Location : Indianapolis, 46225 ( Onsite / Hybrid)
Type of Job : Contract : 12 Months
Experience : 10+ Years
Education
Bachelor s degree in computer science, Information Systems, Cybersecurity, or a related technical field required.
Advanced degree or professional certifications (CISSP, CISM, CEH, SAP Security certification) strongly preferred.
Experience
Minimum 10 years of hands-on experience in SAP Security administration and role design.
Minimum 5 years of experience in Cybersecurity assessments, vulnerability management, or security architecture.
Demonstrated experience with cloud-hosted SAP applications; familiarity with IBP, SAC, Ariba, BTP, or Signavio is highly desirable.
Prior experience contributing to GxP or regulated-environment security documentation (Security Plans, SOPs, Risk Assessments) in a pharmaceutical or life sciences setting is strongly preferred.
Experience with code review or application security assessments (SAST/DAST tools, OWASP standards) is required.
Technical Skills
SAP Security:
Deep knowledge of SAP role design, authorization objects, and profile management across S/4HANA, BTP, and cloud applications.
Proficiency in SAP GRC (Governance, Risk & Compliance), access control, and SOD conflict analysis.
Experience with CyberArk or equivalent Privileged Access Management (PAM) solutions in an SAP context.
Familiarity with SAP Identity Authentication Service (IAS) and Identity Provisioning Service (IPS).
Regulatory & Compliance Knowledge
Understanding of GMP and GxP requirements as they relate to computer system validation (CSV) and security documentation.
Familiarity with Client s Quality Practices especially Computer Systems and Platform Security or equivalent pharmaceutical industry security standards.
Knowledge of FDA 21 CFR Part 11, EU Annex 11, and relevant ICH guidelines as applicable to cloud-hosted systems.
Experience with Confidential Information (CI) and Personal Information (PI) classification and handling requirements, including GDPR considerations for cloud systems.