Sap Security Analyst Modesto, CA
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, IT Consultant
Job Description
Job Req . Job Type: Full-time. Work Category:
Hybrid Telecommute. Application Close Date: 12/23/2025. Sponsorship:
Not Available. Compensation: $ 40.00 - $ 60.00.
We are GALLO—a family‑owned company with a 90+ year legacy, consistently recognized as a Glassdoor "Best Places to Work." We have 130+ brands in our alcohol beverage portfolio including wine, malt, spirits, and ready‑to‑drink beverages. We're home to the #1 wine and spirits brands in the U.S.—Barefoot Wine & High Noon—and are the official sponsors of the NFL, NHL, UFC, and PGA of America.
We are seeking an experienced SAP Security Analyst to shape and operate SAP security across on‑premises and cloud platforms (S/4
HANA, Fiori, GRC, EWM, Ariba, BTP, BRF+, IAS, IBP, Solution Manager). In this hands‑on role you will design and develop roles, enforce segregation of duties, manage access controls, and sustain ITGCs and compliance. You will lead access provisioning, testing, audit readiness, incident response, and continuous improvement efforts while documenting processes and training users. You'll collaborate closely with Enterprise Architecture, IAM, and Cybersecurity teams to align SAP security with enterprise identity and access strategies.
You will drive projects from requirements through implementation and production support, coordinating testing with business and technical stakeholders and supporting transitions from project delivery to stable operations.
Day‑to‑day responsibilities include role design and debugging, risk mitigation, audit management and remediation, creating clear runbooks and training materials, and investigating security incidents with a focus on timely, effective resolution. You will monitor emerging SAP security trends and recommend practical enhancements that balance risk, usability, and business needs.
We value intrapreneurship—thinking boldly, taking measured risks, learning quickly, and championing innovation—and expect high expectations, fostering frank and constructive discussions, and holding yourself and others accountable. We're looking for someone who communicates clearly, mentors colleagues, and helps build resilient, repeatable processes. We are committed to building an inclusive workplace and welcome applicants from all backgrounds, experiences, and abilities. If you need an accommodation to apply or interview, please let us know and we'll work with you.
WhatYou’ll Need
- Bachelor’s degree in Computer Science, Business Administration, MIS, Mathematics, or Engineering, plus 3 years of experience with information security, System Administration or equivalent with increasing levels of responsibility; OR High School Diploma or State‑issued equivalency certificate plus 7 years of experience in Information Security, System Administration or equivalent with increasing levels of responsibility.
- Demonstrated technical expertise in IT systems.
- Strong analytical ability, communication skills and the ability to work effectively with clients/customers, IT management and staff, vendors, consultants, and auditors.
- Required to travel to company offices, sites, and/or meeting locations for onboarding, training, meetings, and events for development, department needs, and business delivery up to 5% of the time.
- Required to be 18 years or older.
- Bachelor’s degree in Computer Science, Business Administration, MIS, Mathematics, or Engineering, plus 5 years of experience with data security reflecting increasing levels of responsibility.
- Extensive professional experience in management and deployment of security tools.
- Extensive knowledge of networking, databases, systems and/or Web operations.
- In‑depth knowledge of data security and protection techniques.
- In‑depth knowledge of application security best practices.
- Professional experience in vulnerability and configuration assessment tools, IDS/IPS tools, logging and monitoring tools (SIM), DLP, audit & assessment (GRC tools), data encryption and network or application firewalls, enterprise monitoring (SIEM); familiarity with mobile, SaaS & Cloud technologies.
- Professional certifications (CISSP, ISACA, GSEC, others).
- Knowledge of industry frameworks and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).