< Back to search

Mondelēz International • United Kingdom

SAP Security Lead - Governance & Compliance

Employment type:  Full time

< Back to search

top 3 scores:
90%

Hours flexibility

85%

Autonomy

85%

Salary

Apply now

Job Description

Job Description

Are You Ready to Make It Happen at Mondelēz International?

Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours.

This position will lead application security governance compliance and risk management activities and will collaborate in the delivery of multiple small to large SAP security projects. The position requires in-depth knowledge of SAP security design and controls as well as previous exposure to vulnerability management and remediation activities. This position interfaces with stakeholders, including application owners, CTO, CISO, and Internal Controls organizations for negotiating project deliverables and other initiatives. This position is part of an experienced team of security professionals working on a broad number of initiatives across the globe.

How you will contribute

The Project Delivery Lead will be responsible for:

  • Security governance and compliance planning and execution.
  • Leading the application vulnerability remediation program.
  • Coordinating vulnerability management activities across various IT towers
  • Assisting with budget planning for new vulnerability remediation and controls projects.
  • Working with Internal Controls and Internal Audit on controls improvements and audit remediation.
  • Developing strong project team relationships for global projects.
  • Delivering security designs aligned with the controls of the organization.
  • Providing team expertise to ensure consistent application of a Global Security Template.
  • Adhering to Global standards and activities for Sarbanes-Oxley and Internal Audit requirements.
  • Identifying regional best practices and turning them into global strategies.

This position reports to the Director of Application Security.

What you will bring

A desire to drive your future and accelerate your career. You will bring experience and knowledge in :

  • SAP Security Role Design and Configuration Principles
  • Risk Management / Controls
  • Audit, Data / Privacy, Compliance and Controls
  • SAP – ECC, HANA, GRC
  • Service Delivery / Management
  • Client Relationship Management
  • Project Management Methodology
  • Design and Implementation Strategy

More about this role

What you need to know about this position:

Additional job duties:

Security Strategy Development

  • Provide leadership on strategy compliance requirements.
  • Work closely with Internal Controls, audit, and regional management to implement policies, standards, and guidelines across the regions (Global Security Template).

General and Project Management

  • Manages security projects implementation plans.
  • Delivers (within budget) upon project schedules and provides timely progress reporting to management.
  • Identifies and allocates security resources based on requirements.
  • Ensures that the service delivery resources are in place for post-project, environment stability activities.
  • Proactively seeks, identifies, and makes recommendations for areas of improvement.

Audit, Compliance, & Risk Management

  • Ensures adherence to SOX and other audit/control requirements in the Security space.
  • Consults with Internal Controls management on compliance related matters.
  • Provide leadership to Internal Controls on the usage of SAP GRC for risk management.

Security Project Implementation

  • Leads client discussions around SAP security design requirements.
  • Acts as a Solution Delivery Expert for issues and questions related to security design and implementation.
  • Delivers completion of the security role design, development, test, and implementation according to project schedules and in alignment with other teams’ deliverables.
  • Seeks to simplify and remove complexity in the security design process.

Team Leadership

  • Builds solid relationships with clients both internal and external, Internal Controls, functional and process, and other security teams.
  • Provides constructive feedback to team members.

Job specific requirements:

  • 8+ years of experience in an IS related environment.
  • SAP Security, SAP Basis and exposure to role management solutions are essential.
  • Sarbanes Oxley, General Computing Controls exposure are a good requirement.
  • Proven people skills: two-way communications skills (oral and written), ability to build and develop relationships.
  • Ability to manage multiple demands and priorities.
  • Ability to meet deadlines in a fast-paced and changing environment.
  • Plans and organized activities well.
  • Able to set objectives and goals, break down work into the process steps.
  • Can effectively cope with change, shifting gears comfortably as needed.

Travel requirements:

Occasional

Relocation Support Available?

No Relocation support available

Business Unit Summary

We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply!

Our people make all the difference in our succes

Mondelēz International is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation or preference, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Excited to grow your career?

We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply!

IF YOU REQUIRE SUPPORT TO COMPLETE YOUR APPLICATION OR DURING THE INTERVIEW PROCESS, PLEASE CONTACT THE RECRUITER

Job Type

Temporary (Fixed Term)

Software & Applications

Technology & Digital

Job Description

Are You Ready to Make It Happen at Mondelēz International?

Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours.

This position will lead application security governance compliance and risk management activities and will collaborate in the delivery of multiple small to large SAP security projects. The position requires in-depth knowledge of SAP security design and controls as well as previous exposure to vulnerability management and remediation activities. This position interfaces with stakeholders, including application owners, CTO, CISO, and Internal Controls organizations for negotiating project deliverables and other initiatives. This position is part of an experienced team of security professionals working on a broad number of initiatives across the globe.

