drjobs Penetration tester in SAP environment

Penetration tester in SAP environment

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Spring, TX - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Summary:

We are seeking an experienced SAP Penetration Tester to assess and improve the security posture of our SAP landscape. You will be responsible for conducting in-depth security assessments and penetration tests on SAP systems (e.g. SAP ERP S/4HANA SAP Fiori SAP NetWeaver) identifying vulnerabilities and working with technical teams to implement remediation plans.

Key Responsibilities:

Perform penetration testing and vulnerability assessments on SAP environments (ABAP JAVA stacks S/4HANA BW Fiori etc.).

Identify and exploit vulnerabilities within SAP modules configurations transports custom code and interfaces.

Develop threat models and simulate real-world attack scenarios targeting SAP systems.

Analyze SAP logs and traces for potential exploitation or suspicious activity.

Review system configurations authorizations and custom developments for security flaws.

Provide clear technical and business impact assessments of vulnerabilities and remediation strategies.

Collaborate with SAP Basis Development and InfoSec teams to remediate identified risks.

Stay current on SAP-specific vulnerabilities exploits and security trends.

Create and maintain detailed technical documentation and reports for both technical and executive audiences.

Required Skills & Qualifications:

Bachelors degree in Computer Science Cybersecurity Information Systems or related field.

3 years of experience in penetration testing or red teaming with a focus on SAP environments.

In-depth knowledge of SAP architecture and modules (ERP S/4HANA NetWeaver Fiori etc.).

Experience with SAP security tools (SAP Code Vulnerability Analyzer SAP Solution Manager SAP GRC).

Hands-on experience with penetration testing tools (e.g. Metasploit Burp Suite nmap custom scripts).

Familiarity with SAP-specific vulnerabilities (e.g. RECON ICMAD Ghost Transport Directory attacks).

Strong understanding of RFC BAPI SAP Gateway and common SAP protocols.

SAP Security certifications (e.g. SAP Certified Technology Associate - System Security Architect) are a plus.

OSCP OSCE GPEN or similar penetration testing certifications are highly desirable.

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.