Sr. Spec. DDIT APD Shared Services SAM A&IM
Full time
at Novartis Farmacéutica
in
Malaysia
Posted on February 21, 2025
Job details
Sr. Spec. DDIT APD Shared Services SAM A&IM
Job ID REQ-10040602 Feb 16, 2025 MalaysiaSummary
As a Subject Matter Expert of SAP Access & Identity Management and SAP Security/ GRC, you are responsible for SAP security operation, design, implementation and audit, ensuring compliance and efficiency of user access management.About the Role
Major accountabilities:- Responsible for global access management/ operation, ensuring processes are effectively operated and in compliance.
- Responsible for the overall continuous improvement, security control implementation, life cycle of security documents and training.
- Responsible for audit facing and support including walkthrough, collection of evidence, governance of audit deliverables, and resolving any audit issues.
- Serve as the subject matter expert (SME) for security enhancement, providing expert advice and guidance to business and compliance stakeholders.
- Advise peers and management on complex issues, providing contextual advice to influence management on new implementations and risks across business domains.
- Support vendor service performance, ensuring quality standards are met.
- Ensure adherence of operation/vendor to control objectives and agreed SLA/KPI.
- Ensure appropriateness of security control implementation and that there are no gaps in design and operation.
- Ensure improvement/enhancement initiatives are implemented on time.
- Ensure regular successful audits related to user access management and that all gaps are addressed on time.
- Extensive experience in SAP/Application Security and Identity Management.
- Proven track record, preferably with more than 3 end-to-end project experiences in SAP S&A implementation and support of large-scale global operations.
- Experience in audit and control design.
- Experience in managing vendor services and ensuring alignment with security standards.
- Good exposure to one or more technology landscapes - SAP GRC, IAG, ECC, S4/HANA, SAP BTP, HANA/BW/BO, SRM, MDM, SAP SaaS (ARIBA, Concur) & other SAP endorsed apps.
- Experience with risk/governance management and CISA/CISM certification is a strong plus.
- Excellent level of functional and technical knowledge of SAP security & authorization.
- Excellent level of audit and control of Identity access management.
- Strong knowledge in identity lifecycle management concepts including role design, RBAC, SoD, Least Privilege principle, and good understanding of IAM IT general controls/regulatory compliance requirements.
- Good exposure to one or more technology landscapes - SAP GRC, IAG, ECC, S4/HANA, SAP BTP, HANA/BW/BO, SRM, MDM, SAP SaaS (ARIBA, Concur) & other SAP endorsed apps.
- Experience with other identity lifecycle management products is a strong plus.
- Possess great analytical and consulting skills to provide recommendations and solutions for user access design gaps and remediation.
- SAP Security & Authorization design
- Analytical & problem-solving
- Project management
Apply safely
To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.