How you will contribute

The Project Delivery Lead will be responsible for:

  • Security governance and compliance planning and execution.
  • Leading the application vulnerability remediation program.
  • Coordinating vulnerability management activities across various IT towers
  • Assisting with budget planning for new vulnerability remediation and controls projects.
  • Working with Internal Controls and Internal Audit on controls improvements and audit remediation.
  • Developing strong project team relationships for global projects.
  • Delivering security designs aligned with the controls of the organization.
  • Providing team expertise to ensure consistent application of a Global Security Template.
  • Adhering to Global standards and activities for Sarbanes-Oxley and Internal Audit requirements.
  • Identifying regional best practices and turning them into global strategies.

This position reports to the Director of Application Security.

What you will bring

A desire to drive your future and accelerate your career. You will bring experience and knowledge in :

  • SAP Security Role Design and Configuration Principles
  • Risk Management / Controls
  • Audit, Data / Privacy, Compliance and Controls
  • SAP – ECC, HANA, GRC
  • Service Delivery / Management
  • Client Relationship Management
  • Project Management Methodology
  • Design and Implementation Strategy

More about this role

What you need to know about this position:

Additional job duties:

Security Strategy Development

  • Provide leadership on strategy compliance requirements.
  • Work closely with Internal Controls, audit, and regional management to implement policies, standards, and guidelines across the regions (Global Security Template).

General and Project Management

  • Manages security projects implementation plans.
  • Delivers (within budget) upon project schedules and provides timely progress reporting to management.
  • Identifies and allocates security resources based on requirements.
  • Ensures that the service delivery resources are in place for post-project, environment stability activities.
  • Proactively seeks, identifies, and makes recommendations for areas of improvement.

Audit, Compliance, & Risk Management

  • Ensures adherence to SOX and other audit/control requirements in the Security space.
  • Consults with Internal Controls management on compliance related matters.
  • Provide leadership to Internal Controls on the usage of SAP GRC for risk management.

Security Project Implementation

  • Leads client discussions around SAP security design requirements.
  • Acts as a Solution Delivery Expert for issues and questions related to security design and implementation.
  • Delivers completion of the security role design, development, test, and implementation according to project schedules and in alignment with other teams’ deliverables.
  • Seeks to simplify and remove complexity in the security design process.

Team Leadership

  • Builds solid relationships with clients both internal and external, Internal Controls, functional and process, and other security teams.
  • Provides constructive feedback to team members.

Job specific requirements:

  • 8+ years of experience in an IS related environment.
  • SAP Security, SAP Basis and exposure to role management solutions are essential.
  • Sarbanes Oxley, General Computing Controls exposure are a good requirement.
  • Proven people skills: two-way communications skills (oral and written), ability to build and develop relationships.
  • Ability to manage multiple demands and priorities.
  • Ability to meet deadlines in a fast-paced and changing environment.
  • Plans and organized activities well.
  • Able to set objectives and goals, break down work into the process steps.
  • Can effectively cope with change, shifting gears comfortably as needed.

Travel requirements:

Occasional

Relocation Support Available?

No Relocation support available

Business Unit Summary

We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply!

Our people make all the difference in our succes

Mondelēz International is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation or preference, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law.

Excited to grow your career?

We value our talented employees, and whenever possible strive to help one of our associates grow professionally before recruiting new talent to our open positions. If you think the open position you see is right for you, we encourage you to apply!

IF YOU REQUIRE SUPPORT TO COMPLETE YOUR APPLICATION OR DURING THE INTERVIEW PROCESS, PLEASE CONTACT THE RECRUITER

Job Type

Temporary (Fixed Term)

Software & Applications

Technology & Digital

Company benefits

Open to part-time employees
Open to job sharing
Open to compressed hours
Health insurance
Mental health platform access
Enhanced maternity leave
Enhanced paternity leave
Adoption leave
Shared parental leave
Tax-free childcare
Cycle to work scheme
On-site gym
Faith rooms
Salary sacrifice
Life assurance
Annual pay rises
Annual bonus
Sabbaticals
Company car
Skilled worker visas
Volunteer days
Charity donation scheme
Lunch and learns
Enhanced pension match/contribution

We asked employees of Mondelēz International what it's like to work there, and this is what they told us.

Location flexibility
83%
Employees are very happy with their working location freedom
Hours flexibility
90%
Employees are very happy with the flexibility in the hours they work
Benefits
76%
Employees are largely happy with the benefits their company offers
Work-life balance
81%
Employees feel that they can find the perfect balance of life and work
Role modelling
78%
Employees feel that most people work flexibly
Autonomy
85%
Employees feel they have complete autonomy over getting their work done

Additional employee ratings
(these do not contribute to the FlexScore®)

Diversity
73%
Employees feel that the diversity is good and there are continued efforts to improve it
Inclusion
76%
Employees feel that the culture supports equity and inclusivity well
Culture
76%
Employees enjoy the working environment
Mission
77%
Employees feel quite excited about the company mission
Salary
85%
Employees are very happy with their salaries and feel that it is well above the market average

Working at Mondelēz International

Company employees

4500

Gender diversity (male:female)

55:45

Currently Hiring Countries

Italy

Slovakia

United Kingdom

United States

Office Locations

Awards & Achievements

Most flexible companies

Most flexible companies

Flexa100 2024
Consumer Goods

Consumer Goods

Industry awards 2023