Title- Sr Information Security Analyst ERP System (JD EDWARDS AND SAP)
Location- Irving, TX (REMOTE IS FINE)
Areas of Responsibilities include :
- Act as a subject matter expert for security and compliance on JD Edwards E1 and SAP systems (ECC, S4, GRC, Access Control, Process Control, ETD and others)
- Identifying gaps and improvements in the current security implementation
- Expansion of security capabilities to take full advantage of the JDE and SAP security tools available
- Updates and implementation of Master Data such as Roles / Entitlements, Role Owners, SOD rules changes, Security Configuration, threat patterns etc.
- Provide subject matter expertise and oversight as needed for projects requiring security access and compliance support
- Provide training to other security team members on security services activities and domain knowledge, so that service delivery and support can be shared
Support the ongoing security service for JDE and SAP and JDE Security through :
Meeting all defined service levels and defined performance objectivesExpand automated processes and workflows to deliver on business projectsSecurity Strategy Development and ManagementRole design and implementationccess provisioning and de-provisioning of usersIdentity life cycle and user maintenanceServe as a leader for implementing security architecturePossess and able to convey a strategic vision and end state design for interrelated business and security processes (i.e., Access administration and Security controls, threats and vulnerabilities)Coordinate all security designs with various Business Units and Cybersecurity teamsnalyze and implement security requirementsRecommends and develops security measures to protect information against unauthorized modification or lossWorks closely with both technical and functional teams to ensure the success of the overall security solutionServe as Security subject matter expert and provide advisory and consulting services as neededStrong ability to collaborate with application teams, administration teams, and business partners to design and implement technical security solutions on JDE, SAP, and associated bolt-on applicationsExperience with integration of SAP and JD Edwards security administration with Identity Management platforms is a plusSupport of SOX Compliance through :
Adherence to, and delivery of SOX controls and proceduresSupport of compliance initiatives, and audits both internal and externalSupport of recurring security assessments and access reviewsSupport the ongoing improvement of Security & Compliance area :
Providing ideas for improvement initiativesSelf-managing through improvement projects and providing clear measurable resultsMinimum Requirements
7 years relevant security administration experience
Critical Skills
At least 2 full implementations of security on SAP and JD Edwards systemsExperience with different scripting / programming languages to expand automation and capabilitiesExpertise in :OWM security and menuJDE E1 security design and user maintenanceAt least 3 years experience in SAP GRC Access Control & Process ControlAt least 3 years experience with SAP ETD administration and maintenance; implementation of Threat Patterns including design, alerts, fraud detection and user Behavioral analysis, and response planningCloud applications and Bus. ObjectsEmergency Access and Firefighter managementSOD Risk Management & ConfigurationProficient in IT general controls, SOC and SOX requirements as they relate to security administrationProficient in ERP security principles, technologies and solutions, delivering functionality andservices on time, on budget and to meet business needs
udit testing & evidence collectionHANA DB SecuritySAP NextGen S4 HanaProgressively responsible experience in designing, implementing, and maintaining application SecurityDeep knowledge of application security, capabilities, and limitationsProficient in reducing the attack surface and hardening ERP system securityProficient in ERP security principles, technologies, and solutions, delivering functionality or services on time, on budget and to meet business needsTechnical knowledge of security architecture and role-based authorization modelsProven success on multiple, enterprise-scale implementation projects or servicesAdditional Knowledge & Skills
Strong, proven problem-solving skills and ability to identify, analyze, and resolve problems, driving solutions to completionProficient in analyzing requirements, resource estimation, and allocationExcellent in team leadership and team-based problem-solving skillsExcellent interpersonal and oral, written communication skillsbility to translate complex technical information across all levels of the organizationbility to self-manage on tasks and mini-projects or improvement effortsStrong facilitation skills and a clear ability to build strong relationships with business partners at all levelsDemonstrated ability to translate business drivers and priorities into security design, policies, and proceduresResults driven, and able to collaborate with management and colleagues to share the responsibilities for achieving an end-to-end solution for customersStrong attention to detail which ensures that customer requirements are met and that a high quality standard is achievedProvide technical perspectives to other architecture functions to ensure that solutions effectively leverage infrastructure capabilities and services and integrate with themMust have excellent initiative, organization, and customer service skill