This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a SAP GRC Compliance Analyst to play a pivotal role in ensuring robust governance and compliance across Vodafone’s global SAP user access landscape. This role sits within the Finance Operations Controls and Risk Management function and is central to safeguarding access to critical business systems for a user base exceeding 100,000 users across more than 20 countries. The role focuses on access risk management, SAP GRC rule set governance, SOX compliance, and continuous improvement of access controls, working closely with global stakeholders across technology, finance, audit, and business teams.
Job Responsibility
Perform governance reviews of SAP role designs prior to finalisation and review user access requests before access is assigned
Manage and maintain the SAP GRC access risk rule set, ensuring accuracy, completeness, and alignment with the Vodafone Core Business Model
Review access risk simulations and determine appropriate actions, approvals, and mitigations for identified risks
Define, document, and assign mitigation controls for access risks within SAP GRC Access Controls
Monitor access violations, define remediation plans, and track progress to closure
Manage fire fighter master data and ensure completeness and effectiveness of fire fighter controls
Ensure all user access processes comply with Global IT and SOX control requirements and are delivered within agreed SLAs
Conduct periodic reviews of the risk set with process experts to ensure relevance and completeness
Approve updates and configuration changes to the SAP GRC rule set
Define requirements for GRC solutions and manage the delivery of enhancements and improvement initiatives
Develop, maintain, and update access compliance policies, procedures, and the compliance roadmap
Requirements
An individual with a detailed understanding of SAP authorisations and access control concepts
Experienced in maintaining SAP GRC rule sets at transaction and permission level
Skilled in defining and managing mitigation controls within SAP GRC Access Controls
Able to translate access risks into SAP transaction and authorisation settings
Comfortable working in a global, multi‑stakeholder environment and under time‑critical conditions
Highly analytical, well organised, and detail focused, with a strong governance mindset
A clear and confident communicator with strong written and verbal communication skills
Ideally certified in SAP GRC or possessing equivalent hands‑on expertise
What we offer
Exposure to one of the largest global SAP landscapes, supporting business‑critical systems across multiple countries
Opportunities to work with global process experts, auditors, and senior stakeholders
The chance to influence and continuously improve access governance and compliance practices at scale
A role that directly contributes to risk reduction, trust, and integrity within Vodafone’s core operations