Logo
The Clorox Company

SAP Security & GRC Solution Architect

The Clorox Company, Alpharetta, Georgia, United States, 30239

Save Job

Be among the first 25 applicants. Get AI-powered advice on this job and more exclusive features.

Clorox is the place that’s committed to growth – for our people and our brands. Guided by our purpose and values, and with people at the center of everything we do, we believe every one of us can make a positive impact on consumers, communities, and teammates. Join our team. #CloroxIsThePlace

In this role, you will

Contribute to the overall SAP security architecture strategy for Clorox, spanning ECC, S/4HANA, GRC, and cloud-based SAP platforms.

Hands‑on review, inspection, debugging (using Fire Fighter) and verification on all SAP and security platforms.

Support ongoing SAP security operations and maintenance, focusing on role design, licensing impact and cost recommendations, risk remediation, system access control, audit readiness, and audit reporting/remediation.

Drive our SAP and Security strategy across our different security teams.

Update SAP security architecture as we evolve to meet our security strategy and implementations.

Provide subject‑matter expertise in SAP GRC Access Control (ARA, BRM, ARM, EAM), including integration with SailPoint IGA where applicable.

Guide and support secure implementation and integration of cloud applications (e.g., IAS, IAG, BTP, SAC, Enable Now, Ariba).

Provide technical guidance on SSO configuration, SAML assertion handling, secure key maintenance, and related authentication patterns.

Troubleshoot and support SAP access provisioning failures across platforms (GRC, MyAccess, AD/SSO integration).

Collaborate with Enterprise Architecture, IAM, and Cybersecurity to ensure alignment with company‑wide identity and access strategies.

Support and contribute to the shift from project‑based delivery to stable, long‑term SAP security operations post‑Vista.

Architect and support SAP IAG Bridge integrations with GRC Access Control, including configuration of Identity Authentication (IAS) and Identity Provisioning Services (IPS), secure SAP Cloud Connector, and BTP subaccount administration.

With the experience and ability to implement in any of these systems.

What we look for

8+ years of SAP Security/GRC experience.

Deep expertise in SAP Security and GRC Access Control (GRC 12.0 or later).

Hands‑on experience with IAS/IAG, SAP BTP, and SAP S/4HANA security models.

Experience supporting security for SAP cloud applications and authentication technologies (SSO, SAML, Secure Key Exchange).

Strong knowledge of compliance and control frameworks including SOX, ITGCs, and SOD.

Ability to troubleshoot SAP access provisioning issues across hybrid environments.

Strong collaboration skills and ability to work with cross‑functional teams, including audit, infrastructure, IAM, and business stakeholders.

Experience in security design and support for SAP transformation programs.

Familiarity with SailPoint or similar for integration between GRC and IGA platforms.

Experience supporting large‑scale user migrations and cutover activities.

Exposure to SAP development lifecycle, ABAP code review, and security vulnerability triage.

Familiarity with JSON structure and its use in API integrations, access provisioning workflows, or troubleshooting cloud‑based identity systems (SAP IAG, SailPoint, MyAccess).

Excellent documentation, communication, and facilitation skills.

A continuous improvement mindset and a strong sense of ownership.

Proven ability to work independently and drive solutions forward.

Workplace type Hybrid – 3 Days in Office; 2 Days WFH

Our values‑based culture connects to our purpose and empowers people to be their best, professionally and personally. We serve a diverse consumer base which is why we believe teams that reflect our consumers bring fresh perspectives, drive innovation, and help us stay attuned to the world around us. That’s why we foster an inclusive culture where every person can feel respected, valued, and fully able to participate, and ultimately able to thrive.

Additional Information At Clorox, we champion people to be well and thrive, starting with our own people. To help make this possible, we offer comprehensive, competitive benefits that prioritize all aspects of wellbeing and provide flexibility for our teammates’ unique needs. This includes robust health plans, a market‑leading 401(k) program with a company match, flexible time off benefits (including half‑day summer Fridays depending on location), inclusive fertility/adoption benefits, and more.

We are committed to fair and equitable pay and are transparent with current and future teammates about our full salary ranges. We use broad salary ranges that reflect the competitive market for similar jobs, provide sufficient opportunity for growth as you gain experience and expand responsibilities, while also allowing for differentiation based on performance. Based on the breadth of our ranges, most new hires will start at Clorox in the first half of the applicable range. Your starting pay will depend on job‑related factors, including relevant skills, knowledge, experience and location. The applicable salary range for every role in the U.S. is based on your work location and is aligned to one of three zones according to the cost of labor in your area.

–Zone A: $128,000 - $252,200

–Zone B: $117,400 - $231,200

–Zone C: $106,700 - $210,200

This job is also eligible for participation in Clorox’s incentive plans, subject to the terms of the applicable plan documents and policies.

Please apply directly to our job postings and do not submit your resume to any person via text message. Clorox does not conduct text‑based interviews and encourages you to be cautious of anyone posing as a Clorox recruiter via unsolicited texts during these uncertain times.

To all recruitment agencies: Clorox (and its brand families) does not accept agency resumes. Please do not forward resumes to Clorox employees, including any members of our leadership team. Clorox is not responsible for any fees related to unsolicited resumes.

#J-18808-Ljbffr