Project description
Take ownership of an already-built, production-grade HANA landscape — keep it secure, stable, and performant — and be the definitive escalation authority for any HANA DB security issue.
Responsibilities
- Provide support to and enablement of the comprehensive architecture, functionality, economics, and architecture compliance of SAP HANA Cloud solution for our client's technology area.
- Define solutions together with the architects at both an enterprise and project level. You will collaborate with various other members of the IT organization / ARTs.
- You implement SAP HANA Cloud on BTP.
- Perform strategic monitoring on SAP HANA Cloud, and deliver SME support towards the growing BTP OPS team.
- Manage and drive quality of the SAP HANA Cloud set-up.
- Work according to (an develop) best practices and architectural principles defined by the SAP BTP Team.
- Share your skills / knowledge and help to improve the best practices and enable colleagues.
- Dare to challenge, collaborate intensively and care for your work and your colleagues.
SKILLS
Must have
- What We Need from You
- 6-10+ years HANA DB administration — hands-on, production-grade, operational depth
- Proven track record inheriting and operating an existing HANA environment — not just building one
- Deep HANA security operations expertise: user/role/privilege management, audit policies, SAML/JWT/X.509 authentication, access certification
- Advanced HANA SQL: provisioning scripts, privilege review queries, audit log interrogation via SYS.USERS, SYS.ROLES, SYS.GRANTED_PRIVILEGES, M_AUDIT_LOG
- Independent SAP OSS escalation experience — you raise, manage, and close incidents without handholding
- Audit-ready communication — able to present HANA access evidence directly to auditors and compliance stakeholders
- Familiarity with SAP BTP / Cloud Foundry HANA Cloud operational management
SAP HANA Cloud Security
- Manage users, roles, role collections, and database roles (BTP)
- Configure spaces & HDI container access (must)
- Configure cloud application authorizations (must)
- Integrate with SAP IAS & IPS (must)
SAP HANA DB Security
- Create and maintain database users
- Manage catalog and repository roles
- Assign and manage system privileges (USER ADMIN, ROLE ADMIN)
- Assign and manage object privileges (SELECT, INSERT, UPDATE)
- Assign and manage analytic privileges (row-level security)
- Handle schema-level access & package authorization (must)
- Experience on writing scripts (must)
Nice to have
• CyberArk PAM, SAP GRC Access Control
• HANA certifications, Datasphere/SAC exposure
• Motivated and enthusiastic team player;
• Strong communication and presentation skills