Manager, S4 HANA Roles & GRC Access, Controls Advisory, Technology and Transformation

  • Deloitte LLP
  • Manchester, Lancashire
  • Jul 24, 2025
Full time I.T. & Communications

Job Description

Belfast, Edinburgh, Glasgow, London, Manchester

Business Line

Job Type

Permanent / FTC

Date published

09-Jul-2025

19704

Connect to your Industry

The Controls Advisory team supports those accountable for managing organisations technology risks and compliance requirements through driving efficiency, effectiveness, and modernisation of their control environment to achieve better business outcomes.We focus on increasing our client's confidence in their compliance and control whilst reducing cost and effort.

Our team works cross industry helping senior client leaders with some of their most important and reputationally impactful challenges.

Connect to your career at Deloitte

Deloitte drives progress. Using our vast range of expertise, we help our clients' become leaders wherever they choose to compete. To do this, we invest in outstanding people. We build teams of future thinkers, with diverse talents and backgrounds, and empower them all to reach for and achieve more.

What brings us all together at Deloitte?It'show we approach the thousands of decisions we make everyday. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, whereverwe arein the world, welead the way,serve with integrity, take care of each other ,fosterinclusion, andcollaborate for measurable impact. These five shared values lead every decision wemake and action we take, guiding us to deliver impact how and where it mattersmost .

Connect to your opportunity

As S/4 HANA Roles & GRC Access Manager, you will lead and support our SAP Security and Governance, Risk, and Compliance (GRC) initiatives. The ideal candidate will have extensive experience with SAP Security architecture and implementation, SAP GRC solutions (Access Control, Identity Access Governance), and proven experience managing teams through complex SAP implementations and security risk assessments. This role will play a crucial part in designing, implementing, and re-design of security roles, Identity and Access Governance for cross-platform ecosystems while maintaining secure and compliant SAP environments across the organisation. You will demonstrate and develop your capabilities in the following areas:
  • Develop and implement S/4 HANA security and GRC strategy, design to protect the integrity and confidentiality of our clients' enterprise systems.
  • Oversee S/4 HANA Security during implementation ensuring compliance embedding audit and regulatory requirements.
  • Lead the design, configuration, implementation and testing of SAP GRC modules such as Access Control (AC) and Identity Access Governance (IAG).
  • Understand and enforce access policy requirements for user and role/authorisation management ensuring least access principle is applied leveraging segregation of duties (SoD) principles.
  • Lead typical GRC activities such as user access review and segregation of duties (SoD) analysis.
  • Work with internal and client stakeholders such as technical teams, internal/external auditors and business process teams to ensure a secure and integrated solution meeting business and compliance requirements.
  • Conduct risk assessments to identify and mitigate potential SAP security risks across all modules, including S/4HANA, and Fiori and other sap applications.
  • Manage and mentor a team of SAP security consultants fostering their growth and ensuring high-quality performance.
  • Deep understanding of IT access controls for S/4 HANA and other relevant SAP application suite.
  • Understanding of Risk rulesets & compliance aspects such as "segregation of duties", sensitive access, mitigation controls.
Connect to your skills and professional experience

You work collaboratively within diverse teams . Someone who connects with team members and shares information and ideas within the team. You always treat others with respect, clarifying expectations and confidently contributing to team discussions.

You employ critical thinking to support solving business problems . You analyse problems objectively by considering facts, relevant professional standards or research, data and differing perspectives to support solutioning. You understand the importance of technology on our stakeholders' operations for the areas we collaborate with the.

Respects the needs of colleagues and builds cooperative relationships . You embrace diversity across teams, and respects and values contributions of those from diverse backgrounds fostering a team environment.

Specifically, candidates should possess the following attributes:
  • Extensive experience in SAP security role design implementations, GRC Access Control, Identity Access Governance (IAG), user management, and authorization configuration.
  • Experience in integrating SAP IAG with GRC Access Control including BTP integration and security design.
  • Proficiency in SAP Security for applications such as ECC, S/4HANA, Fiori, and SAP cloud applications.
  • Deep knowledge and hands-on experience of SAP authorization concepts, user roles, profiles, and SAP security best practices.
  • Understand the segregation of duties requirements and embed in the security role design.
  • Excellent project management skills, with the ability to manage multiple priorities, drive deadlines, and lead teams effectively.
  • Responsible for presenting periodic status reporting to key stakeholders.
  • Foster relationships with important collaborators to ensure seamless implementation of the solution.
  • Support and guide the team in delivering high quality documentation.
  • Strong analytical, problem-solving, and communication skills, with the ability to identify gaps and explain technical concepts to non-technical stakeholders.
  • Excellent oral and written communication skills including in English (Proficiency)
  • Ability to work under pressure and maintain a professional demeanour.
The following will be considered an asset:
  • Professional certification such as SAP Certified Technology Professional, SAP Access Control 12.0, CISSP, CISM, or other relevant security certifications.
  • Qualify the criteria of UK Security clearance.
  • Strong understanding of IT and Business process Controls for S/4 HANA and other relevant SAP application suite
  • Knowledge & application of regulatory requirements such as SoX, GDPR etc.
As recent events have reminded us, there are no certainties in business. Risk is everywhere. But so is opportunity. Your expertise will help our clients stay one step ahead of what hasn't even been imagined yet.

Connect to your business - Technology and Transformation

Distinctive thinking, deep expertise, innovation and collaborative working. That's what connects us. That's what makes us Deloitte. If you want to help solve some of the biggest tech and transformational challenges around, join us. Together, we'll make an impact that matters.

Enterprise, Technology and Performance

Our clients want to achieve maximum value from digital transformation investments in Finance, Supply Chain and IT operations. That's where we come in. By taking a holistic view of performance improvement, including strategy, process design and technology enablement, we support the smooth operation of transformations.

Personal independence

Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints (e.g., in relation to any financial interests and employment relationships). This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm, and also prohibitions on certain employment relationships (e.g., you are not permitted to hold a secondary employment role with SEC audit clients of the firm whilst being employed by the firm). The recruitment team will provide further detail as you progress through the recruitment process or you can contact the Independence team upon request.

Connect with your colleagues

"At Deloitte you're surrounded by subject matter experts; industry experts, technology experts, and you can access that knowledge whenever you need to."

-Christian, Finance Transformation

"We have a great culture, and the number of opportunities here mean you can develop as an individual in the direction that suits you best."

-Gurpal, Risk Finance Transformation

Our hybrid working policy

You'll be based in London with hybrid working.

At Deloitte we understand the importance of balancing your career alongside your home life. That's why we'll support you to work flexibly through our hybrid working policy. Depending on the requirements of your role, you'll have the opportunity to work in your local office, virtual collaboration spaces, client sites and remotely. You'll get the chance to meet face to face when needed, while you collaborate and learn from colleagues, share your experiences, and build the relationships that will fuel your career and prioritise your wellbeing. Please check with your recruiter for the specific working requirements that may apply for your role.

Connect to your return to work opportunity

Are you looking to return to the workplace after an extended career break?
. click apply for full job details