
(Senior) Application Security Engineer
- Shanghai
- Permanent
- Full-time
- Be part of a cross organizational team responsible for designing and promoting secure by default architecture and development practices, reporting into SAP Successfactors' BISO org.
- Implement Security-as-Code principles to improve security of the entire product suite. Automate security principles and checkpoints into the CI/CD pipeline and containerization process.
- Execute security operation control to respond to and mitigate security incidents.
- Analyze security data collected through various channels and support risk-based decisions.
- Quick response to new and emerging security threats and vulnerabilities, investigate suspected attacks and help manage security incidents including providing post-mortem analysis, identify causes, develop solutions and preventive measures.
- Collaborate effectively with each product development team to perform security validation, risk assessment, vulnerability mitigation and implement best DevSecOps practices.
- Hands on expertise for implementing WAF rules, API layer 7 protection rules, bot mitigations
- Deep understanding of network architecture and defense-in-depth approach to secure the cloud SaaS stack end-to-end.
- Secure software development lifecycle implementation, OWASP top 10 vulnerability prevention experience
- Ability to coordinate and work with global team spread across USA, Shanghai, Bangalore, Budapest and Germany , flexibility to attend weekly team meeting happening at 9pm Shanghai time every Wednesday.
- Hands-on experience with major DevOps tools and technologies, working experience with CI/CD pipeline, containerization and microservices transformation.
- Strong Linux administration and scripting experience on Groovy / Python / Go etc.
- Minimum of 7 years engineering experience in developing production grade products.
- Minimum of 7 years' Experience in cloud product application-level security.
SAP is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team: Careers@sap.com
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the . Specific conditions may apply for roles in Vocational Training.EOE AA M/F/Vet/Disability:Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Successful candidates might be required to undergo a background verification with an external vendor.Requisition ID: 412554 | Work Area: Software-Development Operations | Expected Travel: 0 - 10% | Career Status: Professional | Employment Type: Regular Full Time | Additional Locations: #LI-Hybrid.Requisition ID: 412554Posted Date: Jun 10, 2025Work Area: Software-Development OperationsCareer Status: ProfessionalEmployment Type: Regular Full TimeExpected Travel: 0 - 10%Location:Shanghai, CN, 201203Job alert