Negotiable
Undetermined
Onsite
Zurich, Switzerland
Summary: The role of Security and Authorisations Consultant involves supporting a critical SAP programme in the testing phase, focusing on security and compliance enhancements. The consultant will work within a system integrator environment, collaborating with international stakeholders. Expertise in User Access Management (UAM) and Computer System Validation (CSV) is essential for success in this position. The role requires active participation in testing phases and effective communication across diverse teams.
Key Responsibilities:
- Execute and refine User Access Management (UAM) processes, including user provisioning, deprovisioning, and role assignments.
- Support Computer System Validation (CSV) activities, ensuring SAP security controls align with validation requirements.
- Participate actively in the testing phase, supporting UAT and SIT cycles from a security perspective.
- Liaise with international project teams, coordinating with functional, technical, and compliance stakeholders.
- Work within a system integrator delivery model, adhering to client-specific compliance and documentation standards.
Key Skills:
- Extensive SAP Security & Authorisations experience.
- Strong hands-on expertise in User Access Management (UAM) processes.
- Proven experience in Computer System Validation (CSV) environments, preferably within pharma or regulated industries.
- Experience supporting testing phases (SIT/UAT) in SAP programmes.
- Ability to operate in international, cross-functional teams.
Salary (Rate): undetermined
City: Zurich
Country: Switzerland
Working Arrangements: on-site
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
An SAP Security & Authorisations Consultant is required to support a critical programme currently in the testing phase, with a substantial backlog of security and compliance enhancements. The consultant will operate within a system integrator environment, collaborating with a distributed, international stakeholder group.
The role requires strong expertise in User Access Management (UAM) and Computer System Validation (CSV) within regulated or compliance-sensitive environments.
Key Responsibilities
- Execute and refine User Access Management (UAM) processes, including:
- User provisioning, deprovisioning, and role assignments
- Role-based access control (RBAC) optimisation
- Segregation of Duties (SoD) analysis and remediation
- Support Computer System Validation (CSV) activities:
- Ensure SAP security controls align with validation requirements
- Contribute to validation documentation (IQ/OQ/PQ support where relevant)
- Maintain audit-ready traceability of access and control mechanisms
- Participate actively in the testing phase:
- Support UAT and SIT cycles from a security perspective
- Identify, document, and resolve security defects and gaps
- Implement and validate outstanding enhancements
- Liaise with international project teams:
- Coordinate with functional, technical, and compliance stakeholders
- Communicate effectively across multiple geographies and time zones
- Work within a system integrator delivery model:
- Align with structured delivery frameworks and governance
- Adhere to client-specific compliance and documentation standards
Required Skills & Experience
- Extensive SAP Security & Authorisations experience
- Strong hands-on expertise in:
- UAM (User Access Management) processes
- SoD frameworks and risk mitigation
- Role design and optimisation (PFCG)
- Proven experience in CSV (Computer System Validation) environments
- Preferably within pharma, life sciences, or regulated industries
- Experience supporting testing phases (SIT/UAT) in SAP programmes
- Ability to operate in international, cross-functional teams
- Strong documentation and audit support capability
Desirable Skills
- Experience with SAP GRC (Access Control)
- Familiarity with S/4HANA environments
- Exposure to audit processes and regulatory frameworks (e.g., GxP)
Working Model
- 3 days per week on-site in Brussels
- 2 days remote
- Immediate or short-notice availability preferred