Manager, SAP Security and Controls

The Clorox Company•Durham, NC
•$109,400 - $258,500•Hybrid

About The Position

The Manager, SAP Security & Controls is accountable for SAP Security, Governance, Risk & Compliance (GRC), Identity and Access Governance, and SAP SOX control effectiveness across the enterprise. This senior technical leadership role combines deep hands-on expertise with responsibility for security architecture, control assurance, service delivery, and the future SAP security roadmap. The successful candidate will set strategy and architecture, lead internal and managed service resources, and remain personally engaged in complex SAP Security, GRC, identity, authorization, and control issues. This role is suited to a leader who can move confidently between senior stakeholder discussions, audit and control decisions, solution design, and detailed technical troubleshooting. Success in this role means improving SAP control reliability and audit readiness, resolving complex security issues at their root cause, strengthening architecture and access governance, raising the quality and accountability of internal and managed service delivery, and advancing a practical future-state SAP security roadmap. The ideal candidate has personally delivered complex SAP Security and GRC solutions, can lead SOX control execution and remediation, and can shape strategy without losing the ability to work at technical depth.

Requirements

  • 10+ years of progressive SAP Security, GRC, and Identity and Access Governance experience, including substantial experience as a senior architect or technical lead in a complex enterprise SAP environment.
  • Demonstrated hands-on SAP Security and GRC expertise combined with strategic, architectural, and delivery leadership.
  • Significant experience with S/4HANA security, role and authorization design, Fiori security, PFCG, SU24, and authorization troubleshooting and tracing.
  • Deep working knowledge of SAP GRC Access Control, including Access Risk Analysis, Access Request Management, Emergency Access Management, Business Role Management, MSMP workflows, BRF+, mitigating controls, and SoD ruleset governance.
  • Proven experience executing, reviewing, and remediating SAP SOX and ITGC controls and engaging with Internal and External Audit.
  • Experience applying modern SAP identity capabilities, including IAG, IAS, and IPS, within enterprise access governance and provisioning architectures.
  • Experience leading internal technical resources, managed service providers, contractors, and strategic partners.
  • Ability to communicate clearly and operate effectively at technical, architectural, operational, audit, and senior leadership levels.

Nice To Haves

  • Experience in a complex global organization with a significant SAP footprint and regulated financial controls environment is preferred.
  • Experience with SAP BTP security, cloud identity integrations, control automation, and continuous monitoring is preferred.
  • Demonstrated success leading major SAP transformations, role redesigns, audit remediation programs, or access governance modernization is preferred.
  • Relevant SAP Security, GRC, cloud identity, cybersecurity, audit, or enterprise architecture certifications is preferred.

Responsibilities

  • Own SAP SOX and ITGC control effectiveness: execute and oversee assigned controls, review evidence quality, provide formal sign-off, assess design and operating effectiveness, and drive sustainable remediation of deficiencies and repeat findings.
  • Remain hands-on: diagnose and resolve complex authorization, role design, GRC workflow, provisioning, Segregation of Duties, Firefighter, Fiori, cloud identity, and production security issues.
  • Lead SAP security architecture: define standards, role and authorization models, design principles, and a multi-year roadmap across ECC, S/4HANA, Fiori, BTP, GRC, IAG, IAS, IPS, and connected identity platforms.
  • Lead delivery and priorities: direct internal resources, contractors, managed service providers, and strategic partners; balance operational support, audit commitments, remediation, projects, and modernization initiatives.
  • Govern access and identity: lead access provisioning, User Access Reviews, Emergency Access Management, privileged access, role lifecycle, SoD rulesets, authentication, federation, and identity integration.
  • Influence across the organization: translate technical and control risks for senior leadership and partner effectively with Cybersecurity, IAM, Internal and External Audit, Enterprise Architecture, SAP delivery teams, and business stakeholders.

Benefits

  • Robust health plans
  • Market-leading 401(k) program with a company match
  • Flexible time off benefits (including half-day summer Fridays depending on location)
  • Inclusive fertility/adoption benefits
  • Eligible for participation in Clorox’s incentive plans
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service