Description & Requirements
✔ Do you have hands-on experience with SAP GRC Access Control modules such as ARA, ARM, BRM, or EAM?
✔ Are you a proactive consultant who thrives on taking ownership and delivering impactful solutions for clients?
✔ Do you have a strong understanding of SoD frameworks, risk analysis, and SAP security governance, with a sharp eye for detail in controls design?

Join our Enterprise Security Team and take part in GRC Access Control implementations, risk assessments, and compliance advisory projects. If you're motivated by continuous learning and can work both independently and as part of an expert team, we'd love to hear from you! 🚀
🎯 What we expect from you:
- Hands-on experience with implementation of SAP GRC Access Control modules such as ARA, ARM, BRM, or EAM.
- Experience in SAP Security governance, controls frameworks, and compliance programs.
- Experience in Segregation of Duties (SoD) frameworks, risk analysis, and mitigating controls design.
- Knowledge of SAP security control features in SAP S/4HANA.
- Experience in internal controls reviews, audit support, and remediation programs.
- Ability to work with cybersecurity, audit, risk, and compliance stakeholders.
- EU passport.
⭐ Nice to have:
- Certifications related to SAP GRC / Cybersecurity / Risk Management.
- Familiarity with additional SAP applications: ECC, HCM, CRM, BW/4HANA, SAC.
- Knowledge and/or experience in Workday or Salesforce security and control frameworks.
- Delivering SAP Security and GRC implementation projects for large international clients.
- Designing, implementing and optimizing SAP GRC Access Control solutions.
- Performing SoD risk assessments, controls reviews, and compliance evaluations.
- Supporting audit and regulatory readiness initiatives in SAP environments.
- Advising clients on governance models, risk reduction, and security operating models.
- Supporting business development, innovation, and sales initiatives in SAP Security & Cyber domains.
- Recognition & rewards – Enjoy a competitive compensation package, performance-based rewards, and opportunities to grow within a leading consulting organization.
- Flexibility & work-life balance – Benefit from hybrid working arrangements and a culture that supports professional growth alongside personal wellbeing.
- Innovation-driven environment – Work alongside experienced cybersecurity professionals who value knowledge sharing, mentoring, and continuous improvement.
- Exposure to diverse environments – Collaborate with multinational clients and cross-functional teams on complex security challenges across Central Europe and beyond.
- Career acceleration – Build deep technical and consulting skills while taking ownership of workstreams, stakeholder interactions, and key project deliverables.
- Continuous learning & certifications – Develop your expertise through access to cybersecurity training, industry certifications, and hands-on experience with leading security technologies and frameworks.
- Challenging cybersecurity projects – Work on application security, IAM, cloud security, and cyber transformation engagements for leading organizations across industries.
In Deloitte, we support leading global organizations in optimizing and transforming their operations — including strengthening their cybersecurity and IT risk landscape. Our consultants provide the insights, capabilities, and solutions that help these organizations protect their systems, data, and operations.
We are currently building a dedicated team in Poland focused on advisory in the area of SAP Security & GRC. The team advises our clients on complex issues relating to, among others, SAP authorizations, access risk management, and Segregation of Duties (SoD). We are looking for high-energy, committed, and ambitious people to join our advisory practice. Beyond advising on the most sophisticated and challenging issues in these areas, our consulting professionals also help design solutions that optimize these processes — including the application of the newest technologies.
Are you ready to join our team and help our clients imagine, deliver, and run their future?
#LI-MB2