Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Avantor

Principal SAP Security Architect – S/4HANA, Government Systems

Avantor

Principal Architect for Identity Governance and SAP Integration at Avantor. Leading identity governance strategy in highly regulated environments for U.S.

Posted 6/26/2026full-timeCalifornia • 🇺🇸 United StatesLeadWebsite

Tech Stack

Tools & technologies
ERP

About the role

Key responsibilities & impact
  • Serve as the architectural authority for SAP implementation and identity governance strategy
  • Design enterprise identity governance frameworks supporting regulated environments
  • Architect identity lifecycle processes including Joiner/Mover/Leaver automation
  • Define enterprise entitlement models and role governance structures
  • Design automated provisioning and de-provisioning workflows across SAP and integrated platforms
  • Architect access certification, attestation, and role review processes
  • Define identity governance controls supporting audit, compliance, and regulatory requirements
  • Engineer scalable identity governance models supporting growth of U.S. Government operations
  • Define API integration strategies, connectors, and identity synchronization mechanisms
  • Lead architecture and integration of Saviynt with SAP S/4HANA and other enterprise systems
  • Define entitlement mapping strategies between SAP roles and Saviynt access models
  • Architect birthright access, dynamic role assignment, and conditional access frameworks
  • Configure and optimize provisioning workflows, approval chains, and governance processes
  • Prevent over-provisioning and privilege escalation through identity-centric control design
  • Architect identity-driven access controls aligned to CMMC access control domains
  • Engineer segregation and governance of CUI within enterprise systems
  • Design controls ensuring ITAR-restricted data is accessible only to authorized U.S. persons
  • Define identity governance models supporting controlled manufacturing and export-sensitive processes
  • Implement auditable and traceable identity governance controls for regulated environments
  • Provide architectural oversight for SAP S/4HANA and Fiori security integration into Saviynt
  • Support SAP role governance, entitlement mapping, and Segregation of Duties alignment
  • Partner with SAP Security teams on: SAP GRC integration, Access certification alignment, Provisioning workflows, SoD remediation strategies
  • Support governance of sensitive and regulated data access within SAP and integrated platforms

Requirements

What you’ll need
  • Bachelor’s degree and/or equivalent experience, education and training
  • 12+ years of Identity & Access Management experience
  • 5+ years of enterprise IGA architecture experience
  • Deep expertise with Saviynt architecture, workflows, and governance models
  • Strong understanding of: Identity lifecycle management, Entitlement modeling, Automated provisioning, Access certification, Role governance
  • Experience integrating IDM Solutions with SAP S/4HANA and enterprise applications
  • Experience designing IAM controls in regulated environments subject to CMMC, CUI, ITAR, or SOX
  • Expert understanding of SAP authorization concepts and SAP role structures
  • Experience designing identity-driven access controls for enterprise ERP environments
  • Demonstrated ability to operate independently as enterprise architectural authority

Benefits

Comp & perks
  • Health insurance
  • 401(k) plan with company match
  • Employee stock purchase program
  • 11 paid holidays
  • 18 PTO days annually
  • Volunteer time off
  • 6 weeks of 100% paid parental leave

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
identity governanceidentity lifecycle managemententitlement modelingautomated provisioningaccess certificationrole governanceAPI integrationidentity synchronizationidentity-driven access controlsIAM controls
Soft Skills
architectural oversightindependent operationleadership
Certifications
Bachelor's degreeCMMCCUIITARSOX