Architect – SAP at Saputo Inc.
Ontario, Ontario, Canada -
Full Time


Start Date

Immediate

Expiry Date

02 Dec, 26

Salary

0.0

Posted On

03 Sep, 26

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

Yes

Skills

Industry

Information Technology & Services

Description

Security Architecture & Design


  • Define and maintain end to end security architecture for SAP (ECC, S/4HANA, BTP, Fiori, GRC) and non SAP enterprise platforms (custom apps, SaaS, COTS).
  • Define and maintain the enterprise IAM architecture, roadmaps, and reference designs.
  • Lead IAM strategy aligned with Zero Trust, Identity First Security, and cloud adoption.
  • Establish standards for authentication, authorization, identity lifecycle, and privileged access.
  • Embed security by design principles into application development, integrations, and system landscapes.
  • Review solution designs and provide security architecture sign off.


SAP Security


  • Design robust SAP security models including roles, authorizations, and SoD controls.
  • Define SAP user lifecycle, privilege access, and logging/monitoring standards.
  • Advise on SAP GRC, access controls, emergency access (Firefighter), and compliance configuration.
  • Support SAP transformations (S/4HANA, cloud, RISE, hybrid landscapes).


Non SAP & Enterprise Security


  • Architect security controls for non SAP applications, APIs, middleware, and cloud services (IaaS, PaaS, SaaS).
  • Define standards for authentication, authorization, encryption, secrets management, and secure integrations.
  • Support IAM, SSO, MFA, and directory integrations (e.g., Entra ID, LDAP).


Identity Lifecycle & Access Governance


  • Design Joiner Mover Leaver (JML) processes and automated provisioning/deprovisioning.
  • Architect access governance controls including: User Access Reviews (UAR), Segregation of Duties (SoD), Role Based / Attribute Based Access Control (RBAC / ABAC)
  • Integrate IAM with HR, ITSM, and GRC platforms.


Authentication & Authorization


  • Architect secure authentication mechanisms (MFA, passwordless, conditional access).
  • Design federation and SSO integrations (SAML, OAuth 2.0, OIDC).
  • Support B2E, B2B, and B2C identity scenarios where required.

How To Apply:

Incase you would like to apply to this job directly from the source, please click here

Responsibilities
Loading...