Back to IBM jobs
I

SAP security specialist

Madrid, ES
ProfessionalSecurity

Job Description

A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences. As a SAP

Security

Specialist, you will play a crucial role in researching emerging security trends and technologies, identifying business and technical requirements, and supporting the deployment of global security solutions. You will leverage your technical expertise to drive agile execution and ensure the security of our systems, designing, implementing, and maintaining security configurations across a broad range of SAP solutions. Your primary responsibilities will include: Security Governance SAP security and cybersecurity blueprint design with all necessary security controls Secure architecture design, including all necessary technical components: S/4HANA, SAP BTP, SAP Cloud Connector, SAP GRC Access Control / SAP Cloud IAG, interfaces, etc. Support in the preparation of security procedures: access management, developer control, third-party access, etc. Design of controls that make the system easily auditable both internally and externally (General IT Controls) and preparation of audit evidence. Coordination of follow-up meetings and project risks. Access Management Support in the process of migration and conversion/remediation of existing roles and profiles in SAP ECC to SAP S/4HANA. Support in the process of reviewing the segregation matrix and its implementation in SAP GRC Access Control and SAP Cloud IAG. Ensuring that new migrated/converted roles comply with segregation of duties. IAM (Identity and Access Management) architecture review: GRC AC / Cloud IAG / Cloud Identity Services, BTP, etc. System Securing Definition of security baseline, including all relevant parameters at the level SAP HANA, SAP ABAP / NetWeaver, and SAP BTP. Advice on good hardening practices and safe configuration. Proposal for Activation of Logs in S/4HANA for integration with SAP ETD. Security design for interfaces through analysis of transferred information and best proposal for each typology based on SAP standards. Recommendations for data protection and encryption in transit and at rest. Risk assessment in integration with external systems, external technical interfaces, use of APIs, etc. Secure Development and Privileged Access Definition of specific controls for technical profiles and developers: Separation between development, testing and production. Direct access restrictions to production environments. Monitoring of elevated permissions and privileged access during the project. Recommendations on the use of technical and emergency accounts. - Over 8 SAP Security experience years supporting and securing SAP landscapes across complex enterprise environments. - Skilled in managing user administration, role design, and authorization concepts within SAP ECC, S/4HANA, and associated modules. - Experience in conducting security audits, segregation‑of‑duties (SoD) analysis, and implementing remediation plans to ensure compliance with internal and regulatory standards. - Proficient in GRC Access Control, including firefighting, access risk analysis, and role lifecycle management. - Adept at collaborating with cross‑functional teams to resolve security incidents and support project initiatives. - Strong analytical skills, attention to detail, and a proactive approach to identifying vulnerabilities.

Preferred technical and professional experience

Familiarity with Cloud Security: Experience with cloud-based security solutions and technologies, including deployment and management of security controls in cloud environments.

  • Knowledge of Compliance Frameworks: Understanding of industry-recognized compliance frameworks and regulations, such as HIPAA, PCI-DSS, and GDPR.
  • Exposure to AI-Powered Security: Familiarity with AI-powered security tools and technologies, including machine learning-based threat detection and incident response systems. Spain Security Hybrid Professional Madrid, ES (0166) IBM Global Services Espana, S.A.

About IBM

First seen: August 4, 2026
Last updated: August 5, 2026