Job Closed
This listing is no longer active.
Hy-Vee, Inc. is an employee-owned grocery store chain with more than 285 retail stores and over 80,000 employees. With sales of more than $13 billion, Hy-Vee ranks among the top 25 supermarket chains and the top 50 private companies in the United States. Its slogan, “A Helpful Smile in Every Aisle,” expresses the foundation of the company’s operating philosophy. Visit itcareers@hy-vee.com to apply or https://innovate.hy-vee.com to learn about all the exciting things our IT organization does! Are you ready to smile, apply today. Employment is contingent upon the successful completion of a pre-employment drug screen.
Associate SAP Security Administrator
Location
United States
Posted
34 days ago
Salary
0
Seniority
Mid Level
Job Description
Associate SAP Security Administrator
Hy-Vee, Inc.
Role Description Provide knowledge of SAP and the administration needs to accommodate technical planning, installation, and user access management. Contributes to moderately complex aspects of a project. Work is generally independent and collaborative in nature. Primary Responsibilities - Participate in small to large SAP implementations. - Contribute to maintenance activities related to security and access management. - Generate access review documents to support internal/external audits. - Ensure compliance to security policies and procedures. - Perform SAP user administration and role development tasks. - Provide security direction to business units and engineers. - Provide security support for system upgrades and testing cycles. - Create and contribute to technical documentation and diagrams. Secondary Responsibilities - Participate in off-hours on-call rotation. - May provide second level troubleshooting support and assistance to other admins and engineers. - Attends and is prepared to participate in department and company meetings. - Performs other job related duties and special projects as required. Skills and Abilities - Demonstrable technical ability to execute system security tasks for SAP and implement strategies for future solutions. - Introductory knowledge of SAP authorization concepts and transactions like SU01, SU10, SU24, SUIM. - Maintain and support a strong SAP security environment. - Provide security reporting on users, roles and critical object access. - Support security aspects of system builds, upgrades, patching, client copies, refresh, etc. - Introductory experience with the SAP GRC Access Control, segregation of duties, and audit processes. - Introductory experience with implementing and managing core GRC modules ARA, ARM, EAM, BRM. - Define risks, conduct risk analysis and monitor for continuous improvements and compliance. - Knowledge of implementing SAP Fiori catalog/groups and their relationship with roles. - Excellent communication skills and ability to work directly with business on gathering requirements, designing solutions and troubleshooting issues. - Building and maintaining up-to-date knowledge about company and industry trends and strategy, and advising customers on approaches to optimize business success. - Change control procedures. - Adherence to regulatory requirements. - Writing technical documentation. - Debugging, troubleshooting, and performing root cause analysis. - Organization skills with the ability to effectively meet deadlines. Minimum Education and Experience - Associates Degree or higher plus 0-2 years in information technology; or related experience. Worker Characteristics - Commitment to the Hy-Vee Mission and a willingness to promote the values of the company. - Excellent verbal and written communication skills. - Excellent interpersonal skills; ability to relate to and interact with other people in a friendly, professional manner. - Ability to identify problems, develop and execute solutions. - Self-starter; willingness to dive in without being instructed. Working Conditions - The duties of this position are performed in a general office setting. - There is the occasional need to travel. - There is frequent pressure to meet deadlines and handle multiple priorities. Equipment Used - Desktop and/or laptop computer. - Third party applications, printers and telephone. Physical Requirements - Visual requirements include: ability to see detail at near range with or without correction. - Must be physically able to perform sedentary work: occasionally lifting or carrying objects of no more than 10 pounds, and occasionally standing or walking, reaching, handling, grasping, feeling, talking, hearing and repetitive motions. Confidentiality - Has access to confidential information including payroll, inventory costs, sales, accounts payable and receivable, pharmacy data, e-mail messages, and all data related to operations. Financial Responsibility - Responsible for company assets including maintenance of software solutions. No authority to make purchases or commitments. Contacts - Frequent contact with office personnel in other departments related to the position as well as occasional contact with users and customers. Company Description Hy-Vee, Inc. is an employee-owned grocery store chain with more than 285 retail stores and over 80,000 employees. With sales of more than $13 billion, Hy-Vee ranks among the top 25 supermarket chains and the top 50 private companies in the United States. Its slogan, “A Helpful Smile in Every Aisle,” expresses the foundation of the company’s operating philosophy. Visit itcareers@hy-vee.com to apply or https://innovate.hy-vee.com to learn about all the exciting things our IT organization does! Are you ready to smile, apply today. Employment is contingent upon the successful completion of a pre-employment drug screen.