Location: Munich
Hybrid Working: 3 days per week onsite / 2 days from home
Contract Duration: 12 months (with potential for extension)
Pay Rate: €800 – €850 per day
Industry: Utilities
Language Requirements: Fluent English, German (minimum B2)
Start Date: ASAP
Overview: We are seeking a seasoned SAP Security & Compliance Expert to join a mission-critical SAP transformation program within the Utilities sector. The role is designed for a security-first professional with extensive experience in access control, regulatory compliance, and risk management across SAP environments.
Key Responsibilities:
- Define and maintain SAP security policies and compliance frameworks
- Manage role-based access control (RBAC) and segregation of duties (SoD)
- Conduct regular security audits and risk assessments across SAP environments
- Identify and address vulnerabilities through proactive monitoring and mitigation
- Ensure compliance with global IT security and data protection standards (ISO 27001, NIST, NIS2, GDPR, SOX)
- Collaborate with IT security teams, auditors, and stakeholders to maintain ongoing compliance
- 10+ years of experience in SAP Security, GRC, and compliance
- Deep understanding of SAP user role design, authorizations, and governance
- Proficiency with SAP GRC modules and risk management processes
- Knowledge of cybersecurity best practices, threat detection, and incident response
- Familiarity with penetration testing tools and continuous monitoring solutions
- Fluent in English, with a minimum B1 level in German
- Willing to follow a structured on-site schedule: 3 weeks in Munich + 1 week in Frankfurt each month (expenses covered)
- Excellent communication and stakeholder management skills
- Strong analytical and problem-solving capabilities
- Experience in Agile environments and cross-functional collaboration
- Team-oriented, self-driven, and adaptable in dynamic projects
Please submit your CV with availability and rate expectations. This is a unique opportunity to lead SAP security efforts in a highly visible, compliance-driven Utilities project.