Senior Security Analyst (SAP GRC/IAM)


White Plains, US


The Senior Application Security Analyst is responsible for implementation and support of security roles and profiles in a diverse Enterprise Application environment. The role serves as an application and security subject matter expert in the design and build of application functionality and security authorization roles.


The successful candidate will have SAP Security experience, and have specific experience in SAP GRC and IAM to help integrate IAM tools into the enterprise SAP environment. 


The analyst also provides technical skills required for design, development and support for Identity Access Management (IAM) system (I like Saviynt) and other ERP applications like SAP within NYPA and responsible for installing upgrades and patches and analyze, design, code, and implement changes to enhance functionality or to accommodate business process changes within the various applications hosted on Prem and cloud. Also support cloud solution resources, SaaS, IaaS and PaaS, providing Architecting and designing large scale enterprise infrastructure and integration patterns for cloud environments.



  • Contribute to all technical aspects of application development and support including reports, interfaces, database design, patching, upgrades, and enhancements. 
  • Participate in SAP security design, development, implementation, audit and provisioning across various SAP environments through existing SAP and access management tools (IDAM). 
  • Perform Identity Access Management (IAM) platform support to include implementation, administration, monitoring and troubleshooting activities in IAM platform (ex. Saviynt) Provide subject matter expertise in implementation of system/role/user/process compliance controls using SAP Standard tools and documentation. 
  • Lead integration efforts between the Saviynt IGA platform and other platforms and services like Active directory, SAP, Azure, AWS etc. 
  • Provides technical expertise in implementation and production support of applications including SAP and other ERP systems which may involve diverse development platforms and software/hardware technologies. Participate in system-wide updates and installing upgrades/patches for various systems. 
  • Proactive in identifying, escalating, and addressing production issues within SLA deadlines, including root cause resolution follow-up while demonstrating problem-solving skills and excellent customer service. 
  • Collaborates with cross-functional team members within SAP BASIS, middleware, functional and infrastructure teams.

Knowledge, Skills and Abilities

  • Extensive understanding of SAP Security role/user access assignments and SAP software landscape.
  • Experience in software development tools such as Git, Eclipse, Azure DevOps, Visual Studio etc.
  • Experience developing and implementing cloud solutions on AWS/Azure platforms with knowledge in application containerization.
  • Experience in Identity and Access Management and knowledge of RBAC, Certification, custom workflows, Plugins, application integration and support Production.
  • Experience in user lifecycle management, auditing, access certification, SOD and implement leading Identity Governance (IGA- Saviynt) solution based on customer requirements. 
  • Experience in IAM systems (Saviynt) with in-house applications, third party applications and SaaS applications for provisioning, identity authentication, and developing connectors between IAM tools and system resources.
  • Good understanding and working experience on LDAP technologies, Active Directory (AD) including managing user security with group policies, security groups, distribution and support for problems relating to Active Directory.
  • Experience in IAM security fundamentals and technologies, user lifecycle management, provisioning and reconciliation, auditing, reporting and access certification, SOD, cloud security.
  • Experience in IAM to deploy, configure and implement its leading Identity Governance (IGA) solution based on customer requirements. Industry experience in development, customization, configuration, deployment of any Identity Management and Governance products (Saviynt - preferred).
  • Proficiency in one or more programming (Java, JavaScript, Python, .Net, C++, etc.) API’s for integrating applications, SQL or other database technologies
  • Experience with Kubernetes and Red Hat OpenShift is a plus
  • Experience developing and implementing cloud solutions on AWS/Azure/ M365 platforms.
  • Knowledge in report development (BI, Tableau) and data analysis is a plus.

Education, Experience and Certifications

  • Bachelor's degree in an IT related discipline preferred
  • 4 years of industry experience in application support, SAP Security, IAM systems, implementation and administration.
  • Able to travel for meetings and project coordination as required.
  • Ability to work weekends and evenings as required.

Physical Requirements

  • May be required to respond SAP Security, IDAM alerts and communicate during off hours.

New York Power Authority is committed to providing fair, competitive, and market-informed compensation. The target salary range for this position is: $104,910 - $157,370. Salary offered will be determined based the successful candidates’ relevant experience, knowledge, skills, and abilities.


The New York Power Authority and Canals Corporation believes that equity, diversity, and inclusion drive our success, and we encourage women, people of color, LGBTQIA+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply. As an equal opportunity employer, NYPA/Canals is committed to building inclusive, innovative work environments with employees who reflect communities across NY and enthusiastically serve them. We proudly celebrate diversity and do not discriminate based on race, religion, color, national origin, sex, sexual orientation, gender identity and/or expression, age, veteran status, disability status, pregnancy, marital status, genetic information, arrest record or criminal conviction history, or any other category protected by law.

We are happy to provide reasonable religious accommodations during the hiring process for those in need. If you have a disability or special need that requires a reasonable accommodation, please send a request to

New York is Powered by You

We are a team of over 1,900 energy technologists, IT specialists, business experts, hydro engineers, and other professionals leading the energy revolution. With state-of-the-art technology, advanced R&D, and a modernized infrastructure, we provide New Yorkers with low-cost, clean, reliable power — and we are well on the way to becoming the first fully digital utility in the country. At NYPA, you will be empowered to think big, do good, and transform the energy industry.

NYPA on Forbes "Best of" - again!

NYPA is ranked by Forbes as one of America's best midsize employers for 2022 for the fourth consecutive year! Browse today and apply.








Nearest Major Market: White Plains
Nearest Secondary Market: New York City

Job Segment: Cloud, SAP, Open Source, ERP, Database, Technology