Senior Systems Engineer, SAP Security
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, IT Consultant
The Role
As the Senior Systems Engineer you will own and drive Moderna’s SAP Security and GRC roadmap—driving access-management procedures, periodic access reviews, and audit readiness across our global SAP landscape. You will architect secure, compliant solutions for S/4
HANA and adjacent platforms (Ariba, MDG, BTP etc.), support Upgrades, Implementation and Enhancement initiatives for the Security and GRC scope.
Define and maintain SAP security guidelines, operating procedures, and SoD framework
Own SOX, GxP, and ITGC controls; coordinate testing and remediation
Drive periodic user-access reviews and license optimization initiatives
Experience with full-cycle implementation and support of SAP GRC 12.x modules (ARM, ARA, BRM, EAM, access certifications)
Design, build, and transport security roles across SAP landscapes; leverage CHARM workflows
Translate business requirements into technical role designs and custom GRC rules
Set security and GRC architecture standards for ongoing SAP projects and upgrades
Evaluate risk and control impacts of role changes; provide guidance to project teams
Coordinate SIT/UAT for security objects and drive cut-over activities
Serve as primary contact for internal/external audit inquiries; deliver evidence and action plans
Track KPIs and SLAs, prepare regular metrics for management reporting
Lead Continuous Improvement of monitoring and alerting capabilities
Research and recommend AI/ML solutions for predictive access analytics, risk scoring, and anomaly detection
Pilot and operationalize AI features that enhance security intelligence and compliance automation
Education
:
Bachelor’s degree or EquivalentOverall
Experience:
7-8 years of SAP Security & GRC (v10.0 +) experience, including S/4
HANA and Fiori-role design. Deep knowledge of access-management principles, SOD analysis, SOX/GxP compliance, and ITGCs. Hands‑on expertise with SAP GRC 12.0 modules (ARM, EAM, ARA) and CHARM processes in Solution ManagerImplementation Experience
:
Experience implementing GRC, supporting security design for Greenfield implementations, upgrades and similar projectsApplications/Solution experience
:
Security and GRC implementation experience for SAP Ariba, MDG, GTS, BTP, ATTPStrong troubleshooting skills, attention to detail, and commitment to service‑level excellence
Outstanding communication skills and aptitude for collaborating with technical and business stakeholders
SAP certifications in Security and/or GRC Access Control
Global implementation or multi‑landscape experience
Exposure to AI/ML tools for security analytics and compliance monitoring
Familiarity with SAP licensing models and optimization tactics
At Moderna, we believe that when you feel your best, you can do your best work. That’s why our US benefits and global well‑being resources are designed to support you—at work, at home, and everywhere in between.
Best‑in‑class healthcare coverage, plus voluntary benefit programs to support your unique needs
A holistic approach to well‑being, with access to fitness, mindfulness, and mental health support
Family planning benefits, including fertility, adoption, and surrogacy support
Generous paid time off, including vacation, volunteer days, sabbatical, global recharge days, and a discretionary year‑end shutdown
Savings and investment opportunities to help you plan for the future
Location‑specific perks and extras
The salary range for this role is $ - $. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An individual’s position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, performance, and business or organizational needs.
The successful candidate may be eligible for an annual discretionary bonus, other incentive compensation, or equity award, subject to company plan…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).