Senior Product Security Engineer
hace 6 días
**We help the world run better**
At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly collaborative, caring team environment with a strong focus on learning and development, recognition for your individual contributions, and a variety of benefit options for you to choose from.
**What you’ll do**
Join an extraordinary team of innovative engineers, designers, and product managers at SAP Learning Systems — a dynamic hub within the global SAP Learning organization. Our mission is to revolutionize how the SAP ecosystem learns and upskills, creating impactful solutions for our customers and partners. Nestled in the city of Barcelona, our diverse, multicultural, and cross-functional team embodies the agility of a startup, coupled with the scale and influence of a global enterprise.
**Key responsibilities include**:
Security Governance & Compliance:
- Understand and contribute to SAP's standards, enterprise governance, and global security policies.
Risk Assessment & Mitigation:
- Oversee security risks, conduct targeted security risk assessments, and review security exceptions.
- Understand the concrete agile delivery process of the organisation and ensure that the delivery is reinforced with all quality and security standards
- Evaluate the criticality of the security vulnerabilities and risks to ensure an outstanding time-to-marked
- Actively work on automation together with the agile teams to streamline the quality of the delivery
Strategic Leadership:
- Advise corporate leadership on risk reduction proposals, backed by cost justifications.
- Provide leadership, mentoring, and training to security personnel and other SAP stakeholders.
Collaboration & Communication:
- Work collaboratively with internal and external partners for third-party security assessments.
- Develop and monitor security risk metrics, providing periodic updates to executive management.
Secure Development Knowledge:
- Should have knowledge of OWASP Top 10, SANS 25 and NIST Framework.
- Having Hands on Knowledge of implementing Secure development Pipeline of DevSecOps Mind set.
- Having hands on Knowledge on Threat modelling.
- Having Knowledge of Handling Zero-day Vulnerability Management to proactively identify, assess and mitigate emerging threats.
**What you’ll bring**
- BA/BS in Computer Science, Information Security, Business Administration or related work experience
- Minimum of five (5) years of managing IT initiatives/project management required
- Minimum of five (5) years information security, audit, risk management, compliance or risk consulting related experience preferred
- Experience working with Azure Pipelines, GitHub, and GitOps
- Experience managing vulnerabilities with multiple SAST, OSS,FOSS and IP-Scan analysis tools for large solutions
- Hands-on experience securing, managing and/or designing micro-service cloud solutions
- Experience using Governance, Risk and Compliance (GRC) tools preferred
- Security certification, e.g. CISSP, CISA - CRISC preferred
- Ability to demonstrate analytical expertise, close attention to detail, excellent conflicesolution and negotiation skills, logic, and solution orientation and to learn and adapt quickly, thinking out of the box mindset
- Excellent written and oral communication skills in English
- Ability to understand and operate in a dynamic and agile environment
- Proven experience working in multi-functional and multi-cultural teams
- Proactive, self-managed, and able to interface well with sponsor personnel and inter-disciplinary teams across an organization
- Experience with information security compliance audit frameworks and requirements, e.g. NIST, COBIT, CMMI, ISO27001, FISMA, FedRAMP, SOC, SOX, PCI-DSS, GDPR and Data Privacy
**About the Team**
SAP Learning System is building and running SAP’s next generation learning and community experience. We are a newly created organization within SAP Learning, the education, training and adoption unit within SAP.
We’re a 200+ people team, fast running and laser-focused, with a bold vision: enable more than 4M people to learn, upskill and join the SAP ecosystem per year.
Given our central role in SAP’s ecosystem, the huge market buzz on moving to cloud, and our unique setup with strong existing assets such as SAP Learning Hub, openSAP and the SAP Community, we believe we have the opportunity of a lifetime to make a big impact in the world of B2B software.
**#SAPCSCareers**
**Bring out your best**
**We win with inclusion**
SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we beli
-
Senior Product Security Engineer
hace 1 semana
Barcelona, España Mirantis A tiempo completo**Company Description** **About Mirantis** Mirantis is seeking a **Senior Product Security Engineer** to help secure our portfolio of products and services, including enterprise software and critical infrastructure. This role is part of our growing** Product Security program** and will play a key role in implementing security controls, driving remediation...
-
Senior Product Security Engineer
hace 2 semanas
Barcelona, España Mirantis A tiempo completoJob Description Mirantis is seeking a Senior Product Security Engineer to help secure our portfolio of products and services, including enterprise software and critical infrastructure. This role is part of our growing Product Security program and will play a key role in implementing security controls, driving remediation efforts, supporting compliance...
-
Senior Product Security Engineer
hace 1 semana
barcelona, España Mirantis A tiempo completoMirantis is the Kubernetes-native AI infrastructure company, enabling organizations to build and operate scalable, secure, and sovereign infrastructure for modern AI, machine learning, and data-intensive applications. By combining open source innovation with deep expertise in Kubernetes orchestration, Mirantis empowers platform engineering teams to deliver...
-
Barcelona, España Mirantis A tiempo completoA leading infrastructure company in Spain seeks a Senior Product Security Engineer to enhance security across its offerings.Compruebe que cumple con los requisitos de habilidades para este puesto, así como con la experiencia asociada, y luego envíe su CV a continuación.The role involves implementing security controls, driving remediation efforts, and...
-
Senior Product Security Engineer
hace 2 semanas
Barcelona, España Mirantis A tiempo completoMirantis is the Kubernetes-native AI infrastructure company, enabling organizations to build and operate scalable, secure, and sovereign infrastructure for modern AI, machine learning, and data-intensive applications. By combining open source innovation with deep expertise in Kubernetes orchestration, Mirantis empowers platform engineering teams to deliver...
-
Senior Cloud Security Engineer
hace 4 días
Barcelona, España Product Madness Espana, S.L. A tiempo completo**Company Summary** Product Madness is one of the world's largest mobile game studios, with a global presence. Founded in 2007, we’re today a top-grossing leader in social casino mobile games that are crafted with passion and commitment. Our ambition is to entertain millions of players around the world with our remarkable titles that include Heart of...
-
Senior Fullstack Infra
hace 5 días
barcelona, España Product Pulse A tiempo completoA forward-thinking tech firm in Barcelona is seeking a Senior Fullstack Engineer focused on infrastructure and architecture. This role involves optimizing AWS infrastructure, building CI/CD pipelines, and improving system performance. Ideal candidates will have hands-on experience with cloud security and a strong mindset for developing scalable systems. Work...
-
Senior Fullstack Engineer – Infrastructure
hace 5 días
Barcelona, España Product Pulse A tiempo completoSenior Fullstack Engineer – Infrastructure & ArchitectureProduct PulseAbout WorkfullyAt Workfully, we’re building the first global recruitment marketplace where independent recruiters can grow, engage, and monetize their talent networks — connecting them to meaningful opportunities at innovative companies worldwide. Our technology is designed to make...
-
Senior Fullstack Engineer – Infrastructure
hace 3 días
Barcelona, España Product Pulse A tiempo completoSenior Fullstack Engineer – Infrastructure & Architecture Product Pulse About Workfully At Workfully, we’re building the first global recruitment marketplace where independent recruiters can grow, engage, and monetize their talent networks — connecting them to meaningful opportunities at innovative companies worldwide. Our technology is designed to...
-
Senior Security Engineer: Cloud, AI
hace 1 semana
barcelona, España Gelato A tiempo completoA leading global printing technology firm is seeking a Senior Security Engineer to enhance the security of the Gelato platform for millions of users. The role involves collaborating with product and tech teams, conducting vulnerability assessments, and promoting a security-sensitive culture. Candidates should have significant experience in cybersecurity and...