SAP GRC Expert

CACI International•O'Fallon, IL
•$90,300 - $189,600•Remote

About The Position

Join a mission‑driven cyber and SAP security team supporting a high‑visibility IL5 SAP S/4HANA environment. As the SAP GRC Expert, you will strengthen governance, ensure compliant access processes, and help shape a modern Zero Trust‑aligned security posture. If you enjoy solving complex security challenges, partnering with Cyber and Audit teams, and influencing enterprise‑wide risk decisions, this role offers the chance to make a meaningful impact.

Requirements

  • Clearance: Interim Secret (minimum).
  • Experience: 7+ years of SAP GRC experience. 3+ years supporting DoD or Federal environments.
  • Expert command of SAP GRC Access Control 12.x: role design, SoD analysis, risk rules, business role management.
  • Strong background in entitlement governance and role lifecycle management.
  • In‑depth knowledge of SAP authorization structures and composite role architecture.
  • Understanding of key SAP attributes: Company Code, Cost Center, Profit Center, Plant, Personnel Number, Organizational Unit.
  • Hands‑on experience integrating GRC with identity platforms (Okta/AD/LDAP).
  • Ability to configure and maintain emergency access workflows with monitoring and alerting.
  • Experience supporting RMF/ATO, eMASS controls, and compliance evidence cycles.
  • Knowledge of Zero Trust PAP (Policy Administration Point) architecture.
  • DoD 8140 – Foundational – 461 (Systems Security Analyst – Intermediate or above)
  • One or more of the following: CCSP, Cloud+, GICSP, GISF, GSEC, Security+
  • SAP GRC Access Control certification (required)
  • SAP Security certification (preferred)
  • DoD 8140 Residential (as applicable)

Nice To Haves

  • Experience with SAP GRC Process Control and Risk Management modules.
  • Familiarity with Splunk ES for SAP audit monitoring.
  • Understanding of ACAS/Tenable.SC scanning for SAP compliance.
  • Knowledge of AWS IAM Identity Center permission sets and integration patterns.

Responsibilities

  • Serve as the SAP GRC subject matter expert for the ISSO team, ensuring strong governance, risk mitigation, and compliant access across the IL5 S/4HANA landscape.
  • Oversee role governance, including design, lifecycle management, and entitlement hygiene.
  • Enforce and optimize Segregation of Duties (SoD) rulesets, mitigation controls, and access risk analysis.
  • Lead access review campaigns and certification cycles, ensuring accuracy and timely completion.
  • Manage integration between SAP GRC and identity systems (Okta, Active Directory, LDAP).
  • Configure and maintain emergency access (Firefighter) procedures, including AO authorization and SIEM alerting.
  • Support continuous compliance through RMF/ATO documentation, eMASS updates, CORA evidence preparation, and parallel Cyber/Audit workflow alignment.
  • Contribute to Zero Trust architecture via PAP policy models and secure access patterns.

Benefits

  • healthcare
  • wellness
  • financial
  • retirement
  • family support
  • continuing education
  • time off benefits
  • flexible time off benefit
  • robust learning resources
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service