← Serch more jobs

Cyber - SAP Security and GRC Access & Process Control Senior Consultant

LinkedIn Deloitte San Diego, CA
Not Applicable Posted April 18, 2026 Job link
Thinking about this job
Not Met Priorities
What still needs stronger evidence
Requirements
  • 5+ years of experience in ERP controls roles, with hands-on work in SAP environments (ECC and/or S/4HANA)
  • Ability to support control design, documentation, walkthroughs, and testing (design & operating effectiveness) across core business processes across Record to Report, Source to Pay, Order to Cash, Plan to Produce, their inherent risks, and potential controls
  • 4+ years of experience in SAP GRC Process Control design and configuration with a clear understanding of controls, risks, subprocesses, organizations, and assignments within SAP GRC Process Control.
  • 4+ years of experience creating/maintaining control library, narratives/RCMs (or equivalents), and mapping controls to processes, risks, and owners
  • Ability to set up or support self-assessments, test plans, and evidence collection workflows in PC (including tester/approver steps)
  • 2+ years of experience with the concept of automated/continuous controls and how PC can support monitoring using Continuous Control Monitoring (CCM) - creating business rules, data sources, and scheduling jobs to monitor controls and risks
  • 4+ years of experience in documenting internal controls, risk management and remediation processes
  • Ability to produce audit-ready outputs (e.g., control status, test results, open issues, overdue tasks) and explain them to control owners and auditors
  • Can run assigned work independently (workplan, status, RAID items) with Manager oversight and Leads control owner sessions for walkthroughs, evidence expectations, and PC workflow adoption
  • Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve
  • Limited immigration sponsorship may be available.
Preferred Skills
  • Preferred :
  • Previous Consulting or Big 4 experience
  • Certifications such as: CPA, CISA, CISSP, CISM, or PMP
  • Excellent written and verbal communication skills
  • Full cycle implementation experience with SAP S/4HANA and/or ECC, including risk assessment, control identification, design, testing, and deployment
  • Technical understanding of SAP configurations as it relates to the design, development, and testing of automated controls
  • Strong understanding of regulatory concerns impacting SAP environments, including Sarbanes Oxley and data related regulations (GDPR, CCPA)
  • Strong understanding of relevant leading practices as it relates to control environment
Education
  • (Not required) – Bachelor's degree
  • (Not required) – Certifications such as: CPA, CISA, CISSP, CISM, or PMP