Oracle HCM SaaS Authorization / Security Lead
Skal:CloudSecurityLead
QUALIFICATIONS & EXPERIENCE
Essential Requirements
- Minimum 10 years of hands-on experience in Oracle HCM (Fusion) Security and Authorization, with at least 2 full end-to-end implementation lifecycles in a lead capacity.
- Deep expertise in Oracle HCM SaaS security architecture, including RBAC, Abstract Roles, Job Roles, Duty Roles, Data Roles, and Oracle Security Console.
- Strong understanding of Oracle HCM modules including Core HR, Payroll, Talent Management, Absence Management, Workforce Management, and Recruiting.
- Proven experience defining and governing data security policies, including Person Security Profiles, Payroll Security Profiles, and Legislative Data Group (LDG) security.
- Demonstrated expertise in SoD conflict identification, management, and remediation within Oracle HCM.
- Experience managing and facilitating client workshops, requirement sessions, and design reviews.
- Proficiency in producing high-quality security documentation, including Security Design Documents, Role Catalogues, and Access Matrices.
- Experience supporting SIT, UAT, and post-go-live security activities including defect triage and access validation.
- Strong stakeholder management skills with the ability to engage effectively with business, IT, and audit functions.
- Experience managing and mentoring security team members in a consulting or project delivery environment.
Desirable / Advantageous
- Oracle Cloud HCM certification in Security or relevant functional modules.
- Experience with GRC tools integrated with Oracle HCM (e.g., Oracle Advanced Controls Cloud, Pathlock, or similar).
- Knowledge of SOX compliance requirements and IT General Controls (ITGCs) as they relate to Oracle HCM access.
- Exposure to Oracle Identity Governance (OIG) or other Identity & Access Management (IAM) platforms.
- Experience in large-scale public sector or regulated industry Oracle HCM implementations.
- Familiarity with Oracle Fusion Analytics Warehouse (FAW) and associated security considerations.