SAP Security Specialist
Allcare Pharmacy View all jobs
- Ireland
- Permanent
- Full-time
- Handle user provisioning, de-provisioning, and password resets where automation is not applicable
- Create, modify and manage user access across ECC (with S/4 support as needed)
- Perform role adjustments and support transport checks
- Manage service desk requests related to access
- Manage exceptions such as service accounts and emergency users
- Troubleshoot authorization issues in GUI and Fiori
- Monitor Security Audit Logs and maintain relevant security settings
- Coordinate with Basis team on RFC users, background jobs, and system notes
- Support ECC access stabilisation during LDR, including:
- blocking or restricting access as processes migrate to S/4
- converting access to display‑only where required
- ensuring users cannot post or process transactions in ECC once a process has moved to S/4
- Support and coordinate the annual User Access Review cycle (eccentric during LDR)
- Systematically clean up obsolete or excessive access across ECC in preparation for final ECC audit
- Perform security hygiene tasks to maintain audit readiness (especially during ECC exit phase)
- Monitor and assist in mitigation of Segregation of Duties (SoD) conflicts
- Provide evidence and documentation for internal and external audits (including PwC)
- Apply understanding of SAP GRC Access Control principles to support secure user management (optional but beneficial)
- Provide first-line support for SAP IAS / Azure AD authentication issues
- Troubleshoot SSO and identity synchronization issues
- Collaborate with identity teams on MFA and login‑related events
- Support business users and managers with access‑related questions
- Assist with access readiness for process cutovers during migration to S/4HANA
- 3–5 years of SAP Security experience, primarily in ECC (S/4HANA exposure an advantage)
- Strong knowledge of SAP authorization objects, roles, and profiles (GUI + Fiori)
- Familiarity with SAP GRC Access Control modules (ARA, ARM, UAR) – optional but desirable
- Ability to troubleshoot SU53, ST01, STAUTHTRACE, and Fiori authorization issues
- Understanding of RFC users, batch accounts, and cloud integration points
- Basic knowledge of IAS / Azure AD SSO and identity flows
- Detail‑oriented, analytical mindset
- Strong communication and collaboration skills across business and IT teams
- Proactive approach to security, compliance, and audit readiness
- Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent experience)