Solution and Product Management

Senior Security Engineer (Linux)

We help the world run better

Our company culture is focused on helping our employees enable innovation by building breakthroughs together. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly collaborative, caring team environment with a strong focus on learning and development, recognition for your individual contributions, and a variety of benefit options for you to choose from.Apply now!  

 

The Role:

As the Information Security Analyst at Ariba, you will lead the effort to secure the world’s #1 cloud procurement platform.  You and team of security architects will set the direction and coordinate efforts across the Ariba operations and platform on all security topics.  You will also closely coordinate with your  peers in the other SAP cloud businesses and the SAP Global Security team to help develop the overall strategy and ensure that Ariba is aligned to it. 

 

Responsibilities:

  • Keep Ariba assets secure, ensure that proper security guidelines are followed by operations teams.
  • Perform security reviews, evaluate security posture of various infrastructure elements such as network, hosts, containers etc.
  • Ensure that all Ariba assets are scanned for the vulnerabilities, analyze, and adjust scanning scope as needed.
  • Align with various teams to ensure that vulnerabilities and any security deficiencies  are remediated within pre-defined SLA’s to limit potential compromise.
  • Support exception and risk management processes, by documenting security exception requests and risks as needed.
  • Evaluate risks that the applicable vulnerabilities pose to the organization and understand the technical implementation details to assess and recommend security control improvements or identify mitigating controls
  • Assist with remediation of control deficiencies identified during the audit process.
  • Ensure communication and escalation of security activities to leadership, assist in the development process and operating procedures
  • Assist in standard device hardening guidelines and policies.
  • Assist in troubleshooting, diagnosing, and resolving vulnerabilities
  • Review and enhance security policies that are relevant to the vulnerability management
  • Partner with internal teams to ensure successful security and compliance programs that align with client and regulatory compliance requirements
  • Develop technical solutions to help mitigate security vulnerabilities.
  • Review and enhance on premise and cloud-based image creation process, to ensure compliance with security requirements.
  • Participate in the Security Incident Response Team (SIRT) activities as needed, helping SIRT to detect, respond, contain, eradicate, and recover from security incidents in a timely manner, within the Cloud Operations and Corporate IT environments
  • Support Customer, Internal and External Penetration testing requirements, assist with the vulnerabilities remediation resulting from the tests.

 

 

Qualifications Requirements:

  • 5-7 years’ professional experience with 3-5 years involving security, vulnerability management, risk management, compliance, and privacy of non-public personal data
  • Experience with IT security and privacy risk assessments and audits of IT general security controls
  • Comprehensive knowledge of APT actors, tools, techniques and procedures
  • Knowledge of Mitre and Cyber Kill Chain methods
  • Broad vulnerability scanning experience (network, operating systems, applications, database,containers)
  • Experience on Web Services
  • In-depth experience in medium to complex computing environments, with advanced
  • Experience working with virtual machines and containers (Docker, Kubernetes)
  • Good working knowledge of infrastructure security concepts including firewalls, DMZs, intrusion detection/prevention systems, network security, application security concepts, password management, RBAC, access provisioning, SIEM and OWASP a plus
  • Experience with the phases of the software development lifecycle
  • Experience with common vulnerability scanning and penetration testing tools
  • Knowledge of common computer security issues, including network and application vulnerabilities
  • Knowledge of Linux and its security a plus
  • Understanding of various cloud environments (GCP, AWS, Azure) security and vulnerability management.
  • Post-secondary qualifications involving technical analysis, financial services, problem solving, and writing  
  • Thorough understanding of computer networking, routing, and protocols  

 

Competencies:

  • Interpersonal skills and team player to maintain collaborative relationships throughout the company and with customers
  • Experience in a customer-facing, support, consulting, or sales role
  • Attention to detail, especially with written work such as legal contracts and customer-facing communications
  • Ability to think and work analytically
  • Ability to work independently
  • Ability to document policies, procedures, and technical diagrams
  • Ability to manage a substantial unplanned workload with short deadlines
  • Must be capable of working with limited direct supervision

 

About SAP Ariba:

Ariba, an SAP Company makes business commerce as easy as consumer commerce.  Every day, we

help our customer find opportunities to cut costs, reduce risk, and grow revenue through better

collaboration with trading partners.   We enable the collaboration through the Ariba Network – a cloud-

based community where you will find buying, selling, and managing cash to be as easy as using Amazon,

eBay, and PayPal.  We also host other online communities where business commerce professionals

network and share information and best practices, just like friends on Facebook.

 

We build breakthroughs together

SAP innovations help more than 400,000 customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with 200 million users and more than 100,000 employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, we build breakthroughs, together.

We win with inclusion

SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone – regardless of background – feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.
SAP is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team: Careers@sap.com.
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.

EOE AA M/F/Vet/Disability:

Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Successful candidates might be required to undergo a background verification with an external vendor.

Requisition ID: 340739  | Work Area: Solution and Product Management  | Expected Travel: 0 - 10%  | Career Status: Professional  | Employment Type: Regular Full Time   | Additional Locations: #LI-Hybrid.
 

Requisition ID:  340739
Posted Date:  Jun 22, 2022
Work Area:  Solution and Product Management
Career Status:  Professional
Employment Type:  Regular Full Time
Expected Travel:  0 - 10%
Location: 

Budapest, HU, 1031

Job alert


Job Segment: Cloud, Linux, Testing, Compliance, ERP, Technology, Legal