Information Technology

SAP Center of Excellence (COE) Senior Security / GRC Admin Expert

Address: Bengaluru, Bengaluru, Karnātaka, 560066, India

Job ID: R0242470

Location Type: Hybrid

Apply Now
  • Overview
  • Job Description
  • Success Profile
  • Rewards
  • Connect

As a Clinic Manager at Fresenius Medical Care, you’ll manage the daily operations of our outpatient centers. More importantly, you’ll be the key driver in carrying out our mission: To deliver superior care that improves the quality of life of every patient, every day, setting the standard by which others in the health care industry are judged. This is accomplished by hiring, developing and inspiring a multi-disciplinary team, collaborating with physicians, tracking and delivering superior patient outcomes and monitoring regulatory and safety requirements. Strong management skills are required and prior direct patient care experience is needed for occasions when the team needs a helping hand.

A female nurse examining her patient

Patient Care Technicians (PCTs) at Fresenius Medical Care support and collaborate with RNs to provide dialysis treatment to several patients at a time while maintaining the functionality of the clinic. This involves prepping and testing equipment, reviewing treatment sheets, and opening the clinic at 4am for first shift. PCTs have a combination of technical skills and genuine passion needed to develop deep relationships with patients and improve their quality of life. Qualified candidates have prior customer service, healthcare and direct patient care experience, and will have the opportunity to learn the discipline of dialysis.

A female nurse examining her patient

Fresenius Medical Care nurses are on the front line of patient care, improving the quality of life of every patient, every day. That means providing dialysis care to 10-12 patients at any given time, and collaborating with our multi-disciplinary team to deliver a unique care plan to each one of them. This role is all about relationships and the bond you’ll create with patients and their families. Prior dialysis nursing experience is helpful, but many successful candidates come from a background in ICU, PCU and/or surgery.

A female nurse examining her patient

Inpatient RNs at Fresenius Medical Care perform dialysis treatments on an acute patient population in a hospital setting, including ICU, ER, Rehab, and Med/Surg units. What makes this role truly unique is the level of autonomy you’ll enjoy. Inpatient nurses are specifically accountable for administering and assessing each patient’s treatment plan. And because dialysis is a critical treatment for many hospital procedures and health conditions, you’ll have the opportunity to work with a wide variety of patients. Ideal candidates possess leadership skills and independence needed to make quick decisions in a fast-paced environment. Must be capable of educating patients and providing exceptional customer service to our partners. Six months to one year of dialysis experience or some form of critical care nursing experience are also required.

A female nurse examining her patient

Job Description

The Senior SAP S/4HANA Security & GRC Administrator is responsible for ensuring secure, compliant, and efficient access management across the SAP S/4HANA landscape within a sustain operations environment. The role manages user access, roles, authorizations, and Segregation of Duties (SoD) controls while maintaining compliance with internal policies, audit requirements, and regulatory standards through platforms such as SAP GRC Access Control and SAP Cloud Identity Access Governance. Acting as a subject matter expert for SAP Security and access governance, the position supports steady-state operations, change and release management, and continuous improvement initiatives to ensure business continuity and strong control effectiveness.

Goal of function:

Tasks*

1) Main tasks:

1. SAP Security Administration (S/4HANA Sustain)

  • Manage end-to-end user lifecycle: provisioning, modification, and deprovisioning across S/4HANA and connected systems.
  • Design, maintain, and optimize SAP roles and authorization concepts aligned with business processes and segregation of duties (SoD) principles.
  • Perform role remediation and authorization troubleshooting for business users and support teams.
  • Support transports related to security roles and authorization objects across environments (DEV, QA, PRD).
  • Ensure security configuration stability and support during patching, upgrades, and release cycles.

2. SAP GRC & Compliance Management

  • Administer SAP GRC Access Control (AC), including:
  • Access Risk Analysis (ARA)
  • Emergency Access Management (Firefighter)
  • Access Request Management (ARM)
  • Monitor and manage SoD conflicts and mitigation controls.
  • Support internal and external audits by providing access reports, evidence, and remediation plans.
  • Maintain compliance with SOX, GDPR, and internal IT controls.

