Lead SAP Security Architect
Dreamcast Interactive · Dubai, United Arab Emirates
Apply & track with Apply EdgeOne Dubai-based, three-year contract seat with our external partner: a large retail group headquartered in Dubai with a workforce of more than 16,000 people. You will be the security authority for its SAP estate: the architect who makes sure security is designed into SAP S/4HANA, SuccessFactors, Ariba, Fiori, GRC and BTP from the first design review through to steady state, and that everything built can be monitored, defended and audited by the Group.ABOUT THE CLIENTOur partner is one of the largest luxury and premium retail groups in the Middle East. Headquartered in Dubai, it employs more than 16,000 people across the region and runs several hundred stores, dozens of e-commerce sites and apps, and a portfolio of over 300 international brands. It is part-way through a multi-year technology transformation: a new SAP S/4HANA core across finance, people and logistics, with SuccessFactors, Ariba and the omnichannel retail estate around it, delivered with a global system integrator. Group Information Security owns security across that programme, and this seat is its SAP security architect: the primary security authority inside the transformation programme and the bridge between the programme, Group Information Security and the Group's governance forums. We share the client's name with shortlisted candidates.ABOUT THE ROLEDreamcast Interactive is a Dubai-headquartered studio building AI systems, web and mobile products, immersive AR/VR and full-cycle games for clients across the US, UK and GCC. We are placing a Lead SAP Security Architect with the client above on a three-year full-time contract, engaged through Dreamcast and based at the client's Dubai head office with hybrid flexibility. This is client work, not an internal role.You report into Group Information Security and work daily with programme leadership, the ERP architects, business stakeholders, the global system integrator and third-party vendors. The Group's security principles, policies and standards are your baseline. Your job is to make sure the SAP landscape meets them by design, and that every control you define lands in Group Security Operations for monitoring, threat detection, incident response and log management.WHAT YOU WILL OWN- The ERP security architecture, standards and guidelines for the SAP landscape, aligned with Group Information Security policies and frameworks- Security impact assessments, threat models and risk assessments across SAP S/4HANA, SAP SuccessFactors, SAP Ariba and every related ERP module- Security controls across the SAP landscape: application security, database security, network security, identity and access management and secure configurations- Integration of ERP security design and implementation with Group Security Operations: continuous monitoring, threat detection, incident response and log management- Expert guidance on secure configuration of SAP Fiori, SAP GRC and SAP Solution Manager- Evaluation of third-party add-ons and integrations for the SAP ecosystem against the Group's security requirements and standards- A leading voice on the architecture and design review boards (Design Authority), so security requirements are embedded from design through delivery- Translation of regulatory and compliance requirements such as SOX and GDPR into ERP security controls, together with programme management, the ERP architects and business leads- Identity and access management standards and segregation-of-duties principles for the SAP estate, in line with Group security governance- Support to internal and external auditors on security audits, assessments and compliance activities in the ERP environment- The link between the SAP transformation programme, Group Information Security and the wider governance forums, keeping both sides aligned and transparent- Security awareness and secure-usage training for the programme's stakeholdersWHAT YOU BRING- 10+ years in information security, with at least 5 years in security architecture and secure design- Deep SAP security architecture expertise: SAP S/4HANA security, SAP Fiori security, SAP GRC Access Control and Process Control, SAP cloud platform security (BTP, SuccessFactors, Ariba) and SAP identity and access management- Security-by-design applied, with evidence, inside complex ERP transformation programmes- A strong grasp of ISO 27001, GDPR and SOX and how they apply to ERP security- Familiarity with cloud security architectures for SAP deployments on AWS, Azure or GCP- Expertise in RBAC, SAML, OAuth2 and SAP SSO integrations- Experience with SAP monitoring, logging and security event management, and their integration with SIEM and SOC platforms- The ability to work independently in a fast-moving transformation environment, with a strong sense of accountability for Group security outcomesNICE TO HAVE- Knowledge of, or hands-on experience with, SAP-focused security platforms such as Onapsis or SecurityBridge- CISSP; SAP Certified Technology Associate – System Security Architect; TOGAF; SABSA; CISA or CISM- Previous work in the Middle East, ideally in retail or consumer businessesCONTRACT- Three-year full-time contract through Dreamcast Interactive, starting as soon as possible- Based in Dubai at the client's head office, with hybrid flexibility agreed with the client- Open only to candidates already based in the UAE- Competitive monthly rate, benchmarked to the profilePrefer email? hello@dreamcastinteractive.com with the subject "Lead SAP Security Architect – Your Name".