1

Security Risk Manager Jobs in Calgary, AB (NOW HIRING)

... risk acceptance, ticketing to dev teams, and remediation within SLA -- and manage external pen ... Security operations and incident response: Manage our MSSP partner for 24/7 SIEM and SOC monitoring ...

Provide thought leadership and direction for the cyber risk management practice. * Team with PwC ... Bachelor orMaster's Degree in Information Security, * Computer Science, Engineering or Business.

next page

Showing results 1-20

Security Risk Manager information

What is the difference between Security Risk Manager vs Security Analyst?

AspectSecurity Risk ManagerSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP (optional)
Work EnvironmentStrategic, managerial, policy-focusedOperational, monitoring, incident response
Employer & Industry UsageOrganizations with risk management frameworksIT departments, cybersecurity teams

The Security Risk Manager focuses on identifying, assessing, and mitigating security risks at a strategic level, often managing policies and frameworks. In contrast, the Security Analyst handles day-to-day security monitoring, incident response, and vulnerability assessments. Both roles require cybersecurity certifications, but the Risk Manager's role is more strategic, while the Analyst's role is more technical and operational.

What are some common challenges Security Risk Managers face when implementing new security policies within an organization?

Security Risk Managers often encounter challenges such as resistance to change from employees, balancing security needs with business operations, and ensuring compliance with industry regulations. Gaining buy-in from various stakeholders requires strong communication and education efforts, as some team members may perceive new protocols as disruptive. Additionally, Security Risk Managers must continuously assess evolving threats while adapting policies to keep the organization protected without hindering productivity.

What are the key skills and qualifications needed to thrive as a Security Risk Manager, and why are they important?

To thrive as a Security Risk Manager, you need a solid understanding of risk assessment, security protocols, and regulatory compliance, typically supported by a degree in cybersecurity, information security, or a related field. Familiarity with risk management frameworks (like ISO 27001 or NIST), security information and event management (SIEM) systems, and certifications such as CISSP or CISM are commonly required. Strong analytical thinking, communication, and leadership skills help you effectively identify vulnerabilities and collaborate with stakeholders. These competencies are crucial for proactively managing threats, ensuring organizational resilience, and maintaining regulatory compliance.

What does a Security Risk Manager do?

A Security Risk Manager is responsible for identifying, assessing, and mitigating security risks that could impact an organization. They develop and implement risk management policies, conduct security audits, and ensure compliance with relevant laws and standards. Security Risk Managers work closely with other departments to create strategies that protect assets, data, and personnel from potential threats. Their role is critical in helping organizations minimize losses and maintain business continuity.
SAP Security GRC Consultant- 100% Remote from Canada

SAP Security GRC Consultant- 100% Remote from Canada

Q1 Technologies, Inc.

Calgary, AB โ€ข Remote

Other

This job post hasย expired today.ย Applications are no longer accepted.


Job description

SAP Security GRC Consultant

Long Term Contract(6 Months to start with)

Calgary, AB- Remote from Canada


Experience Required: 8-10



Job Summary

We are seeking an experienced SAP Security & GRC Specialist to manage and support SAP security administration, user access governance, compliance, and risk management across SAP environments. The ideal candidate will have hands-on experience with SAP authorization concepts, role design, Segregation of Duties (SoD), and SAP GRC Access Control modules.

________________________________________

Key Responsibilities

SAP Security Administration

โ€ข Design, build, and maintain SAP security roles using PFCG across SAP environments

โ€ข Mass Maintenance of authorization like Role content and Org Level changes

โ€ข Perform user administration activities including user creation, lock/unlock, password resets, and access reviews

โ€ข Troubleshoot authorization and security-related issues across SAP systems

โ€ข Support SAP FIORI, S/4HANA, BI/BW, GTP, and other SAP applications

โ€ข Manage transport requests related to security roles and authorizations using ChaRM

SAP GRC Management

โ€ข Administer and support SAP GRC Access Control modules:

o Access Risk Analysis (ARA)

o Access Request Management (ARM)

o Emergency Access Management (EAM)

o Business Role Management (BRM)

โ€ข Conduct Segregation of Duties (SoD) analysis and remediation

โ€ข Monitor compliance and audit requirements

โ€ข Support periodic user access reviews (UAR)

Compliance & Audit Support

โ€ข Work with internal and external auditors to provide security documentation and evidence

โ€ข Ensure compliance with SOX and corporate security policies

โ€ข Maintain audit-ready documentation for security processes and controls

Project & Support Activities

โ€ข Participate in SAP implementation, upgrade, migration, and enhancement projects

โ€ข Collaborate with business teams to understand access requirements

โ€ข Provide production support and resolve security incidents

โ€ข Custom Tcodes /Auth objects understanding

________________________________________

Required Skills & Qualifications

โ€ข 5+ years of SAP Security and GRC experience

โ€ข Strong knowledge of SAP authorization concepts and role design

โ€ข Experience with SAP GRC Access Control 10.x/12.x

โ€ข Knowledge of SoD concepts and compliance frameworks

โ€ข Experience with SAP S/4HANA and Fiori security

โ€ข Strong analytical and troubleshooting skills

โ€ข Excellent communication and stakeholder management abilities

________________________________________

Technical Skills

โ€ข SAP S/4HANA Security

โ€ข SAP GRC Access Control

โ€ข SAP Fiori Security

โ€ข SAP HANA Database Security

โ€ข Role Design & Authorization Objects

โ€ข SoD Analysis

โ€ข SU01, PFCG, SUIM, ST01, STAUTHTRACE and SU53

โ€ข Firefighter ID Management

________________________________________

Soft Skills

โ€ข Problem-solving mindset

โ€ข Attention to detail

โ€ข Team collaboration

โ€ข Time management

โ€ข Documentation and reporting skills