
SAP Platform Security Leader Operations and Audit & Compliance
- Manila City, Metro Manila
- Permanent
- Full-time
- Security approach driven by business, compliance, and regulatory requirements.
- Security solutions that align with the key principles outlined within P&G’s Info Security policies.
- Security structure that imposes the minimum administrative overhead from a sustainability perspective.
- Restrict access authorizations to the user’s job requirements and responsibilities.
- Provide expertise, best practices, and guidance on SAP security standards.
- Provide appropriate security monitoring to reduce the risk of any audit & compliance deviations.
- Handle day-to-day design, build, implementation, testing, deployment/release management, and monitoring of security solutions and platforms.
- Engage in information security projects that evaluate existing security infrastructure and propose changes as defined by security leadership and architects.
- Communicate vulnerability results in a manner understood by technical and non-technical business units based on risk tolerance and threat to the business.
- Identify, analyze, and respond to malicious behaviors from a variety of sources and create action plans to mitigate future incidents.
- Research new tactics, techniques, and procedures (TTPs) in public and closed forums, assessing risk and implementing/validating controls as necessary through the CI/CD pipeline.
- Extensive experience (3+ years) in SAP Platform Security, SAP Basis, HANA DB, internal controls, compliance, or a related field, focusing on SAP systems.
- Extensive and broad-based experience and expertise with all stacks of SAP Infrastructure and Application stack with demonstrated understanding of SAP Security and Compliance within a large and diverse enterprise environment or business community.
- Strong understanding of SAP processes, modules, and configurations, including ECC, S/4HANA, BTP, SAP Platform, Basis, Integration, OS, and related technologies.
- Ideally, knowledge of the P&G information security framework and SAP Enterprise Security Control
- Knowledge of IT SAP security tools such as code scanners, GRC tools, or tools for SAP SoD monitoring.
- Relevant certifications such as ITIL, SAP HANATEC, Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), or equivalent are a plus.
- Excellent communication, presentation, and interpersonal skills.
- Ability to manage conflicting priorities and multiple tasks incl. reasoning and problem-solving skills (especially in the task force phase).
- Traditional/waterfall and agile project management skills.
- Strong analytical and problem-solving abilities, with keen attention to detail.
- Experience in working with regulatory requirements and industry standards (e.g., SOX, GDPR) SAP systems.
- Create an atmosphere of trust, leverage diverse views, and encourage improvement and innovation.
- Prior success in roles managing in a professional services firm or large enterprise as a consultant, auditor or business process specialist is preferred.
- Demonstrates breadth of applied IT skills across at least two IT job profiles.
- Applies Integrated Risk Management, IT Operations, IT Project Management, and Enterprise Architecture skills relevant to the work.
- Requires at least two relevant roles with experience managing or influencing people or organizations to achieve significant IT outcomes.
- Demonstrates ability to define strategy and leads the delivery and transformation of business outcomes through IT within major sub-OU services, products, or programs.