Oracle Cloud Security / Access Controls Consultant
The Role:
We are seeking an experienced Oracle Cloud Security Consultant with deep hands-on expertise in Access Controls and Compliance within Oracle ERP Cloud. The ideal candidate brings a strong audit mindset, a thorough understanding of role design and Segregation of Duties (SoD), and the ability to work cross-functionally with finance and IT teams in a fast-paced consulting environment.
This is a remote, contract-based engagement requiring availability during Eastern Standard Time (EST) business hours.
Responsibilities:
Manage user access, roles, and provisioning using Role-Based Access Control (RBAC) in Oracle ERP Cloud
Implement and maintain Oracle Risk Management Cloud (RMC) – with focus on Access Controls and Segregation of Duties (SoD)
Perform SoD analysis, conflict identification and resolution, and periodic access reviews (UAR – User Access Reviews)
Support internal and external audit processes, including SOX compliance, and maintain security control documentation
Partner with functional teams (Finance, Operations, IT) to align role structures with business processes and least-privilege principles
Identify and remediate access control gaps and policy violations across Oracle Cloud modules
Prepare audit-ready reports and evidence packages for compliance reviews
Requirements:
Experience
5+ years of hands-on experience in Oracle Cloud Security within Oracle ERP Cloud environments
Proven track record in role design, access provisioning, and RBAC governance
Direct experience working with Oracle Risk Management Cloud (RMC) – Access Controls and SoD modules
Experience supporting audit and compliance engagements, including SOX audits
Technical Skills
Oracle ERP Cloud Security: user management, role hierarchy, data security policies
Oracle RMC: Access Controls, SoD rule configuration, conflict resolution, and control monitoring
SoD analysis methodologies and access review (UAR) execution
Understanding of Oracle Finance modules: General Ledger (GL), Accounts Payable (AP), Accounts Receivable (AR), and related areas
Familiarity with audit evidence preparation and security control documentation
Soft Skills & Working Style
Professional working proficiency in English – required for client calls, documentation, and reporting
Available and responsive during EST business hours
Strong analytical thinking and attention to detail in compliance-sensitive environments
Ability to communicate technical findings clearly to non-technical stakeholders
Autonomous, organized, and delivery-focused in remote project settings
Nice to Have
Oracle Cloud certifications (Security, ERP, or Risk Management)
Experience with Oracle Identity Governance (OIG) or similar IAM platforms
Background in Big 4 or consulting firms supporting Oracle ERP implementations
Exposure to other ERP security frameworks (SAP GRC, etc.)
- Category
- Technology
- Locations
- Remote - Mexico
- Remote status
- Fully Remote