IAM Specialist

Sobeys
Sobeys

Stellarton, NS, Canada

Posted on Aug 27, 2026
We’re expanding our Cyber Security team as we embark on a five-year transformation to bring our Security capabilities to the next level. Watch our Director of Cyber Security, Angela Mathies, discuss our exciting work and why she chose Sobeys: https://vimeo.com/696132783/f544c1efaaYou are a builder, influencer, and change agentIn this exciting role, you will be working alongside a team of high-performing Cybersecurity professionals who are skilled and knowledgeable in all facets of Cybersecurity and SAP. The IAM Specialist (Role-Based Security) teammate is responsible for designing, implementing, and maintaining user access and security roles in SAP systems. This position will work closely with SAP functional and technical teams to ensure access controls meet business requirements while adhering to internal compliance policies and regulatory standards. Sobeys is full of exciting opportunities, and we are always looking for bright new talent to join our team! We currently have a full-time opportunity for a IAM Specialist. This role can be based out of one our main offices including: Stellarton, NS; Mississauga, ON, Calgary, AB. Experience Focus on SAP Security and GRC Technologies & Tools: SAP GRC Access Control (AC)SAP GRC Risk Management (RM)SAP GRC Audit ManagementSAP ECC, S/4 HANA, BW, SM, FIORI, and ILM #LI-Hybrid #LI-VJ1Soft Skills & Competencies: Analytical and detail-oriented with strong problem-solving skillsGood verbal and written communication for interaction with stakeholders, auditors, and cross-functional teamsAbility to work independently as well as part of a teamCapable of handling multiple priorities in a fast-paced environmentProfessional integrity, especially when dealing with sensitive data and access controls IAM Concepts & Domain Expertise: SAP GRC Modules: GRC Access Control (AC): Proficiency in managing user access and role management within SAP systems.GRC Risk Management (RM): Strong understanding of risk management methodologies and best practices within the SAP environment.GRC Audit Management: Hands-on experience with audit management tools, including audit planning, execution, and reporting. Segregation of Duties (SoD): Experience identifying and mitigating SoD conflicts and conducting risk analysis.Practical experience working with SoD rulesets and automated conflict remediation.Proficient in using tools such as SAP GRC AC for SoD analysis. Risk Management: Expertise in assessing and mitigating risks related to access control and system vulnerabilities.Experience implementing risk-based security controls across various SAP modules. SAP Security & Authorizations: Design, implement, and maintain security roles and authorizations across SAP systems (ECC, S/4HANA, etc.).Knowledge of SAP security concepts, including role-based access control (RBAC), user roles and authorization management.Familiarity with profile generation and SAP’s authorization concept.Strong understanding of SAP system configurations, including user profiles, authorization objects, and user groups.