Job Search and Career Advice Platform

Aktiviere Job-Benachrichtigungen per E-Mail!

Senior Product Security Engineer (f/m/d)

SAP

Deutschland

Hybrid

EUR 80.000 - 120.000

Vollzeit

Heute
Sei unter den ersten Bewerbenden

Erstelle in nur wenigen Minuten einen maßgeschneiderten Lebenslauf

Überzeuge Recruiter und verdiene mehr Geld. Mehr erfahren

Zusammenfassung

A global enterprise software company in Germany is seeking an experienced Senior Product Security Engineer. This role focuses on application and infrastructure security within the SAP LeanIX enterprise architecture solution. Responsibilities include conducting security assessments, collaborating with cross-functional teams to resolve vulnerabilities, and guiding junior team members. The ideal candidate has a robust background in application security, DevSecOps practices, and a strong command of English. This position supports a hybrid work culture and offers growth opportunities.

Leistungen

Continuous learning opportunities
Flexible working models
Health and well-being benefits

Qualifikationen

  • Minimum 8 years of experience in application security.
  • Experience with cloud security testing (Azure, AWS, GCP).
  • Knowledge of security frameworks such as OWASP Top 10.

Aufgaben

  • Conduct secure requirements review and architecture review.
  • Collaborate with developers for resolving security findings.
  • Monitor security of product infrastructure continuously.

Kenntnisse

Application security
Secure code reviews
DevSecOps
Infrastructure security
Web vulnerability scanning tools
Threat modeling
Programming languages (JS/TypeScript, Kotlin, Java, Python)
Fluent English

Tools

Tenable
Qualys
Jobbeschreibung

We help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what's next. The work is challenging - but it matters. You'll find a place where you can be yourself, prioritize your wellbeing, and truly belong. What's in it for you? Constant learning, skill growth, great benefits, and a team that wants you to grow and succeed.

What you’ll do:

Summary: We are looking for an experienced Senior Product Security Engineer to work within the security team of SAP LeanIX. In this role, you shall be closely working with Product and Engineering organization and reporting to Director of Information Security.

The Role:

As a Senior Product Security Engineer, you shall be responsible for application and infrastructure security of the SAP LeanIX enterprise architecture solution. You could be based in Bonn, Walldorf, Berlin, Dresden or Munich.

Your key tasks shall include:
  • Conducting secure requirements review, architecture and design review, threat modeling, secure code review, penetration testing, incident response etc.
  • Reviewing security scan findings to find patterns, and collaborating with relevant stakeholders such as developers for resolution
  • Performing analysis of complex vulnerability findings; collaborating across functional teams to develop and implement patches/solutions as required to resolve/mitigate the vulnerabilities
  • Providing consulting to cross functional teams such as developers and product managers with their security related questions
  • Supporting security audits; reviewing/auditing/ensuring compliance to secure development lifecycle checkpoints
  • Integrating secure development best practices and methodologies throughout the development and deployment processes for new or existing solutions
  • Collaborating across functional teams to implement solutions during incident response efforts
  • Monitoring security of product infrastructure on a continuous basis via automated configuration management tools that help ensure that components are updated and secured
  • Enhancing tools and processes by developing advanced/automated security checkpoints & solutions, and implementing new tools and techniques
  • Assisting leadership in developing and tracking program metrics
  • Contribute to extending and improving the security knowledge base in the organization
  • Proactively researching latest trends and emerging technologies in security and development, and recommending solution upgrades
  • Providing support and guidance to junior team members
What you bring:
  • Minimum 8 years of true industry experience with application security, secure code reviews, DevSecOps (SAST, SCA) and infrastructure security
  • Experience with common web application and network vulnerability scanning tools (e.g. Tenable, Qualys)
  • Experience with security frameworks such as OWASP Top 10, NIST, CIS, SANS CWE
  • Experience with testing of cloud security (e.g. for Azure, AWS, GCP) including penetration testing, posture management, etc.
  • Experience with security testing of AI products
  • Experience in performing / leading threat modeling sessions
  • Knowledge of programming languages such as JS/TypeScript, Kotlin, Java, Python
  • Relevant Security Certifications are a plus e.g. CREST CRT, CREST CPSA, OSCP, OSWE, CEH, CHFI, etc.
  • Fluent in spoken and written English
Meet your team:

The Information Security team is responsible for managing the security of SAP LeanIX enterprise architecture solution in coordination with Product and Engineering organization as well as SAP's central security team.

Bring out your best

SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.

We win with inclusion

SAP's culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better world.

SAP is committed to the values of Equal Employment Opportunity and provides accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e‑mail with your request to Recruiting Operations Team: Careers@sap.com.

For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.

AI Usage in the Recruitment Process

For information on the responsible use of AI in our recruitment process, please refer to our Guidelines for Ethical Usage of AI in the Recruiting Process. Please note that any violation of these guidelines may result in disqualification from the hiring process.

Requisition ID: 443114 | Work Area: Solution and Product Management | Expected Travel: 0 - 10% | Career Status: Professional | Employment Type: Regular Full Time | Additional Locations: #LI-Hybrid

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.