SAPSecurity.inSAP Security Consulting
All positions
SAP GRC

SAP GRC Consultant

Implement, tune and operate SAP GRC Access Control for clients who want risk analysis they can actually trust.

Posted 8 Sept 2026

Location

Any · Remote

Employment type

Full-time

Experience

2 to 9 years

Category

SAP GRC

About the role

Many organizations own SAP GRC and few use it well. You will help clients implement Access Control properly, customize rule sets to reflect their real processes, and build workflows that business approvers understand.

You should be equally comfortable configuring MSMP workflows and sitting with a finance controller to work out whether a risk is real.

Responsibilities

  • Implement and enhance SAP GRC Access Control: ARA, ARM, EAM and BRM
  • Design and customize SoD rule sets with process owners and internal audit
  • Configure MSMP workflows, agent rules and notifications
  • Design mitigating controls and periodic review processes
  • Run user access review and SoD review campaigns
  • Train client teams to operate GRC after go-live

Requirements

  • 5+ years of SAP GRC Access Control experience including at least one full implementation
  • Strong understanding of SoD risk frameworks and mitigation design
  • Hands-on with rule set build, risk analysis configuration and MSMP
  • Solid grounding in SAP authorization concepts
  • Good communication with audit and finance stakeholders

Nice to have

  • SAP Process Control
  • SAP IAG (Identity Access Governance)
  • Fiori-based GRC front ends
Employment or contracting for this position is with LEXANTA PRIVATE LIMITED, the legal entity operating SAPSecurity.in. We are an equal opportunity organization and consider applicants on the basis of skills and experience.

Apply for this position

Fields marked * are required. Resume in PDF, DOC or DOCX, up to 10 MB.

Include country code.

Optional. Annual or daily rate with currency.