Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

SAP Security/GRC Consultant- Spain

Infosys Consulting - Europe
CompanyInfosys Consulting - Europe
CategoryConsulting & Strategy
LocationMadrid
RemoteRemote
EmploymentFull-time
LevelNot stated
SalaryNot stated by the employer
Posted17 Apr 2026
Last verified9 Aug 2026
SourceEmployer ATS (workable)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are growing and are looking for people to join our team. You'll be part of an entrepreneurial, high-growth environment of 300.000 employees. Our dynamic organization allows you to work across functional business pillars, contributing your ideas, experiences, diverse thinking, and a strong mindset. Are you ready? The Team Our Digital Platforms Practice helps some of the largest global firms and most recognizable brands deliver value and business transformation enabled by digital ERP solutions and services. Our ERP services, covering strategy, implementation and innovation, help clients deliver true value and achieve their transformation agenda. The Role As a SAP Security/GRC Consultant, you will work closely with diverse clients to assess their SAP security risks, design and implement tailored SAP Security and Governance, Risk & Compliance (GRC) solutions, and drive successful project delivery. You will act as a trusted advisor, helping clients align SAP security frameworks with business objectives and compliance mandates. Lead SAP Security and GRC assessment, design, and implementation projects for clients across industries. Conduct client workshops and requirements gathering sessions to understand business and security needs. Design and configure SAP security roles, authorizations, and GRC Access Control components (Access Risk Analysis, Emergency Access Management, Access Request Management). Develop and enforce Segregation of Duties (SoD) policies to mitigate risks and ensure compliance. Deliver SAP Security and GRC gap analysis, risk assessments, and remediation plans. Support clients during audits by preparing documentation, reports, and facilitating access reviews. Provide strategic advice on SAP security best practices, compliance frameworks (SOX, GDPR, HIPAA, etc.), and process improvements. Collaborate with cross-functional teams including Basis, functional consultants, and IT auditors to implement secure SAP landscapes. Conduct end-user training sessions and knowledge transfer workshops. Stay abreast of SAP security trends, new releases, and regulatory changes to provide proactive consulting. Requirements At least 5 years of consulting experience is necessary. 3+ years of SAP Security and GRC consulting experience with multiple end-to-end implementations. Hands-on expertise with SAP ECC and/or S/4HANA Security. Strong experience configuring SAP GRC Access Control modules (Access Risk Analysis, Emergency Access Management, Access Request Management). Excellent client-facing and communication skills with the ability to explain technical concepts to non-technical stakeholders. Proven track record of managing multiple client engagements and delivering quality results on time. Functional / Content Skills Strong knowledge of Sarbanes-Oxley (SOX) , Business Process controls, IT General Controls and IT governance. Deep understanding and practical experience Analysis and Design/Re-Design of Business process and IT General controls in SAP and Non-SAP landscape. Strong analytical skills and a deep understanding of the overall context of underlying business processes and technologies. Understanding the purpose, procedures and ways of work of internal/external audits. Ability to support audits and to provide the right information & data, and to mitigate and/or solve identified deficiencies and gaps. Technical Skills (Data, Technology, Implementation) Ability to retrieve and analyze and report/present data from various sources. Understanding of data structures, sources, flow and integration across infrastructure platforms, functional domains, and application landscapes/service. Up-to-date understanding of Concepts & Integration of Cloud Services, and multi-cl