REWE digital | Germany | 51xxx Köln | Permanent position | Full time / Home office | Published since: 09.04.2026 on stepstone.de
SAP IT Process Owner - Access Management (m/f/d)
Location: 51149 Cologne | Contract type: Full time, unlimited | Job ID: 951419
Welcome to the Home of IT
REWE digital is the home for everyone who lives technology. As a partner in Tech, we develop solutions for the entire REWE Group and shape the digital future of trading. In a strong network of SAP experts, you work on central processes that significantly influence security, compliance and efficiency in the Group.
For our Group-wide SAP Access Management search ...
* After clicking the Read more button, the original advert will open on our partner's website, where you can see the details of this vacancy and contact information. If you need a translation of this text, after returning to our website it will be prepared and you can read it by clicking the Show full translation button.
Your tasks • Your profile • What we offer
Location: 51149 Cologne | Contract type: Full time, unlimited | Job ID: 951419
Welcome to the Home of IT
REWE digital is the home for everyone who lives technology. As a partner in Tech, we develop solutions for the entire REWE Group and shape the digital future of trading. In a strong network of SAP experts, you work on central processes that significantly influence security, compliance and efficiency in the Group.
For our Group-wide SAP Access Management, we are looking for a:n SAP IT Process Owner – Access Management (m/w/d) at the next time. In this role, you are responsible for the end-to-end design, control and continuous improvement of the SAP access management process across all SAP systems. You translate overriding IT process specifications into SAP-specific workflows, roles, activities and tool implementations and make sure that a uniform, auditable process is created – without special routes.
What you do with us
You take over the end-to-end responsibility for the Group-wide SAP Access Management Process (including Joiner/Mover/Leaver, Rolling Processes, Emergency Access) and continuously develop it. You define, optimize and document the SAP-specific process design including activities, process roles, interfaces, tool selection and the content of the corresponding process policy – coordinated with higher-level IT process specifications (“no Lex SAP”). You create, care and publish binding process artifacts (e.g. process policy, process manual, process map, RACI matrix as well as training/communication documents) and ensure their effectiveness in the organization. You control guidelines, standards, controls, and KPIs for compliance, security and efficiency, and you are responsible for regular reporting on process performance incl. Escalation in non-compliance. You identify process risks (e.g. SoD/Compliance), defines and controls countermeasures and is responsible for the sustainable elimination of systemic incompliance (e.g. audit-findings) – incl. Support for the effectiveness check of controls under the IT ICS. You design role and authorization models for ECC, S/4HANA, Fiori and other SAP components and ensure consistent, auditable authorization design. You analyze, evaluate and approve access requests, critical permissions and exceptions/emergency accesses taking into account risks and compliance requirements. You coordinate and control the IAM and GRC systems used (e.g. SAP GRC Access Control) as well as process-relevant workflows/applications and accompany rollout and further development. You agree process design and changes with relevant stakeholders (including SAP Basis, Security/InfoSec, HR, Compliance, Auditor:innen, Platform/Product Teams, Fachbereich und SGE-Vertretungen) and ensure transparent cooperation. You accompany internal and external audits, provide proof, process Findings and manage sustainable action implementations. You support specialist areas in the formulation of role requirements and discuss risks, compliance and authorization design.
What we do
First of all, your personality: sense of responsibility, strength of communication and the ability to make clear decisions in complex structures. Multiannual experience in SAP Access Management or process responsibility in the SAP environment. Funded understanding of SAP permission concepts and role/rightening design in ECC, S/4HANA and Fiori. Very good understanding of audit, SoD, compliance and internal control requirements as well as experience in handling Findings and their sustainable elimination. Experience with IAM or GRC solutions (e.g. SAP GRC Access Control, SAP IDM or comparable tools). Secure handling of IT process frameworks (e.g. ITIL/COBIT) and ability to translate superior requirements into SAP-specific workflows. Methodological strength in process modeling, structured documentation and moderation/stakeholder management; ideally change management competence (training, adoption, escalation). structured, solution-oriented and strong working methods; You can prepare complex requirements in a comprehensible way. Very good knowledge of German and English; you can move between technical experts:insides, disciplines and governance functions. Ideally experience from regulated environments (e.g. ISO 27001, KRITIS, Finance).
Benefits
Your life-work integration through flexible working hours, mobile work, 30 days vacation + regional customs days, off-time models (sabbatical, nursing time etc.) and farm kindergarten. More time for you – use the possibility of up to two additional weeks of leisure per year; individually planable, in consultation with your team flexibly redeemable. We're investing in your future. With your annual training budget of about €2,000 you can learn about your individual skills development. So stay curious and collect on our own learning platform, the 'IT Learning Hub', at specialist conferences, in specialist books or in one of many free workshops from our Learning Canvas new input for you and us all. Updates for you at in-house workshops and events, such as the Hackathon and Tech Talks as well as weekly stand-ups, regular Tech All-Hands and Open Door formats. Your design playroom in co-determining your hardware (MacBooks, ThinkPads) and operating system (MacOS, Linux, Windows) - enjoy a modern IT equipment as well as a broad and innovative tech stack. Your impact because you develop applications and services for millions of people - with over 1 billion records daily, over 6 million mobile phones, 32,000 cash registers or in 7,300 markets. Your relaxed work path with the discounted Germany ticket, a job bike and parking right outside the door. Our networks like DITO - different together, SHINE, f.ernetzt, WomEngineers @REWE digital as well as Women's Drive make us a colorful community and support you in your personal development. Benefits of a group for you, e.g. in the form of discounts at REWE, PENNY, toom Baumarkt and DERTOUR Group, a comprehensive healthcare service, a support for your pension in the form of asset-effective services and REWE Pensionskasse, special services such as holiday and Christmas money, etc.
For more information, see rewe-digital.com.
We look forward to your online application with your availability and salary presentation. We cannot send back application documents in paper form.
You have questions about this position (Job ID: 951419)? Then register with our application hotline at 0221 149-7110.
We stress that all people - regardless of gender/sex identity, ethnic origin and nationality, social origin, religion/worldview, physical and mental abilities, age as well as sexual orientation or other individual characteristics - are equally welcome.
Location
![]() | REWE digital | |
| 51149 Köln | ||
| Germany |
The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.
For more information read the original ad