3. SAP IAG (Cloud Identity Access Governance)

  • Configure and maintain IAG for cloud and hybrid access governance.
  • Integrate IAG with S/4HANA, Ariba, IBP, SAC, and BTP.
  • Maintain cloud SoD rulesets and risk libraries.
  • Automate cloud access provisioning workflows and approvals.

4. Operational Support & Incident Management

  • Act as L3/L4 support for SAP Security and GRC-related incidents and problems.
  • Investigate security-related issues and access failures impacting business processes.
  • Perform root cause analysis and implement preventive controls.
  • Participate in on-call or hyper care support as required during critical periods.

5. Change, Release & Continuous Improvement

  • Participate in release management cycles to ensure security readiness for new functionality.
  • Review functional changes for security and SoD impact.
  • Propose and implement automation and simplification of access processes where possible.
  • Maintain security documentation, role catalogues, and operating procedures.

6. Stakeholder & Vendor Collaboration

  • Work closely with Functional Leads, Basis, Infrastructure, and Compliance teams.
  • Coordinate with external partners (e.g., Accenture or AMS vendors) for aligned security operations.
  • Act as trusted advisor on SAP Security and GRC topics for business and IT stakeholders.

2) Stakeholder Engagement

  • Work closely with Functional Leads, Basis, Infrastructure, and Compliance teams.
  • Coordinate with external partners (e.g., Accenture or AMS vendors) for aligned security operations.
  • Act as trusted advisor on SAP Security and GRC topics for business and IT stakeholders.

3) Miscellaneous tasks:

As and when needed

Organization*

The function incumbent reports to:

Organizational unit:

GBS-ITS Integration lead

GBS ITS

Important internal interfaces:

Important external interfaces:

Please list cooperation with important departments, sites, subsidiaries etc.SAP COE workstreams

  • PMO
  • Global/Regional Business Process Owners
  • Integration Teams
  • Release Management teams
  • Senior Leadership / Executive Steering Committees

Please list cooperation with important external companies, agencies, authorities etc.

  • External communications agencies
  • Consulting partners
  • Technology vendors

Key Performance Indicators

Operational KPIs

  • % of access requests delivered within SLA.
  • Number of security-related incidents per month.
  • Mean Time to Resolve (MTTR) for security issues.
  • % of successful first-time-right role assignments.

Compliance KPIs

  • Number of unresolved SoD conflicts.
  • Audit findings related to access and controls (target: zero critical findings).
  • Firefighter usage compliance (100% review and approval rate).
  • % of completed periodic user access reviews on time.

Quality & Improvement KPIs

  • Reduction in manual access provisioning through automation.
  • Documentation accuracy and process adherence.
  • Continuous improvement initiatives delivered per quarter

Qualifications, experience, know-how and skills critical for success*

1) Required training and education:

  • Bachelor’s degree in computer science, Information Security, or related field (Master’s preferred).​

2) Required professional experience (in years):

  • 9+ years of experience in SAP Security and GRC administration, with at least 3 years in a senior lead role.​
  • Strong expertise in SAP S/4HANA security concepts.​
  • Professional certifications such as SAP Certified Technology Associate (Security/GRC) is highly desirable.
  • Proven experience across both on-premise and cloud SAP solutions.
  • Hands-on experience with SAP IAG and hybrid GRC models.
  • A hybrid SAP Security architect & hands-on expert
  • Comfortable operating across S/4HANA, BTP, and multiple SAP SaaS solutions
  • Strong in compliance and audit environments.
  • Experienced in global role harmonization initiatives
  • Capable of leading cloud access governance transformation using SAP IAG
  • Proven track record in managing compliance frameworks (SOX, GDPR, ISO 27001 etc).​
  • Experience in SAP application maintenance and development projects.​
  • Familiarity with IT audit processes and risk management methodologies.

