Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

SAP Senior Security Engineer 
China, Shanghai 
974304093

17.02.2025

To be successful, you’ll need to be deeply technical and possess excellent communication, collaboration, and diplomacy skills. You will bring your hands-on expertise for analyzing layer7 attacks, bot attacks, DoS/DDoS attacks and implement mitigations using Akamai Web application firewall, Bot defense solutions, Akamai API protector, Akamai Prolexic DDoS defense etc. You’ll have strong cloud security, container security and application security knowledge.

The Role

  • Be part of a cross organizational team responsible for designing and promoting secure by default architecture and development practices, reporting into SAP Successfactors’ BISO org.
  • Implement Security-as-Code principles to improve security of the entire product suite. Automate security principles and checkpoints into the CI/CD pipeline and containerization process.
  • Execute security operation control to respond to and mitigate security incidents.
  • Analyze security data collected through various channels and support risk-based decisions.
  • Quick response to new and emerging security threats and vulnerabilities, investigate suspected attacks and help manage security incidents including providing post-mortem analysis, identify causes, develop solutions and preventive measures.
  • Collaborate effectively with each product development team to perform security validation, risk assessment, vulnerability mitigation and implement best DevSecOps practices.

Role Requirements

  • Hands on expertise for implementing WAF rules, API layer 7 protection rules, bot mitigations
  • Deep understanding of network architecture and defense-in-depth approach to secure the cloud SaaS stack end-to-end.
  • Secure software development lifecycle implementation, OWASP top 10 vulnerability prevention experience
  • Ability to coordinate and work with global team spread across USA, Shanghai, Bangalore, Budapest and Germany , flexibility to attend weekly team meeting happening at 9pm Shanghai time every Wednesday.
  • Hands-on experience with major DevOps tools and technologies, working experience with CI/CD pipeline, containerization and microservices transformation.
  • Strong Linux administration and scripting experience on Groovy / Python / Go etc.
  • Minimum of 7 years engineering experience in developing production grade products.
  • Minimum of 7 years’ Experience in cloud product application-level security.
    Experience in requirements identification, solution analysis/testing, and product selection, excellent communication and presentation skills
  • Minimum 5 years experience in responding to incidents for containerized workloads and cloud architectures on hyper scalars.