(Senior) Cloud Product Security Expert (m/f/d)
Walldorf, BW, DE
What you will do
- Conducting threat modeling workshops, security validations and pen testings
- Improving automation of the security testing processes
- Improving the secure operations processes. For example, regarding
- credentials stores
- password rotation
- user revocation
- role based access management
- Investigating security requirements and keeping our products up to date. For example, regarding
- data protection and privacy
- mTLS, X509 for authenticated access
- injection of credentials from vault into apps
- Investigating our application architectures with regards to security issues
What we are looking for
Requirements
- Strong hands-on attitude and try-harder mindset
- 4+ years of relevant experience in the security area
- University degree in information technology, computer science or equivalent is beneficial
- Proven knowledge of protocols, ideally OAuth 2.0, OIDC, SAML2, TLS
- Several years of experience with security testing tools like Mend, Checkmarx, Fortify, Findbugs, Black Duck, Wireshark, Burp Suite, OWASP zap, Docker Security
- Deep understanding of cloud environments, ideally K8S and/or Cloud Foundry from security perspective
- Familiarity with security relevant aspects of SOC1/SOC2 compliance as well as GDPR
- Experience in threat modeling
- Practical experience in project management and strong communication skills
- Knowledge about cloud product development
- Professional fluency in English
Nice to have
- Experience with SAP CAP or SAP BTP
What we offer
- A place where individuals are equally valued and where diversity and cultural differences are cherished
- A global team of highly respected SAp and industry experts where you can make a difference
- A challenging and multi-cultural work environment with ongoing support by buddies, mentors, colleagues, and managers
- Competitive salaries and a broad reange of benefits, some of which are highlighted below