Cyber Security Design Specialist- Cloud Security
Job Summary
We help the world run better
At SAP we keep it simple: you bring your best to us and well bring out the best in you. Were builders touching over 20 industries and 80% of global commerce and we need your unique talents to help shape whats next. The work is challenging but it matters. Youll find a place where you can be yourself prioritize your wellbeing and truly belong. Whats in it for you Constant learning skill growth great benefits and a team that wants you to grow and succeed.
What youll build
Service Design & Ownership
Define theWAF and DDoS security service model including scope service tiers and supported use cases
Establish standardDDoS protection levels and WAF baseline configurationsaligned with SAP security standards and customer requirements
Define clear service boundaries ownership and responsibilities between architecture operations incident response and platform teams
Act as the design authority for WAF and DDoS capabilities across hyperscalers (AWS Azure GCP AliCloud)
Operational Process Definition
Design and documentendtoend operational processes including:
Incident intake and triage
Zeroday and emergency WAF rule deployment
DDoS event escalation and customer communication
Exception handling and rule lifecycle management
DefineRACI models runbooks and playbooksfor the operations teams
Establish change management testing rollback and approval workflows for WAF and DDoS changes
Ensure processes are scalable auditable and aligned with compliance requirements
Standards Architecture & Guardrails
Definereference architectures and security patternsfor application exposure ingress and egress
Review and remediate design antipatterns (e.g. overly permissive allowlists unmanaged custom rules)
Set guardrails that enable rapid response while minimizing operational and customer risk
Drive consistency and parity across hyperscaler implementations
Enablement of Operations Teams
Enable Cloud Security Operations teams with:
Clear documentation and operational guidance
Preapproved rule templates and emergency procedures
Welldefined escalation paths and decision frameworks
Support onboarding and upskilling of ops teams through knowledge transfer and walkthroughs
Act as escalation support for complex or highrisk scenarios (design and policy guidance only)
Stakeholder & Customer Alignment
Work with security architecture platform engineering incident response and compliance teams to align requirements
Translate customer security requirements into actionable service capabilities
Support customer conversations on WAF and DDoS posture capabilities and limitations
Provide leadershiplevel visibility into risk coverage gaps and service maturity
What you bring
Required Experience & Skills
57 years of experience in cloud security application security or network security
Strong handson background withWAF and DDoS technologies(design and configuration experience required; ops execution not required)
Deep understanding of:
Web attack patterns and OWASP Top 10
Layer 7 and volumetric DDoS risks
Hyperscaler security controls and shared responsibility models
Proven experience definingsecurity services processes and operating models
Excellent documentation communication and stakeholdermanagement skills
Ability to influence without direct authority and drive adoption across teams
Where you belong
Team:Global Cloud Operations Security
The WAF and DDoS Security Engineer will be responsible for designing implementing maintaining and operating Web Application Firewall (WAF) and Distributed Denial of Service (DDoS) protection controls across multicloud environments. The role focuses on ensuring consistent security posture rapid response to emerging threats (including zeroday events) and operational resilience across hyperscaler platforms.
Bring out your best
SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software SAP has evolved to become a market leader in end-to-end business application software and related services for database analytics intelligent technologies and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide we are purpose-driven and future-focused with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries people or platforms we help ensure every challenge gets the solution it deserves. At SAP you can bring out your best.
We win with inclusion
SAPs culture of inclusion focus on health and well-being and flexible working models help ensure that everyone regardless of background feels included and can run at their best. At SAP we believe we are made stronger by the unique capabilities and qualities that each person brings to our company and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better world.
SAP is committed to the values of Equal Employment Opportunity and provides accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application please send an e-mail with your request to Recruiting Operations Team:
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.
Qualified applicants will receive consideration for employment without regard to their age race religion national origin ethnicity gender (including pregnancy childbirth et al) sexual orientation gender identity or expression protected veteran status or disability in compliance with applicable federal state and local legal requirements.
Successful candidates might be required to undergo a background verification with an external vendor.
AI Usage in the Recruitment Process
For information on the responsible use of AI in our recruitment process please refer to our Guidelines for Ethical Usage of AI in the Recruiting Process.
Please note that any violation of these guidelines may result in disqualification from the hiring process.
Requisition ID: 438038 Work Area: Information Technology Expected Travel: 0 - 10% Career Status: Professional Employment Type: Regular Full Time Additional Locations: #LI-Hybrid
Required Experience:
IC
About Company
SAP started in 1972 as a team of five colleagues with a desire to do something new. Together, they changed enterprise software and reinvented how business was done. Today, as a market leader in enterprise application software, we remain true to our roots. That’s why we engineer soluti ... View more