IT Risk and Compliance Specialist

Location: 

Monterrey, Nuevo Leon, Mexico

Requisition ID:  41733
Department:  Business

Nemak is dedicated to developing technological solutions that make sustainable mobility possible.

We are committed to working together across disciplines to drive innovation and to shape the future of automotive lightweighting.

IT Risk and Compliance Specialist

 

Objective

Ensure the security and compliance of SAP and IT critical systems within the organization by safeguarding sensitive information, managing access controls, and implementing measures to adhere to regulatory requirements. This role involves collaborating with various stakeholders, conducting audits, and implementing security best practices, define access control and roles models to maintain the integrity of SAP and IT Critical systems.                                                                                                                                                   

Main Responsibilities

  • Design and implement security access management architecture models for SAP and other IT critical platforms, according to industry best practices.
  • Utilize SAP GRC tools for efficient management of risk, compliance, and access controls.
  • Support the creation and maintenance of SAP roles in alignment with organizational security policies.
  • Conduct comprehensive risk assessments to identify vulnerabilities and threats across SAP.
  • Develop and execute action plans for risk mitigation and SAP segregation of duties.
  • Provide internal consulting on SAP projects, advising on security role models and best practice implementations.
  • Manage user and role certification processes and schedules to ensure audit compliance.
  • Leverage technology to digitalize and improve service delivery and compliance processes.
  • Foster relationships with suppliers to enhance operational leverage and project delivery capabilities.
  • Define and monitor KPIs, driving continuous improvement in service delivery and operational efficiency.
  • Ensure compliance with internal governance models, maintaining accurate documentation of configurations and policies.

 

Position Requirements

  • In-depth knowledge of SAP security concepts, roles, authorization, SAP PI, S4Hana Security Models, and SAP Solution Manager.
  • Proficiency in SAP GRC Access and Process Control, with a strong understanding of the SAP Security Model (Transactions, Objects).
  • Certifications in SAP Security and GRC are highly desirable.
  • Solid experience in Governance, Risk, and Compliance within SAP environments.
  • Extensive background in SAP security administration, GRC, and compliance management.
  • Proven project management capabilities.

At Nemak, Diversity, Equity and Inclusion (D&I) play a fundamental role in everything we do and are the underlying platform on which our culture is built. We foster a culture that is safe, respectful, fair and inclusive for all of our employees and job applicants. Our value proposition relies on innovation and cross-cultural teamwork, which is only possible when we strive for belonging and commitment to Diversity, Equity and Inclusion. We understand the impact equality and of varied perspectives that welcome better ideas to solve complex problems for improvement and transformation.

 

We are proud to have bias-free conditions of employment, including recruiting, hiring, placement, and promotions, and we welcome all our employees and job applicants. We strongly prohibit any form of workplace harassment or discrimination based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status.

IT Risk and Compliance Specialist

 

Objective

Ensure the security and compliance of SAP and IT critical systems within the organization by safeguarding sensitive information, managing access controls, and implementing measures to adhere to regulatory requirements. This role involves collaborating with various stakeholders, conducting audits, and implementing security best practices, define access control and roles models to maintain the integrity of SAP and IT Critical systems.                                                                                                                                                   

Main Responsibilities

  • Design and implement security access management architecture models for SAP and other IT critical platforms, according to industry best practices.
  • Utilize SAP GRC tools for efficient management of risk, compliance, and access controls.
  • Support the creation and maintenance of SAP roles in alignment with organizational security policies.
  • Conduct comprehensive risk assessments to identify vulnerabilities and threats across SAP.
  • Develop and execute action plans for risk mitigation and SAP segregation of duties.
  • Provide internal consulting on SAP projects, advising on security role models and best practice implementations.
  • Manage user and role certification processes and schedules to ensure audit compliance.
  • Leverage technology to digitalize and improve service delivery and compliance processes.
  • Foster relationships with suppliers to enhance operational leverage and project delivery capabilities.
  • Define and monitor KPIs, driving continuous improvement in service delivery and operational efficiency.
  • Ensure compliance with internal governance models, maintaining accurate documentation of configurations and policies.

 

Position Requirements

  • In-depth knowledge of SAP security concepts, roles, authorization, SAP PI, S4Hana Security Models, and SAP Solution Manager.
  • Proficiency in SAP GRC Access and Process Control, with a strong understanding of the SAP Security Model (Transactions, Objects).
  • Certifications in SAP Security and GRC are highly desirable.
  • Solid experience in Governance, Risk, and Compliance within SAP environments.
  • Extensive background in SAP security administration, GRC, and compliance management.
  • Proven project management capabilities.

At Nemak, Diversity, Equity and Inclusion (D&I) play a fundamental role in everything we do and are the underlying platform on which our culture is built. We foster a culture that is safe, respectful, fair and inclusive for all of our employees and job applicants. Our value proposition relies on innovation and cross-cultural teamwork, which is only possible when we strive for belonging and commitment to Diversity, Equity and Inclusion. We understand the impact equality and of varied perspectives that welcome better ideas to solve complex problems for improvement and transformation.

 

We are proud to have bias-free conditions of employment, including recruiting, hiring, placement, and promotions, and we welcome all our employees and job applicants. We strongly prohibit any form of workplace harassment or discrimination based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status.