https://bayt.page.link/ky9pVg9H6hP6s6o49
أنشئ تنبيهًا وظيفيًا للوظائف المشابهة

الوصف الوظيفي

We help the world run better


At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly collaborative, caring team environment with a strong focus on learning and development, recognition for your individual contributions, and a variety of benefit options for you to choose from.


Role


As the Product Security Specialist you will lead the effort to secure the world’s #1 Intelligent Spend Business Network.  You and team of security architects will set the direction and coordinate efforts across the ISBN operations and platform on all security topics.  You will also closely coordinate with your  peers in the other SAP cloud businesses and the SAP Global Security team to help develop the overall strategy and ensure that ISBN  is aligned to it.  



What you'll do  


  • Keep ISBN assets secure, ensure that proper security guidelines are followed by operations teams.
  • Perform security reviews, evaluate security posture of various infrastructure elements such as network, hosts, containers etc.
  • Ensure that all ISBN assets are scanned for the vulnerabilities, analyze, and adjust scanning scope as needed.
  • Assist in troubleshooting, diagnosing, and resolving vulnerabilities
  • Review and enhance security policies that are relevant to the vulnerability management
  • Align with various teams to ensure that vulnerabilities and any security deficiencies  are remediated within pre-defined SLA’s to limit potential compromise.
  • Support exception and risk management processes, by documenting security exception requests and risks as needed.
  • Evaluate risks that the applicable vulnerabilities pose to the organization and understand the technical implementation details to assess and recommend security control improvements or identify mitigating controls 
  • Assist with remediation of control deficiencies identified during the audit process. 
  • Ensure communication and escalation of security activities to leadership, assist in the development process and operating procedures
  • Assist with the reporting relevant to various ISBN Security Operation areas.
  • Assist in standard device hardening guidelines and policies.
  • Partner with internal teams to ensure successful security and compliance programs that align with client and regulatory compliance requirements 
  • Review and enhance on premise and cloud-based image creation process, to ensure compliance with security requirements. 
  • Participate in the Security Incident Response Team (SRT) activities as needed, helping SRT to detect, respond, contain, eradicate, and recover from security incidents in a timely manner, within the Cloud Operations and Corporate IT environments 
  • Support Customer, Internal and External Penetration testing requirements, assist with the vulnerabilities remediation resulting from the tests.

What you bring


  • 2-3  years’ professional experience involving security, vulnerability management, risk management, compliance, and privacy of non-public personal data 
  • Understanding of various cloud environments (GCP, AWS, Azure) security posture and vulnerability management.
  • Experience with IT security and privacy risk assessments and audits of IT general security controls 
  • Knowledge of Mitre and Cyber Kill Chain methods
  • Vulnerability scanning experience (network, operating systems, applications, database, containers)
  • Experience on Web Services  
  • In-depth experience in medium to complex computing environments, with advanced experience working with virtual machines and containers (Docker, Kubernetes)
  • Good working knowledge of infrastructure security concepts including firewalls, DMZs, intrusion detection/prevention systems, network security, application security concepts, password management, RBAC, access provisioning, SIEM and OWASP a plus 
  • Experience with the phases of the software development lifecycle 
  • Experience with common vulnerability scanning and penetration testing tools 
  • Knowledge of common computer security issues, including network and application vulnerabilities 
  • Knowledge of Linux and its security a plus 
  • Post-secondary qualifications involving technical analysis, financial services, problem solving, and writing   
  • Thorough understanding of computer networking, routing, and protocols   


#ProductSecurityT2


Bring out your best


SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.


We win with inclusion


SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone – regardless of background – feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.
SAP is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team: Careers@sap.com
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.


EOE AA M/F/Vet/Disability:


Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Successful candidates might be required to undergo a background verification with an external vendor.


Requisition ID: 399825  | Work Area: Solution and Product Management  | Expected Travel: 0 - 10%  | Career Status: Professional  | Employment Type: Regular Full Time   | Additional Locations: #LI-Hybrid.


لقد تجاوزت الحد الأقصى لعدد التنبيهات الوظيفية المسموح بإضافتها والذي يبلغ 15. يرجى حذف إحدى التنبيهات الوظيفية الحالية لإضافة تنبيه جديد
تم إنشاء تنبيه للوظائف المماثلة بنجاح. يمكنك إدارة التنبيهات عبر الذهاب إلى الإعدادات.
تم إلغاء تفعيل تنبيه الوظائف المماثلة بنجاح. يمكنك إدارة التنبيهات عبر الذهاب إلى الإعدادات.