Job Position ID:  9147

(Senior) Cloud Product Security Expert (m/f/d)

Location: 

Walldorf, BW, DE

Employment Type:  Full Time
Work Model:  Hybrid

Who we are

NEXONTIS has one simple goal: We help our clients become more efficient. We believe, that every business can perform better, regardless of its size or industry. With our high-end SAP solutions for Performance Management, Sustainability and Accounting, we enable our customers around the world to operate profitably, adapt continuously, and make a difference.

What we do

Nexontis is an IT solutions and consulting company specializing in providing accounting, profitability, investment, sustainability and tax solutions designed to help our clients make informed business decisions.
We are committed to utilizing the latest technology from SAP to provide our clients with solutions that can be deployed on-premise and in the cloud. By leveraging our expertise, we help companies improve their operational efficiency, reduce costs, and enhance their decision-making capabilities.
At Nexontis, whether developing new solutions or enhancing existing ones, we are dedicated to delivering outcomes that are both innovative and reliable, which can add real value to our clients' business.

What you will do​

 

  • Conducting threat modeling workshops, security validations and pen testings
  • Improving automation of the security testing processes
  • Improving the secure operations processes. For example, regarding
    • credentials stores
    • password rotation
    • user revocation
    • role based access management
  • Investigating security requirements and keeping our products up to date. For example, regarding
    • data protection and privacy
    • mTLS, X509 for authenticated access
    • injection of credentials from vault into apps
  • Investigating our application architectures with regards to security issues


What we are looking for

 

Requirements 

  • Strong hands-on attitude and try-harder mindset
  • 4+ years of relevant experience in the security area
  • University degree in information technology, computer science or equivalent is beneficial
  • Proven knowledge of protocols, ideally OAuth 2.0, OIDC, SAML2, TLS
  • Several years of experience with security testing tools like Mend, Checkmarx, Fortify, Findbugs, Black Duck, Wireshark, Burp Suite, OWASP zap, Docker Security    
  • Deep understanding of cloud environments, ideally K8S and/or Cloud Foundry from security perspective
  • Familiarity with security relevant aspects of SOC1/SOC2 compliance as well as GDPR
  • Experience in threat modeling
  • Practical experience in project management and strong communication skills
  • Knowledge about cloud product development
  • Professional fluency in English


Nice to have

  • Experience with SAP CAP or SAP BTP

 

What we offer

 

  • A place where individuals are equally valued and where diversity and cultural differences are cherished
  • A global team of highly respected SAp and industry experts where you can make a difference
  • A challenging and multi-cultural work environment with ongoing support by buddies, mentors, colleagues, and managers
  • Competitive salaries and a broad reange of benefits, some of which are highlighted below

NEXONTIS is an Equal Opportunity Employer. Equal Employment Opportunity has been, and will continue to be, a fundamental principle for us. At the heart of this policy is our commitment that we make job related decisions based on the job related criteria. More specifically, employment is based on personal capabilities and qualifications without discrimination based on race, color, religion, sex, age, national origin, disability, sexual orientation, marital status, ancestry, veteran status or any other protected characteristic as established by law. These principles are to be applied to policies and procedures relating to recruitment and hiring, compensation, benefits, termination and all other terms and conditions of employment.