- Location
- US - Headquarters, United States of America
- Type
- Full-time
- Department
- IT
- Source
- Workday
Description
At YETI, we believe that time spent outdoors matters more than ever and our gear can make that time extraordinary. When you work here, you’ll have the opportunity to create exceptional, meaningful work and problem solve with innovative team members by your side. Together, you’ll help our customers get the high-quality gear they need to make the most of their adventures. We are BUILT FOR THE WILD™.
About the Role
The SAP GRC Analyst will be responsible for GRC administration and segregation of duties (SoD) analysis. You will be responsible for evaluating risks and implementing continuous improvement initiatives. This role is to work with the other members of the IT Compliance team to support regulatory access controls and manage our GRC instance. You will engage with the SAP Security team, Internal Audit, External Audit, and the business to resolve, review, and separate access.
What You'll Do
Review SAP standard and custom transactions for Segregation of Duties (SoD) impact
Identify and implement solutions for cross-system SoD conflicts
Administer and monitor GRC rulesets, mitigations, alerts, and reports
Monitor GRC requests to ensure timely resolution
Assist with the identification and management of role owners within the GRC instance
Develop and maintain documentation for both new and existing business and system processes
Assist with any system technical issues such as upgrades and UAT
Support internal and external audits as it relates to access controls, mitigation, and remediation
Assist with end-user training around GRC processes and procedures
Coordinate end-to-end periodic user access reviews to meet SOX compliance
What You Bring
BS degree in Information Security, Management of Information Systems, or Computer Science preferred (or equivalent experience)
Greater than 5 years of relevant experience
Experience analyzing SoD risks and identifying mitigating controls
SAP Security experience across various applications including, but not limited to S/4 HANA, BPC, BW, Fiori, PI/PO, SNC, and Solution Manager
GRC administration experience around following modules: Account Request Management (ARM), Access Risk Analysis (ARA), Emergency Access Management (EAM), and User Access Review (UAR)
Understanding of Sarbanes-Oxley (SOX) Compliance and SAP cloud security
Ability to work independently while managing multiple priorities
Clear written and verbal communication
#LI‑LW1
Benefits & Perks:
Click here to learn about the benefits and perks we offer at YETI.
YETI is proud to be an Equal Opportunity Employer.
Our commitment to creating a diverse, equitable, and inclusive culture is at the center of everything we do for our employees. We embrace all applicants looking to bring their authentic selves to YETI and contribute to our mission of keeping the wild WILD. Find out more about our commitment to DE&I at yeti.com/esg.html.
All applicants for employment will be considered without regard to an individual’s race, color, sex, gender identity, gender expression, religion, age, national origin or ancestry, citizenship, physical or mental disability, medical condition, family care status, marital status, sexual orientation, genetic information, military or veteran status, or any other basis protected by federal, state or local laws.
YETI welcomes and encourages applications from people with disabilities. Accommodations are available upon request for candidates taking part in all aspects of the selection process. If you require accommodation in order to apply for a job, please contact us at [email protected].