11 Aug
|
SAPUTO
|
Georgetown
At Saputo, we bring good to the table by making high-quality products, investing in our people, and supporting communities around the world . As a top 10 global dairy processor, we value contributions that matter and strive to foster an inclusive, growth-driven work environment. Saputo is seeking for a Security Architect – SAP & Non SAP Platforms who will be responsible for designing, governing, and continuously improving security architectures across SAP landscapes and non SAP enterprise applications.
This role ensures that security controls are embedded by design, aligned with business needs, regulatory requirements, and industry best practices, while supporting digital transformation initiatives such as SAP S/4HANA, cloud adoption, and system integrations.
Security
Architect is responsible for defining, designing, and governing enterprise Identity & Access Management architecture across on premises, cloud, and SaaS platforms. This role ensures that identity services enable the business securely, at scale, and in compliance with regulatory and audit requirements The architect acts as a trusted advisor to IT, business, and risk stakeholders, balancing security, usability, and operational efficiency.
Security
Architecture & Design Define and maintain end to end security architecture for SAP (ECC, S/4HANA, BTP, Fiori, GRC) and non SAP enterprise platforms (custom apps, SaaS, COTS). Lead IAM strategy aligned with Zero Trust, Identity First Security, and cloud adoption. Embed security by design principles into application development, integrations, and system landscapes.
Review solution designs and provide security architecture sign off. SAP Security Design robust SAP security models including roles, authorizations, and SoD controls. Define SAP user lifecycle, privilege access, and logging/monitoring standards.
Advise on SAP GRC, access controls, emergency access (Firefighter), and compliance configuration. Support SAP transformations (S/4HANA, cloud, RISE, hybrid landscapes). Non SAP & Enterprise Security Architect security controls for non SAP applications, APIs, middleware, and cloud services (IaaS, PaaS, SaaS).
Define standards for authentication, authorization, encryption, secrets management, and secure integrations.
Architect access governance controls including:
User Access Reviews (UAR), Segregation of Duties (SoD), Role Based / Attribute Based Access Control (RBAC / ABAC) Privileged Access Management (PAM) Design PAM architecture for administrative, service, and privileged user accounts. Enforce least privilege, session monitoring, credential vaulting, and just in time access. Integrate PAM controls across infrastructure, applications, and cloud platforms.
Design IAM controls for cloud platforms (Azure / AWS / GCP). SAP, ERP, SaaS platforms). Governance, Risk & Compliance Align application security architecture with enterprise security frameworks and policies.
Support regulatory and audit requirements (e.g., Perform threat modeling, security risk assessments, and control gap analysis. Define security standards, patterns, and reference architectures. Act as a security SME for projects, incidents, and design reviews.
Contribute to security roadmap planning and technology selection. Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience). ~8+ years of experience in application security, security architecture, or enterprise IT security. ~5+ years of hands on experience with SAP security architecture. ~5+ years in IAM architecture, design, or senior engineering roles. ~ Strong expertise in: SAP security (roles/authorizations, S/4HANA, Fiori, GRC), Identity & Access Management (IAM), Application security principles and SDLC, Cloud and hybrid architectures ~ Solid understanding of: Network, OS, and database security concepts, Secure integration patterns (REST, APIs, middleware), Logging, monitoring, and incident response integration, Deep expertise in IAM, including: Identity lifecycle management, Access governance, Federation & SSO, PAM ~ Ability to explain complex security concepts to technical and non technical audiences. ~ Strong architectural and analytical thinking ~ Ability to balance security, usability,
and automation ~ Group retirement plan with employer contribution Paid Parental Leave program Training and development programs Saputo Flex Program, flexible work setting (schedule/location/time off) according to department needs Salary offers will vary commensurate with experience, education, skills, and training. STATEMENT ON AI Artificial Intelligence tools may be used in screening applications.
Artificial
Intelligence is not used to assess or select applications. Whether your expertise lies in manufacturing, operations, supply chain management, sales, quality assurance, or in any other function, your role is integral to our success. You will make contributions that matter, all while working alongside colleagues who genuinely care about your success and who will roll up their sleeves to help.
The material contained herein is provided for informational purposes only. All open jobs offered by Saputo Inc. and all companies, corporations, partnerships, limited partnerships and other entities controlled by Saputo Inc. (collectively, “Saputo”) on Saputo's web site are subject to specific job skill requirements. The job skill requirements, qualifications, and preferred experience are determined by a Saputo subsidiary, office or department, and all positions are subject to local prevailing employment laws and restrictions.
This would include immigration laws pertaining to work authorization requirements and any other applicable government permissions or compliance. The materials on this site are provided without warranties of any kind, either expressed or implied, including but not limited to warranties regarding the accuracy or completeness of the information contained on this site or in any referenced links.
While
Saputo attempts to update this site on a timely basis, the information is effective only as of the time and date of posting. The information on this site is for information purposes only and is not intended to be relied upon with legal consequence. We support employment equity. Saputo strives to embed diversity and inclusion in its operations and invites candidates from all horizons to join its family. Saputo welcomes and encourages applications from people with disabilities.
📌 Security Architect - SAP & Enterprise Platforms, Identity & Access Management (Georgetown)
🏢 SAPUTO
📍 Georgetown