Jobs and Careers
TH

SAP Security & GRC Solution Architect

The Clorox Company
United StatesRemotefull_timeVerifiedPosted 19 Aug 2025
💰 $252,200/yr($106,700/yr$252,200/yr)

About the role

Clorox is the place that’s committed to growth – for our people and our brands. Guided by our purpose and values, and with people at the center of everything we do, we believe every one of us can make a positive impact on consumers, communities, and teammates. Join our team. #CloroxIsThePlace

Your role at Clorox:

The Solution Architect – SAP Security & GRC will play a key role in supporting and enhancing Clorox’s enterprise SAP landscape, with a focus on hands on security design, governance, and operations across S/4HANA and supporting systems based on experience. This position contributes to the continued delivery of the Vista transformation program, supports post-go-live stabilization, and enables secure, audit-ready operations as Clorox transitions from project-based delivery to long-term operations.

The architect will serve as a subject matter expert and hands on in SAP GRC, IAG, IAS, and cloud security platforms, and collaborate across IT, compliance, and business stakeholders to maintain controls, support access governance, and ensure that SAP security posture evolves with the organization’s needs. With the experience and ability to implement in any of these systems.

In this role, you will:

  • Contribute to the overall SAP security architecture strategy for Clorox, spanning ECC, S/4HANA, GRC, and cloud-based SAP platforms.
  • Hands-on for review, inspection, debug (using fire fighter) and verification on all SAP and security platforms
  • Support ongoing SAP security operations and maintenance, with a focus on role design, licensing impact and cost recommendations, risk remediation, system access control,  audit readiness, and audit reporting / remediation.
  • Drive our SAP and Security strategy across our different security teams
  • Updating our SAP security Architecture as we evolve to meet our security strategy and implementations
  • Provide subject matter expertise in SAP GRC Access Control (ARA, BRM, ARM, EAM), including integration with SailPoint IGA where applicable.
  • Guide and support secure implementation and integration of cloud applications (e.g., IAS, IAG, BTP, SAC, Enable Now, Ariba, etc.).
  • Provide technical guidance on SSO configuration, SAML assertion handling, secure key maintenance, and related authentication patterns.
  • Troubleshoot and support SAP access provisioning failures across platforms (GRC, MyAccess, AD/SSO integration).
  • Collaborate with Enterprise Architecture, IAM, and Cybersecurity to ensure alignment with company-wide identity and access strategies.
  • Support and contribute to the shift from project-based delivery to stable, long-term SAP security operations post-Vista.
  • Architect and support SAP IAG Bridge integrations with GRC Access Control, including configuration of Identity Authentication (IAS) and Identity Provisioning Services (IPS), secure SAP Cloud Connector, and BTP subaccount administration.

    What we look for:

    • 8+ years of SAP Security/GRC experience.
    • Deep expertise in SAP Security and GRC Access Control (GRC 12.0 or later).
    • Hands-on experience with IAS/IAG, SAP BTP, and SAP S/4HANA security models.
    • Experience supporting security for SAP cloud applications and authentication technologies (SSO, SAML, Secure Key Exchange).
    • Strong knowledge of compliance and control frameworks including SOX, ITGCs, and SOD.
    • Ability to troubleshoot SAP access provisioning issues across hybrid environments.
    • Strong collaboration skills and ability to work with cross-functional teams, including audit, infrastructure, IAM, and business stakeholders.
    • Experience in security design and support for SAP transformation programs.
    • Familiarity with SailPoint or similar for integration between GRC and IGA platforms.
    • Experience supporting large-scale user migrations and cutover activities.
    • Exposure to SAP development lifecycle, ABAP code review, and security vulnerability triage.
    • Familiarity with JSON structure and its use in API integrations, access provisioning workflows, or troubleshooting cloud-based identity systems (e.g., SAP IAG, SailPoint, MyAccess)
    • Excellent documentation, communication, and facilitation skills.
    • A continuous improvement mindset and a strong sense of ownership.
    • Proven ability to work independently and drive solutions forward.

    #LI-HYBRID

      Workplace type:

      We prefer Hybrid (3 days in office and 2 days WFH) at one of the locations listed. Open to remote with up to 25% travel to our office location in Durham NC.

      Apply for this role

      Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

      Apply Now →Generate Application Kit

      Free account required — sign up in 30s

      Company

      The Clorox Company

      View company profile →