Application Security & Authorizations Manager
Listed on 2025-12-23
-
IT/Tech
Cybersecurity, IT Project Manager
Application Security & Authorizations Manager
2 days ago – Be among the first 25 applicants.
Company Summary
We’re the producers, creators and marketers of beer, wine and spirits brands that people love. At Constellation Brands, we push boundaries and think beyond today to deliver products and experiences that resonate now, tomorrow and well into the future. We are the fastest-growing large CPG company in the U.S., with operations in the U.S., Mexico, New Zealand and Italy. Our premium portfolio includes iconic brands like Corona Extra, Modelo Especial, Kim Crawford, Robert Mondavi, The Prisoner, High West Whiskey, and more, driving industry-leading growth.
PositionSummary
The Application Security and Authorization Manager oversees the security of enterprise applications and access management across the organization. This role ensures that business applications are protected against threats and that access is managed according to policy, best practices and compliance requirements. The manager will conduct regular application security assessments, manage identity and access management (IAM), and design authorization frameworks, collaborating with application owners, enterprise architects, infrastructure, security and compliance teams.
Key Responsibilities- Policy & Compliance Management:
Develop, implement and enforce application security policies, requirements and procedures, ensuring continuous compliance with internal controls and external regulations such as SOX, GDPR, etc. - Role-Based Access Control (RBAC) & SoD:
Design, manage and maintain RBAC and Segregation of Duties (SoD) frameworks to prevent conflicts and unauthorized access. - SAP Security Expertise:
Oversee SAP security, including role design, user administration in S/4
HANA, Fiori, TM, BTP and management of SAP GRC solutions. - Enterprise Systems Oversight:
Manage core non‑SAP platforms and integrations with IAM (Azure AD, Okta, SailPoint) and other SaaS services to ensure seamless user lifecycle management. - Operational Excellence & Process Improvement:
Optimize existing security processes, standardize procedures, automate and reduce manual effort within provisioning life cycles. - Access Monitoring & Incident Response:
Monitor access logs, review exception reports, investigate misuse or breaches, and lead rapid response efforts to contain and remediate incidents. - Auditing & Reporting:
Coordinate internal and external audits, deliver evidence, oversee quarterly User Access Review (UAR) and report security metrics to senior management. - Team Leadership &
Collaboration:
Lead, mentor and train security analysts and collaborate with IT and business stakeholders to meet application security requirements.
- Bachelor’s degree in Information Technology, Business Systems or a related field.
- 8+ years of experience in Application Security, Identity and Access Management, and IT Security Operations.
- Proven experience managing application security programs and IAM in enterprise environments.
- Strong understanding of security frameworks and tools (SSO, MFA, OAuth, SAML).
- Excellent communication and stakeholder engagement skills.
- Certifications such as CISSP, CISM, or relevant security/IAM platforms.
- Experience with automation and integration of security and access management tools.
- Background in consumer goods or similar industries.
- Familiarity with audit, compliance and regulatory processes (SOX, GDPR, ISO 27001).
Ability to travel domestically and internationally.
Seniority LevelMid‑Senior level
Employment TypeFull‑time
Job FunctionInformation Technology
LocationRochester, New York (plus additional locations: Canandaigua, New York; Chicago, Illinois; San Antonio, Texas)
Job TypeFull time
Job AreaInformation Technology
Salary Range$ – $
Equal OpportunityConstellation Brands is committed to a continuing program of equal employment opportunity. All persons have equal employment opportunities regardless of sex, race, color, age, religion, creed, sexual orientation, national origin or citizenship, ancestry, physical or mental disability, medical condition, marital status, gender, familial status, military or veteran status, genetic information, pregnancy, childbirth, breastfeeding, or related conditions.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).