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Lead security operations initiatives focused on securing modern software development pipelines, CI/CD platforms, and cloud-native DevOps environments. • Partner with engineering and DevOps teams to embed security controls into the Software Development Life Cycle (SDLC) using Dev/SecOps best practices. • Design, implement, and monitor security controls for source code repositories, build systems, artifact management platforms, and deployment pipelines. • Conduct threat modeling, risk assessments, application pen testing, and security reviews for internally developed applications, APIs, and automation platforms. • Develop and maintain detection and response capabilities for software supply chain threats, credential misuse, pipeline compromise, and cloud workload attacks. • Manage vulnerability management processes for applications, containers, infrastructure-as-code, open-source dependencies, and CI/CD tooling. • Implement automated security scanning tools including SAST, DAST, SCA, IaC scanning, and container security solutions. • Monitor security events across cloud platforms, developer tooling, SaaS environments, and production systems using SIEM/XDR technologies. • Investigate and respond to security incidents involving applications, DevOps tooling, cloud environments, and identity platforms. • Establish security standards for AI/ML systems including model governance, secure API usage, data protection, and responsible AI controls. • Assess and mitigate emerging AI-related risks such as prompt injection, model abuse, data leakage, shadow AI usage, and unauthorized automation. • Evaluate, implement, and secure enterprise AI tools to improve SecOps efficiency, threat detection, alert triage, and incident response workflows. • Build automation scripts and workflows to streamline repetitive security operations tasks and improve response times. • Collaborate with developers to remediate security findings quickly while balancing operational efficiency and release velocity. • Create dashboards, metrics, and reporting for security posture across DevOps pipelines, application environments, and AI platforms. • Stay current on evolving threats related to software supply chain security, cloud platforms, DevOps ecosystems, and artificial intelligence technologies. • Other duties as assigned.
Senior Software Engineer – OpenShift Infrastructure, Security Compliance
Red HatThe leading provider of enterprise open source solutions.
• Develop tooling to generate and automate regulatory benchmark guidance • AI driven tooling (MCP servers/toolsets) that integrates with IDEs (Claude Code/Cursor) • Understanding Compliance Operator resources, like CustomRules and Profiles • Implementing checks using multiple scanning technologies, like OpenSCAP and CEL expressions • Developing and maintaining operators that improve OpenShift security posture • Contribute to industry benchmark regulatory bodies where applicable (CIS)
• Designing and implementing controls that support security invariants and enforce our security principles while providing a surprisingly great user experience • Providing a migration path for newly acquired companies onto the Stripe Secure Platform, embedding with their engineers and biasing for action • CI tooling for platform-related configuration: IAM roles, SCPs, and associated components • Guardrails and security controls for both commonly used and newer cloud technologies • Expanding our cloud identity infrastructure to provide paved paths for AI and agentic access • Automation tooling for continually driving down permissions and access across our cloud services
• You will be task to perform scripting, and automation works relating to Information Security. • You will conduct security assessments of new tools, applications, and systems. • You will process and manage requests for various security services such as URL Filtering, Privilege Account Management, DLP, Firewall Rule Review. • You will support or lead the design and deploy security infrastructure such as DLP, SWG, UBA, EDR, SIEM, MDM, NAC, etc. • You will support or lead security infrastructure projects and manage security infrastructure. • You will provide security consulting and influence adoption of security best practices. • You may, if needed, support activities of third-party penetration testing, vulnerabilities assessments and drive remediation activity. • You may, if needed, support incident response and threat containment. • You may support information security and data privacy compliance audits and associated activities.



