SAP GRC
DXC Technology
Date: 8 hours ago
City: Riyadh
Contract type: Full time

Job Description
The SAP GRC Expert is responsible for leading the implementation, operation, and optimization of SAP Governance, Risk, and Compliance (GRC) solutions across enterprise environments. The role includes delivery of SAP GRC Access Control (ARA, ARM, BRM, EAM), ensuring effective segregation of duties (SoD), role governance, and secure access provisioning across SAP and non-SAP landscapes.
The manager will work closely with audit, compliance, security, and SAP functional teams to define governance models, resolve access violations, and maintain regulatory compliance. Experience with S/4HANA integration, compliance frameworks (SOX, GDPR), and SAP GRC upgrades is expected.
Key Responsibilities
Education & Certifications:
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
The SAP GRC Expert is responsible for leading the implementation, operation, and optimization of SAP Governance, Risk, and Compliance (GRC) solutions across enterprise environments. The role includes delivery of SAP GRC Access Control (ARA, ARM, BRM, EAM), ensuring effective segregation of duties (SoD), role governance, and secure access provisioning across SAP and non-SAP landscapes.
The manager will work closely with audit, compliance, security, and SAP functional teams to define governance models, resolve access violations, and maintain regulatory compliance. Experience with S/4HANA integration, compliance frameworks (SOX, GDPR), and SAP GRC upgrades is expected.
Key Responsibilities
- Lead SAP GRC Access Control implementation, configuration, and support
- Define and maintain SoD rules, risk mitigation strategies, and audit workflows
- Manage GRC modules including Access Risk Analysis, Access Request Management, Business Role Management, and Emergency Access Management
- Design and optimize user provisioning workflows, approval stages, and escalation paths
- Collaborate with security and audit teams to align GRC with compliance policies
- Configure integration with SAP systems (ECC, S/4HANA) and Active Directory or Identity Providers
- Define technical roles, business roles, and role derivation strategy
- Support GRC reporting, controls testing, and audit documentation
- Oversee upgrades, performance tuning, and GRC connector configurations
- Deliver training to compliance officers, end users, and security administrators
Education & Certifications:
- Bachelor’s degree in Information Security, Information Systems, or related field
- SAP Certified Application Associate – SAP GRC Access Control
- Additional certifications in risk management, audit, or cybersecurity (e.g., CISA, CISM) are preferred
- Project Management certification (PMP or equivalent) is a plus
- 5–12 years of SAP Security and GRC experience
- At least 2 years in a managerial or GRC leadership role
- Proven record in full-cycle SAP GRC Access Control implementations
- Experience in managing security for SAP ECC, S/4HANA, and cloud connectors
- Involvement in SOX, GDPR, or ISO 27001-related compliance initiatives
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
SAP Ariba Expert
DXC Technology,
Riyadh
8 hours ago
Job DescriptionThe SAP Ariba Expert is responsible for leading end-to-end implementation and optimization of SAP Ariba solutions including Sourcing, Contracts, Buying, Invoicing, and Supplier Management. This role requires strong expertise in Ariba configuration and process design, with a focus on procurement transformation, supplier collaboration, and spend visibility.The candidate will work closely with procurement and finance teams to align business goals...

Certified Personal Trainer KSA Riyadh/Jeddah/Al Khobar
Enhance,
Riyadh
9 hours ago
About Enhance :Enhance Fitness is a technology company headquartered in the UAE and has since revolutionized the fitness industry. Newly Operational and Growing in KSA. We offer top certified trainers on demand via our app at customers’ convenience. Be it their own home, a park or even our partner gyms, clients can access a PT session anywhere anytime.Our team has...

Senior Project Director (High-rise Buildings)
Hill International, Inc.,
Riyadh
14 hours ago
Position: Senior Project Director (High-rise Buildings)Company Overview:Hill International is a global construction consulting firm that provides program and project management, construction management, cost engineering and estimating, quality assurance, inspection, scheduling, risk management and claims avoidance to clients involved in major construction projects worldwide. With over 4,300 employees in over 100 offices worldwide, Hill International has a proven track record of...
