You will play a key role in transforming the company's security journey:
- Understand customer security and cryptographic requirements, as well as industry and regional cryptographic needs, and translate them into actionable concepts.
- Monitor and assess emerging cryptographic threats, including quantum threats, and prepare SAP's cryptographic systems accordingly.
- Serve as the visionary for applied cryptography at SAP, setting strategic direction and fostering innovation across the organization.
- Drive customer satisfaction by addressing top crypto related concerns like corporate key management, Bring/Hold Your Own Key (BYOK / HYOK), Hardware Security Module (HSM) support for root keys/secrets, cryptographic token support for password-less authentication, and confidential computing support.
- Define SAP’s cryptographic strategy, emphasizing agility in adapting to new challenges and technologies. Lead its implementation across the SAP ecosystem.
- Collaborate with cross-functional teams to ensure that cryptographic solutions meet customer needs and regulatory requirements.
- Drive innovation in applied cryptographic methodologies, protocols, and algorithms to enhance SAP’s security posture.
- Create executable architecture and development concepts using state-of-the-art cryptographic concepts and libraries.
- Work on concepts to increase cryptographic agility and foster the use of validated cryptographic libraries, including the NIST FIPS 140-3 standard.
- Serve as a subject matter expert in applied cryptography, providing guidance and expertise to stakeholders and product development across the organization.
What you bring
- Advanced degree in computer science, cryptography, information security, or a related field.
- 5-7+ years of IT security and cryptography experience.
- Demonstrated experience in leading cryptography projects and teams within a large organization.
- Deep technical expertise in cryptography, including algorithms, protocols, and systems.
- Strong understanding of the impact of quantum computing on cryptographic systems and proactive strategies to address these threats.
- Familiarity with global regulatory requirements and standards related to cryptography and information security, such as NIST FIPS 140-3.
- Understanding and experience with SAP development and architecture (cloud) frameworks.
- Ability to create understandable and executable security and cryptographic library concepts in standard SAP development frameworks and technology stacks.
- Experience with cloud security design and implementation.
- Excellent communication and stakeholder management skills.
- Fluent in written and spoken English, German a plus.
Job Segment:Cloud, ERP, Developer, Compliance, Information Security, Technology, Legal