Hiring.Camp

ERP Security IAM controls & Integrations

Gsknch

·

Today

Location
Bengaluru Campus 31, India
Type
Full-time
Department
Security
Education
Master
Closing date
Today
Source
Workday

Description

Welcome to Haleon. We’re a purpose-driven, world-class consumer company putting everyday health in the hands of millions. In just three years since our launch, we’ve grown, evolved and are now entering an exciting new chapter – one filled with bold ambitions and enormous opportunity.

Our trusted portfolio of brands – including Sensodyne®, Panadol®, Advil®, Voltaren®, Theraflu®, Otrivin®, and Centrum® – lead in resilient and growing categories. What sets us apart is our unique blend of deep human understanding and trusted science.

Now it’s time to fully realise the full potential of our business and our people. We do this through our Win as One strategy. It puts our purpose – to deliver better everyday health with humanity – at the heart of everything we do. It unites us, inspires us, and challenges us to be better every day, driven by our agile, performance-focused culture.

About the Role

We are seeking a Manager – ERP Security, IAM Controls & Integrations to join a major SAP S/4HANA transformation programme. This role will be responsible for shaping and governing identity and access management controls across the ERP landscape, ensuring secure, compliant and scalable access management processes are embedded into the target operating model.

Working closely with ERP, CR&C, IAM engineering, 2nd line GRC team, and Technology Architecture teams, you will help design and implement identity controls across SAP and non-SAP platforms as part of Phoenix, supporting a modern, automated and risk-based approach to access governance.

This is an excellent opportunity for someone with experience in Identity Governance Administration (IGA), ERP security, SAP GRC Access Control, IAM controls, PAM, and enterprise identity integrations who enjoys working at the intersection of business transformation, technology, and security.

We recognize that candidates may bring expertise from different IAM platforms and SAP environments. We encourage applications from individuals with transferable experience and a desire to learn and grow.

Key Responsibilities

ERP Identity & Access Management

  • Lead the design and implementation of identity and access controls across SAP and connected enterprise applications.
  • Support the development of a scalable and sustainable ERP access management model aligned to business and security requirements.
  • Define and govern role-based access control (RBAC) principles and access governance processes.
  • Ensure least-privilege and segregation of duties principles are embedded into solution designs.
  • Partner with business process owners and security teams to define access models that balance security, compliance and user experience.

Identity Governance Administration (IGA)

  • Lead the integration of SAP applications and ERP platforms with enterprise IGA solutions such as SailPoint, Saviynt etc.
  • Support implementation of automated access provisioning, certification, approvals and policy enforcement capabilities.
  • Define identity governance requirements across workforce, contractor and third-party populations.
  • Drive adoption of access review and attestation processes to strengthen control effectiveness.
  • Support the design of target-state identity governance operating models.

Joiner, Mover, Leaver (JML) Controls

  • Design and improve Joiner, Mover and Leaver (JML) processes across SAP and integrated applications, aligning to Sox and other cyber standards.
  • Ensure access changes are automated, auditable and driven by authoritative identity sources.
  • Identify opportunities to reduce manual activities and improve control effectiveness through automation.
  • Work with HR, Identity and Security teams to establish robust identity lifecycle management processes.

SAP Security & GRC

  • Collaborate with SAP Security teams to define security requirements for SAP S/4HANA and related SAP platforms.
  • Support implementation and optimisation of SAP GRC Access Control capabilities.
  • Contribute to Segregation of Duties (SoD) frameworks, risk analysis and mitigating controls.
  • Support audit, compliance and assurance activities related to ERP access management.
  • Provide guidance on SAP authorisations, access controls and governance processes.

PAM & Non-Human Identity Management

  • Support governance of privileged access across ERP applications and supporting infrastructure including Emergency Access management ( EAM) in SAP GRC AC.
  • Partner with PAM teams to implement controls for privileged and emergency access.
  • Contribute to the development of controls for service accounts, technical users, APIs, bots and other non-human identities.
  • Help establish governance processes for the lifecycle management of non-human identities.

Authentication & Identity Integration

  • Support implementation of Single Sign-On (SSO), Multi-Factor Authentication (MFA) and federation capabilities.
  • Define identity integration requirements between SAP platforms and enterprise identity services.
  • Work with architecture and engineering teams to implement secure identity flows across hybrid and cloud environments.
  • Help ensure a consistent user identity experience across the SAP ecosystem.

Controls, Risk & Compliance

  • Ensure IAM controls align with enterprise security policies and regulatory requirements.
  • Support risk assessments and control reviews relating to identity and access management.
  • Contribute to audit readiness and remediation activities.
  • Track and manage identity-related risks, issues and control improvements.

Qualifications and Skills

Essential

  • Identity and Access Management (IAM).
  • Identity Governance and Administration (IGA).
  • ERP security and access management.
  • SAP Security and SAP GRC Access Control.
  • SailPoint , Saviynt or similar IGA platforms.
  • Privileged Access Management (PAM).
  • Identity lifecycle management and JML processes.
  • Access governance, certifications and access reviews.
  • Authentication technologies including SSO and MFA.
  • Enterprise application integrations and identity architecture.

 

 

 

 Job Posting End Date

 

 

2026-08-31

 

 

 

Equal Opportunities

Haleon are committed to mobilising our purpose in a way that represents the diverse consumers and communities who rely on our brands every day. It guides us in creating an inclusive culture, where different backgrounds and views are valued and respected – all in support of understanding and best serving the needs of our consumers and unleashing the full potential of our people. It’s important to us that Haleon is a place where all our employees feel they truly belong.

During the application process, we may ask you to share some personal information, which is entirely voluntary. This information ensures we meet certain regulatory and reporting obligations and supports the development, refinement, and execution of our inclusion and belonging programmes that are open to all Haleon employees. 

The personal information you provide will be kept confidential, used only for legitimate business purposes, and will never be used in making any employment decisions, including hiring decisions.

 

 

 

Adjustment or Accommodations Request

If you require a reasonable adjustment or accommodation or other assistance to apply for a job at Haleon at any stage of the application process, please let your recruiter know by providing them with a description of specific adjustments you are requesting. We’ll provide all reasonable adjustments to support you throughout the recruitment process and treat all information you provide us in confidence. 

 

 

 

Note to candidates

The Haleon recruitment team will contact you using a Haleon email account (@haleon.com). If you are not sure whether the email you received is from Haleon, please get in touch.

Skills

SAPComplianceERP