Cybersecurity, and Data Security standards. * Demonstrated ability to lead global initiatives, influence cross-functional stakeholders, and operate effectively within a complex matrix organization., Preferred Skills: Communication, Corrective and Preventive Action (CAPA), Critical Thinking, Information Security Auditing, Information Security Management System (ISMS), Information Technology (IT) Security Assessments, Information Technology Strategies, Mentorship, Network Optimization, Presentation Design, Process Optimization, Report Writing, Security Policies, Technical Credibility, Technologically Savvy, Training People, Vulnerability Assessments ## Description Johnson & Johnson is seeking a Senior Specialist ERP Security, Risk & Compliance Services, within the Supply Chain Technology Services team. The position is based in EMEA-Belgium. Technology Services manages all IT infrastructure (architecture, engineering, deployment and support) for the Johnson & Johnson Family of companies world-wide. The Senior Specialist ERP Security, Risk & Compliance Services serves as a strategic leader and subject matter expert responsible for ERP security governance, SAP and JDE compliance programs, internal controls, audit readiness, and risk management. This role partners with business and technology stakeholders to ensure secure, compliant, and sustainable ERP operations while supporting regulatory requirements including SOX, GxP, Data Privacy, and cybersecurity standards., SAP & JDE Security Governance * Define and maintain the strategic roadmap for ERP security, controls, and compliance across SAP and JDE environments. * Serve as the functional and technical expert for SAP Security, SAP GRC, Access Controls, Emergency Access Management, Role Governance, and Segregation of Duties (SoD). * Drive continuous improvement of enterprise security controls, governance frameworks, and compliance monitoring capabilities. * Ensure alignment between global ERP security standards and regional business requirements. Risk Management & Internal Controls * Lead ERP risk assessments and control reviews across SAP and JDE platforms. * Partner with Internal Audit, Compliance, Quality, and Cyber Security teams to identify, assess, and mitigate control deficiencies. * Oversee SoD risk analysis, remediation planning, mitigating controls, and ongoing monitoring. * Support control design, testing, remediation, and documentation activities for major ERP transformation initiatives including SAP S/4HANA SOX Compliance & Audit Management * Own and coordinate SAP and JDE SOX compliance activities across multiple ERP landscapes. * Lead preparation, delivery, and governance of SOX reports, audit evidence, control documentation, and management responses. * Manage internal and external audit engagements including SOX, financial, operational, cybersecurity, and regulatory audits. * Coordinate audit requests, evidence collection, stakeholder engagement, remediation tracking, and audit status reporting. * Ensure audit readiness through proactive monitoring of compliance obligations and control effectiveness. Identity & Access Management * Oversee ERP user access governance processes including provisioning, role design, privileged access, periodic reviews, and certification activities. * Drive standardization and optimization of SAP and JDE security role architectures. * Ensure compliance with least-privilege principles and enterprise access management standards. * Collaborate with cybersecurity and identity management teams to strengthen overall security posture. Strategic Leadership & Stakeholder Management * Serve as the primary ERP Security and Compliance advisor for business leaders, technology teams, and project organizations. * Lead both internal and external resources supporting ERP security and compliance services. * Establish strong relationships with auditors, compliance organizations, security teams, business stakeholders, and external partners. * Support enterprise transformation initiatives by embedding security, compliance, and risk management requirements into solution designs. * Promote a culture of compliance, accountability, continuous improvement, and operational excellence. ## Related Videos - [Blueprints for Success: Steering a Global Data & AI Architecture](https://www.wearedevelopers.com/videos/1577-blueprints-for-success-steering-a-global-data-ai-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Best Companies to Work For in Berlin: Top 14 Companies in 2023 ](https://www.wearedevelopers.com/magazine/188-best-companies-to-work-for-in-berlin-top-14-companies-in-2023) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)