Product Security (Senior) Engineer DevSecOps
Job Summary
We help the world run better
At SAP we keep it simple: you bring your best to us and well bring out the best in you. Were builders touching over 20 industries and 80% of global commerce and we need your unique talents to help shape whats next. The work is challenging but it matters. Youll find a place where you can be yourself prioritize your wellbeing and truly belong. Whats in it for you Constant learning skill growth great benefits and a team that wants you to grow and succeed.
As market leader in enterprise application software SAP helps companies of all sizes and industries innovate through simplification. From the back office to the boardroom warehouse to storefront on premise to cloud desktop to mobile device SAP empowers people and organizations to work together more efficiently and use business insight more effectively to stay ahead of the competition. SAP applications and services enable customers to operate profitably adapt continuously and grow sustainably.
Meet your team
HANA organization is a global organization dedicated to delivering data management solutions that address customers unique and competitive business requirements. Join a team that helps protect one of SAPs most strategic cloud platforms. Your work will directly contribute to the security compliance and reliability of services used by customers running business-critical workloads around the world.
What we do
Our services are designed and implemented using cutting-edge technologies especially Kubernetes and Containerization. They are running at a large scale in all major cloud provider infrastructures. With a strong focus on reusability across HANA & Analytics portfolio we are fulfilling our responsibility to provide an enterprise-ready unified data and semantics layer that ultimately enables our customers to build mission-critical scalable and reliable applications on top of our services.
What you will do
- Designing developing and operating scalable microservices that deliver critical security functionalities for SAP HANA Cloud following secure-by-design and DevSecOps principles
- Embedding security into CI/CD pipelines integrating automated security scanning vulnerability management policy enforcement and compliance check as first-class pipeline stages
- Enabling a trusted and secure environment for our customers by translating regulatory and internal security requirements into automated code-driven controls
- Designing and maintaining secure access control mechanisms including RBAC models and authentication/authorization flows as integral parts of the platforms security architecture
- Collaborating closely with cross-functional engineering teams to shift security left aligning security goals with development priorities from design through deployment
- Implementing and maintaining infrastructure-as-code and policy-as-code practices to ensure consistent auditable and repeatable security configurations
- Providing ongoing observability support and continuous improvement for deployed security services to ensure high availability performance and resilience
What you bring
We know that great candidates may not meet every qualification listed below. If youre passionate about cloud security and believe you can contribute to this role we encourage you to apply.
- Proven experience developing and operating microservices in cloud-native environments using DevSecOps practices
- Experience with CI/CD pipelines and security automation tooling (e.g. Azure DevOps Jenkins or equivalent)
- Deep understanding and hands-on experience with Kubernetes including security hardening (pod security policies network policies secrets management) and public cloud platforms (AWS Azure GCP)
- Experience with user access and identity management including RBAC design least privilege enforcement and secure authentication mechanisms (OAuth 2.0 OIDC SAML)
- Good understanding of encryption secrets management and key rotation strategies (e.g. HashiCorp Vault KMS)
- Solid scripting skills (e.g. Python) to automate security operations remediation workflows and compliance reporting
- Experience with log aggregation observability and visualization platforms (e.g. Grafana Lokietc) for security monitoring and compliance evidence
- A strong collaborative mindset with the ability to drive and embed secure practices across engineering teams
What we offer
- A unique opportunity to work with the SAP HANA Cloud technology stack and gain hands-on experience in the compliance domaindeveloping expertise in state-of-the-art cloud technologies and secure operations
- A comprehensive understanding of security and compliance requirements for cloud-native solutions
- The opportunity to drive cross-project initiatives and influence key architectural decisions in a dynamic collaborative and future-oriented environment
- Opportunities to lead cross-organizational initiatives and grow into technical leadership roles
- Continuous learning through mentoring training and hands-on experience with modern cloud technologies
#SAPHANAWorldCareers #k8s #UAM #Air-gapped Cloud #Compiance
#LI-AA5
Bring out your best
SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software SAP has evolved to become a market leader in end-to-end business application software and related services for database analytics intelligent technologies and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide we are purpose-driven and future-focused with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries people or platforms we help ensure every challenge gets the solution it deserves. At SAP you can bring out your best.
We win with inclusion
SAPs culture of inclusion focus on health and well-being and flexible working models help ensure that everyone regardless of background feels included and can run at their best. At SAP we believe we are made stronger by the unique capabilities and qualities that each person brings to our company and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better world.
SAP is committed to the values of Equal Employment Opportunity and provides accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application please send an e-mail with your request to Recruiting Operations Team:
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.
Qualified applicants will receive consideration for employment without regard to their age race religion national origin ethnicity gender (including pregnancy childbirth et al) sexual orientation gender identity or expression protected veteran status or disability in compliance with applicable federal state and local legal requirements.
Successful candidates might be required to undergo a background verification with an external vendor.
AI Usage in the Recruitment Process
For information on the responsible use of AI in our recruitment process please refer to our Guidelines for Ethical Usage of AI in the Recruiting Process.
Please note that any violation of these guidelines may result in disqualification from the hiring process.
Requisition ID: 451371 Work Area: Solution and Product Management Expected Travel: 0 - 10% Career Status: Professional Employment Type: Regular Full Time Additional Locations: #LI-Hybrid
Required Experience:
IC
About Company
SAP started in 1972 as a team of five colleagues with a desire to do something new. Together, they changed enterprise software and reinvented how business was done. Today, as a market leader in enterprise application software, we remain true to our roots. That’s why we engineer soluti ... View more