
Chalhoub Group
Lead SAP Security Architect ā S/4HANA & Cloud
- Permanent
- Dubai, United Arab Emirates
- Experience 10 - 15 yrs
- Urgent
Job expiry date: 02/01/2026
Job overview
Date posted
18/11/2025
Location
Dubai, United Arab Emirates
Salary
AED 40,000 - 50,000 per month
Compensation
Comprehensive package
Experience
10 - 15 yrs
Seniority
Senior & Lead
Qualification
Bachelors degree
Expiration date
02/01/2026
Job description
The role is responsible for embedding security-by-design across Chalhoub Groupās SAP S/4HANA ERP Transformation Program, ensuring ERP security architecture, controls, and processes align with Group Information Security principles and integrate with Group Security Operations for continuous monitoring, incident management, and risk mitigation. Key duties include developing and maintaining ERP-specific security architecture standards and guidelines, establishing security architecture blueprints for SAP applications and cloud services across S/4HANA, BTP, Integration Suite, and Azure, and overseeing secure configuration and hardening of SAP platforms including S/4HANA, Fiori, CAR, EWM, Ariba, IAG, Solution Manager, BTP, and Integration Suite. The position conducts Security Impact Assessments, Threat Modeling, and Risk Assessments across SAP SuccessFactors, SAP Ariba, SAP S/4HANA, and other ERP modules, defines and oversees application, database, network, IAM, and secure configuration controls, and ensures integration with Group Security Operations for threat detection, logging, monitoring, SIEM integration, and incident response readiness. Responsibilities include embedding secure development and change practices into programme delivery, evaluating third-party add-ons for compliance with Group security requirements, acting as the programmeās primary security authority, partnering with IAM, Infrastructure, Basis, Application, and Cloud Security teams, translating regulatory and compliance requirements such as SOX and GDPR into ERP controls, managing SAP Security Notes cadence and hardening baselines, supporting audits and compliance assessments, ensuring alignment with governance forums, and delivering security awareness and secure usage training for ERP stakeholders.
Required skills
Key responsibilities
- Develop and maintain ERP-specific security architecture, standards, and guidelines aligned with Group Information Security policies
- Establish security architecture blueprints for SAP applications and cloud services across S/4HANA, BTP, Integration Suite, and Azure
- Define and oversee secure configuration and hardening of SAP platforms including S/4HANA, Fiori, CAR, EWM, Ariba, IAG, Solution Manager, BTP, and Integration Suite
- Conduct Security Impact Assessments, Threat Modeling, and Risk Assessments across all SAP modules
- Define and oversee security controls for application, database, network, IAM, and secure configurations
- Integrate ERP security design with Group Security Operations for continuous monitoring and incident response
- Oversee SAP logging, monitoring, and SIEM integration
- Embed secure development and change practices covering custom developments, transports, and vulnerability management
- Evaluate and advise on third-party add-ons and integrations for SAP ecosystem alignment with security requirements
- Act as the programmeās security authority in technical governance forums
- Translate regulatory requirements such as SOX and GDPR into ERP security controls
- Collaborate with IAM to align role design and Segregation of Duties policies with platform capabilities
- Operate SAP Security Notes cadence and platform hardening baselines, track remediation, and report posture
- Collaborate with auditors and support security audits, assessments, and compliance activities
- Serve as conduit between ERP Transformation Program, Group Information Security, and governance forums
- Develop and deliver security awareness and secure usage training for ERP program stakeholders
Experience & skills
- Possess 10+ years of Information Security experience, including 5+ years leading security architecture or design within large-scale ERP transformation programs
- Demonstrate deep expertise across SAP security landscape including S/4HANA, Fiori, IAG, BTP, SuccessFactors, Ariba, SAC, CAR, and EWM
- Show proven experience applying security-by-design methodologies in complex ERP transformations
- Exhibit strong understanding of ISO 27001, GDPR, SOX and application of regulatory frameworks in ERP security
- Be familiar with cloud security architectures across AWS, Azure, and GCP
- Demonstrate working knowledge of RBAC, SAML, OAuth 2.0, and SAP SSO integrations
- Show experience with SAP logging, monitoring, and security event management tools and SIEM/SOC integration
- Ability to work independently with strong accountability in fast-paced environments
- Hold professional certifications such as CISSP, CISA, CISM, TOGAF, SABSA, or SAP Certified Technology Associate ā System Security Architect