This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The ERP Security & GRC Lead is responsible for overseeing the security and governance, risk, and compliance (GRC) aspects of the organization's ERP systems. This role ensures that ERP platforms are secure, compliant with internal and external regulations, and aligned with business objectives. The ideal candidate will have deep expertise in ERP security frameworks, access controls, audit processes, and risk management.
Job Responsibility:
Define and implement ERP security policies, standards, and procedures
Lead the design and enforcement of role-based access controls (RBAC) and segregation of duties (SoD)
Collaborate with IT and business stakeholders to ensure secure ERP architecture and configurations
Monitor and analyze security incidents, providing timely responses and reporting to senior management
Develop and maintain ERP GRC frameworks aligned with regulatory requirements (e.g., SOX, GDPR)
Conduct risk assessments and audits to identify vulnerabilities and compliance gaps
Provide training and awareness programs for employees on ERP security best practices and compliance requirements
Manage ERP-related incidents and coordinate remediation efforts
Oversee user provisioning, de-provisioning, and access reviews
Ensure compliance with identity and access management (IAM) policies
Monitor and report on access anomalies and potential breaches
Serve as the primary point of contact for internal and external audits related to ERP systems
Prepare audit documentation and ensure timely resolution of findings
Maintain evidence of compliance and support audit readiness
Lead ERP security and GRC workstreams in transformation or upgrade projects
Provide subject matter expertise during ERP implementations and integrations
Train and mentor team members and business users on security best practices
Requirements:
Bachelor’s degree in Information Technology, Cybersecurity, or related field
7+ years of experience in ERP security and GRC, preferably with systems like SAP
Strong understanding of compliance frameworks (SOX, GDPR, ISO 27001)
Experience with GRC tools (e.g., SAP GRC)
Proven track record in managing audits and implementing SoD controls
Excellent communication and stakeholder management skills