- Company Name
- NES Fircroft
- Job Title
- ES Cybersecurity Architect
- Job Description
-
**Job Title:** ES Cybersecurity Architect
**Role Summary:**
Design and implement secure enterprise and cloud architectures for a large-scale SAP S/4HANA transformation. Embed secure‑by‑design principles throughout the program, reduce risk, and ensure regulatory compliance with NIST CSF, ISO 27001, SOX, FERC, and TSA.
**Expectations:**
- Deliver end‑to‑end security architecture for SAP S/4HANA, SAP BTP, and Azure/AWS environments.
- Apply encryption, key management, and data protection best practices.
- Integrate SAP with enterprise SSO/identity solutions (Okta, Azure AD).
- Oversee data migration and governance, ensuring accuracy and compliance.
- Establish centralized logging, SIEM integration, incident response, and PAM controls.
- Conduct security reviews and audits to validate controls and regulatory alignment.
**Key Responsibilities:**
- Develop security architecture blueprints for SAP S/4HANA, BTP, Azure & AWS.
- Embed secure‑by‑design principles across SAP integrations, extensions, and data migrations.
- Define encryption, key‑management, and data‑protection policies for S/4HANA systems.
- Implement SSO and identity integration between SAP and Okta/Azure AD.
- Lead data migration governance using Syniti Data Migration, SAP Migration Cockpit, and SAP Data Services.
- Set up centralized logging, monitoring, incident response, and SIEM integration.
- Deploy Privileged Access Management (PAM) controls and support security reviews/audits.
- Maintain compliance with regulatory frameworks (SOX, FERC, TSA) and security standards (NIST CSF, ISO 27001).
**Required Skills:**
- Cloud security architecture (Azure, AWS).
- SAP security expertise (S/4HANA, BTP, Fiori, GRC).
- Secure‑by‑design implementation in SAP integrations and extensions.
- Encryption, key‑management, and data‑protection policy design.
- SSO/identity integration (Okta, Azure AD).
- Data migration governance and data‑migration tools (Syniti, SAP Migration Cockpit, SAP Data Services).
- Centralized logging, SIEM integration, incident response, and PAM.
- Knowledge of regulatory frameworks (SOX, FERC, TSA) and security standards (NIST CSF, ISO 27001).
- Strong communication and stakeholder coordination skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- 5+ years of IT security experience, 3+ years in a security architecture role.
- Relevant certifications: CISSP, CISM, CCSP, Azure Security Engineer Associate, AWS Security Specialty.
---