3) Important personal qualities:

  • Strong communication skills to engage with business users, auditors, and IT teams.
  • High attention to detail and risk awareness mindset.
  • Ability to handle sensitive access data with integrity and discretion.
  • Structured problem-solving and analytical thinking.
  • Ability to work under pressure during critical incidents and audit cycles.
  • Collaborative mindset to work across global and cross-functional teams.
  • Proactive approach to identifying risks and improvement opportunities.

4) Other specialized knowledge:

a) Technical Knowledge

  • SAP Security Architecture & Role Design: Advanced expertise in end-to-end role design, authorization concepts, Fiori security (Catalogs, Spaces & Pages), CDS/DCL, and SoD frameworks within SAP S/4HANA environments.
  • Transport & Landscape Management: Proven experience managing security transports (roles, profiles, authorization objects) across DEV/QA/PRD landscapes, including release cycles, retrofit strategies, and upgrade/patch impact assessments.
  • SAP GRC & Hybrid Access Governance: Deep expertise in administering SAP GRC Access Control (ARA, ARM, EAM/Firefighter, BRM), global SoD ruleset management, mitigation controls, audit support, and integration with SAP Cloud Identity Access Governance (IAG) for hybrid access governance.
  • Cloud & BTP Security: Strong knowledge of SAP Business Technology Platform security including global accounts, subaccounts, role collections, IAS/IPS integration, trust configurations (SAML/OAuth2), principal propagation, and securing extension applications and APIs.
  • SAP Cloud Applications Security: Hands-on security administration and data-level access control across SAP Integrated Business Planning (IBP), SAP Analytics Cloud (SAC), SAP Datasphere (DSP), and SAP Ariba, including integration security with S/4HANA.
  • Identity, Integration & Compliance: Expertise in identity federation (IAS/IPS, enterprise IdPs), API/SCIM-based provisioning, cross-system role mapping, SOX & GDPR compliance, ITGC controls, access certifications, and automation of governance processes.

b) Languages

English (fluent); additional languages beneficial for global audience engagement.

c) IT Skills

  • Governance execution
  • Audit support capability
  • Automation mindset
  • Incident handling
  • Analytical and problem-solving ability
  • Strong analytical and problem-solving abilities​
  • Excellent communication and stakeholder management

d) Product knowledge

SAP S/4HANA and associated business processes (preferred).

5 ) Special personal requirements:

Please list requirements such as willingness to travel or work weekends or shifts etc.

  • Willingness to work across global time zones.
  • Occasional travel depending on project needs

Success Profile

What makes a successful member of our team? Check out the top traits we are looking for and see if you have the right mix.

Success profile proportion

Success Profile

What makes a successful member of our team? Check out the top traits we are looking for and see if you have the right mix.

Success profile proportion

Success Profile

What makes a successful member of our team? Check out the top traits we are looking for and see if you have the right mix.

Success profile proportion

Success Profile

What makes a successful member of our team? Check out the top traits we are looking for and see if you have the right mix.

Success profile proportion
“I successfully completed the RN program and went on to hold the position of Staff RN, Charge Nurse, and finally Clinical Manager.”
Rosalyn,
Clinical Manager
“Every day I walk in I am changing lives for the better and working to inspire my patients.”
Andrew,
Patient Care Technician
“I am a member of an outstanding team that helps patients gain more control, achieve tangible goals, and live better lives.”
Tony,
Outpatient Services RN
“My goal is to make sure that our patients keep their mobility and quality of life. This goal is really personal for me. My own father always had really bad vasculature in his leg and never had access to the kind of care we offer — eventually he lost blood flow and mobility. Knowing what he went through makes me even more committed to our mission.”
Warren J.
Azura Regional Vice President

We've got your back.

We fully believe that dedication and passion should be recognized and rewarded. That’s why we offer a competitive compensation and benefits package to all of our employees. Our benefits provide the flexibility, choice and support you need to be at your best as you play a vital part in helping patients live longer, better and healthier lives.

Connect With Us

Subscribe and follow to see the newest jobs and updates about life at Fresenius Medical Care.

By submitting your information, you acknowledge that you have read our privacy policy consent to receive email communications from Fresenius Medical Care AG.

© Fresenius Medical Care AG