SAP ERP Prinicpal Security Arch

PPL CorporationLouisville, KY
12h

About The Position

As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL’s companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today. Overview The Cybersecurity organization advances the overall state of security at PPL through critical initiatives and coordination of large security and customer-focused projects. Cybersecurity also develops systems to monitor and respond to attacks against our systems, provides educational awareness to the corporation on security best practices, and ensures data sharing relationships with third parties securely protect PPL information. PPL is seeking a highly skilled SAP/ERP Principal Security Architect to join our Cybersecurity organization. The SAP/ERP Principal Security Architect will serve as a hands-on guide and technical expert, responsible for defining and implementing robust security controls in our Customer, HR, and Finance platforms. This position will play a critical role in ensuring the secure operation and governance of our SAP/ERP landscape, with particular focus on role design, access controls, and regulatory compliance. The ideal candidate will have hands-on experience with ECC and S/4HANA systems, SAP GRC, and integration with modern IAM platforms.

Requirements

  • Bachelor Degree in computer science, Information Security, and/or a related field or an equivalent level of work-related experience
  • 10 plus of SAP security experience, including ECC and/or S/4HANA
  • Hands-on experience with SAP GRC Access Control modules
  • Strong understanding of RBAC, SoD principles, and SAP authorization concepts
  • Familiarity with SAP Fiori security and cloud security models
  • Experience with integration into identity management platforms (e.g., EntraID, Okta, CyberArk)
  • Ability to interpret audit and compliance requirements into SAP controls
  • Evaluate, enhance, and document security configurations, procedures, and standards
  • Stay informed of SAP security trends, vulnerabilities, and best practices
  • Drive improvements in SAP security posture through continuous monitoring and proactive remediation

Nice To Haves

  • Previous experience with utilities or highly regulated industries
  • Experience with conversions from legacy HR and Finance systems to SAP
  • Experience with upgrades to existing versions of SAP
  • Good communications skills with HR and Finance professionals as well as cybersecurity professionals
  • Ability to translate business and compliance concerns into actionable protections within SAP

Responsibilities

  • Design, implement, and maintain SAP security roles and authorizations (PFCG, SU24, SU01).
  • Analyze and manage segregation of duties (SoD) risks using SAP GRC Access Control.
  • Secure custom transactions, RFCs, BAPIs, and ABAP developments.
  • Collaborate with business process owners to ensure roles align with least privilege principles.
  • Monitor SAP security logs (SM20, STAD) and perform forensic investigations as needed.
  • Support Fiori and SAP S/4HANA application security, including OData and catalog roles,
  • Integrate SAP systems with identity providers like EntraID, Okta, or Ping for SSO,
  • Drive improvements in SAP security posture through continuous monitoring and proactive remediation.
  • Evaluate, enhance, and document security configurations, procedures, and standards.
  • Stay informed of SAP security trends, vulnerabilities, and best practices.
  • Performs other duties as assigned.
  • Complies with all policies and standards
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service