The Cigna Group · 1 day ago
Information Protection Senior Advisor
The Cigna Group is dedicated to improving health and vitality, and they are seeking an Information Protection Senior Advisor to drive secure and compliant SAP environments. This role involves leading SAP security governance, collaborating with stakeholders to mitigate risks, and ensuring compliance with audit requirements.
CommercialHealth CareHospitalInsuranceMedical
Responsibilities
Lead end‑to‑end SAP security governance across the IT landscape, ensuring systems, instances, and applications are properly secured
Collaborate with business stakeholders to identify, monitor, and mitigate Segregation of Duties (SoD) conflicts, ensuring alignment with financial and operational controls
Partner with the SAP GRC team to update and optimize the GRC ruleset for accurate risk detection and effective remediation
Evaluate SAP security notes and work with Basis and functional teams to assess risk, urgency, and implementation timing
Serve as the primary lead for internal SAP Security Audits supporting Sarbanes‑Oxley (SOX) compliance
Support external, internal, and SOX audits with strong knowledge of GRC rulesets, security configuration, and access controls
Implement and maintain the User Access Review (UAR) process to ensure ongoing compliance and effective access governance
Collaborate with controllers to establish mitigation controls and review SoD monitoring processes
Identify gaps in business control processes and drive improvements to strengthen compliance posture
Oversee user administration processes for new applications and ensure smooth transition of responsibilities to support teams
Perform periodic reviews and redesign of SAP security roles to meet evolving business needs while maintaining audit integrity
Provide analytical support for SoD risks—financial, sensitive, and system‑level—using SAP GRC 12
Support configuration, maintenance, and operation of SAP GRC 12, ensuring continuous reliability and accuracy
Lead and support SAP security patch reviews and related audit readiness activities
Deliver training and guidance to process teams, project teams, development teams, and security stakeholders on SAP security policies, GRC functionality, and best practices
Act as the key liaison with project contractors to ensure deliverables meet Statement of Work requirements
Troubleshoot issues, perform root‑cause analysis, and implement effective long‑term solutions
Continuously evaluate processes and recommend improvements to enhance security, efficiency, and business alignment
Qualification
Required
10+ years of overall professional experience
5+ years of SAP GRC (10.1+) experience
6+ years of SAP security experience, including 1–2 SAP implementations
Hands‑on experience with S/4HANA security, Fiori, and SAP Security Concepts
Strong analytical, organizational, and problem‑solving skills
Excellent communication, relationship‑building, negotiation, and conflict‑resolution abilities
Experience using JIRA
Ability to work independently, manage multiple priorities, and thrive in a fast‑paced environment
Understanding of object‑oriented concepts and design principles
Bachelor's degree preferred
Preferred
CISSP or CCSP certification
Experience leading enterprise‑wide GRC security initiatives
Exposure to large‑scale, cross‑functional project environments
Company
The Cigna Group
The Cigna Group is a healthcare firm that focuses on providing hospital services and innovative solutions for better health.
Funding
Current Stage
Late StageRecent News
2026-01-25
2026-01-06
Company data provided by crunchbase