Senior Container Security Engineer

2 weeks ago


Shanghai, Shanghai, China SAP Full time

We help the world run better

At SAP, we enable you to bring out your best. Our company culture is focused on collaboration and a shared passion to help the world run better. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly collaborative, caring team environment with a strong focus on learning and development, recognition for your individual contributions, and a variety of benefit options for you to choose from.

Meet the Team

We are seeking hands-on security talent to contribute to our efforts to secure workloads as we shift from VM based deployments to Container based deployments. You'll join SAP Successfactors' Application security team in Shanghai, CN location where we have a strong focus on security automation, shift-left and embedding container security controls throughout the container lifecycle, using industry leading tools and technologies.

To be successful, you'll need to be deeply technical and possess excellent communication, collaboration, and diplomacy skills. You will bring your hands-on expertise for securing containers end-to-end, including using tools like Protecode, Trendmicro, Kyverno and so on. You'll have strong cloud security, container security and application security knowledge.

About The Role

Be part of a cross organizational team responsible for designing and promoting secure by default architecture and development practices, reporting into SAP Successfactors' BISO org. Implement Security-as-Code principles to improve security of the entire product suite. Automate security principles and checkpoints into the CI/CD pipeline and containerization process. Execute security operation control to respond to and mitigate security incidents. Analyze security data collected through various channels and support risk-based decisions. Quick response to new and emerging security threats and vulnerabilities, investigate suspected attacks and help manage security incidents including providing post-mortem analysis, identify causes, develop solutions and preventive measures. Collaborate effectively with each product development team to perform security validation, risk assessment, vulnerability mitigation and implement best DevSecOps practices.

What You Bring:

  • Secure software development lifecycle implementation, OWASP top 10 vulnerability prevention experience
  • Excellent understanding of security containerized workloads end-to-end and policy enforcement techniques
  • SAST tools such as Protecode, Trendmicro artifact scanner, JFrog Xray for auditing and issue fixing
  • Ability to coordinate and work with global team spread across USA, Shanghai, Bangalore and Germany , flexibility to attend weekly team meeting happening at 9pm Shanghai time every Wednesday.
  • Hands-on experience with major DevOps tools and technologies, working experience with CI/CD pipeline, containerization and microservices transformation.
  • Strong Linux administration and scripting experience on Groovy / Python / Go etc.
  • Minimum of 7 years engineering experience in developing production grade products.
  • Minimum of 7 years' Experience in cloud product application-level security.
    Experience in requirements identification, solution analysis/testing, and product selection, excellent communication and presentation skills
  • Minimum 5 years experience in responding to incidents for containerized workloads and cloud architectures on hyper scalars.
  • Holders for CKA (Certified Kubernetes Administrator, certified within 3 years) or CKS (Certified Kubernetes Security Speciallist, certified within 2 years) are preferred.

Location: SAP Shanghai Labs (Ability to go to office in person, minimum 3 days / week)

#GCSF

Bring out your best

SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.

We win with inclusion

SAP's culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone – regardless of background – feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.
SAP is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team:
For SAP employees: Only permanent roles are eligible for the SAP Employee Referral Program, according to the eligibility rules set in the SAP Referral Policy. Specific conditions may apply for roles in Vocational Training.

EOE AA M/F/Vet/Disability:

Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.
Successful candidates might be required to undergo a background verification with an external vendor.

Requisition ID: | Work Area: Solution and Product Management | Expected Travel: 0 - 10% | Career Status: Professional | Employment Type: Regular Full Time | Additional Locations: #LI-Hybrid.



  • Shanghai, Shanghai, China SAP Full time

    We empower individuals to unleash their full potentialJoining SAP means embracing a culture of teamwork and mutual dedication to improving global operations. Integrating advanced technologies, we strive daily to lay the groundwork for a better future while fostering diversity, flexibility, and purpose-driven work environments. Our collaborative and...


  • Shanghai, Shanghai, China Philips Full time

    Job TitleSenior Cyber Security AnalystJob DescriptionSenior Cyber Security AnalystWe are seeking a highly skilled and experienced Senior Cyber Security Analyst to join our Group Security organization in China. The ideal candidate will be responsible for participating in daily Security Operations Center (SOC) incidents, as well as longer term activities...


  • Shanghai, Shanghai, China Philips Full time

    Job TitleSenior Cyber Security AnalystJob DescriptionSenior Cyber Security AnalystWe are seeking a highly skilled and experienced Senior Cyber Security Analyst to join our Group Security organization in China. The ideal candidate will be responsible for participating in daily Security Operations Center (SOC) incidents, as well as longer term activities...


  • Shanghai, Shanghai, China Thermo Fisher Scientific Full time

    Job DescriptionWhat we doThe Product Security team is a group of Builders, Breakers, and Fixers that specialize in collaborative security engagement. The goal of the Software Security (DevSecOps) team is to provide self-service security and to that end, the team is focused on enabling the 3 Ways of DevOps: Fast Flow, Rapid Feedback, and Continuous Learning....


  • Shanghai, Shanghai, China Maersk Full time

    Opportunity At Maersk, we are transforming to become the global integrator of container logistics, connecting, and simplifying our customers' supply chains. As part of this journey, we are hiring for a Senior Software Engineer in the Maersk Air & LCL (Less than Container Load) Platform technology team, which is responsible for building and running digital...


  • Shanghai, Shanghai, China Microsoft Full time

    Overview Azure Container App Service team is part of broader Azure organization with a mission to empower developers to quickly build and manage highly scalable distributed and derverless applications on Azure. The team is responsible for some of the most popular, highly paid and fastest growing Azure services like Azure App Service (WebApps), Azure...


  • Shanghai, Shanghai, China Riot Games Full time

    Responsibilities: Manage and maintain the measurement to monitor and report on the control effectiveness in all information security area in China Ensure the local security governance fulfillment, e.g. MLPS Conduct security risk management tasks and collaborate with teams of different functions to encourage the security concept across the business...


  • Shanghai, Shanghai, China RELX Full time

    About the Role The Senior DevOps Engineer performs complex research, design, and software development assignments within a software functional area or product line, Working as part of an application team to build and maintain the right cloud infrastructure architecture, balancing performance and resilience with cost. Responsibilities Working within an...


  • Shanghai, Shanghai, China ZF Group Full time

    Req ID 64867 Shanghai, China We are currently expanding our R&D teams and looking for new colleagues who will join our team in Shanghai.Your tasks:Support the implementation of cyber security processes at CVS with the guide of a Cyber Security coach Keep CVS up-to-date regarding cyber security trends and emerging technologies Interacting with customers and...


  • Shanghai, Shanghai, China ZF Group Full time

    Req ID 64867 Shanghai, China We are currently expanding our R&D teams and looking for new colleagues who will join our team in Shanghai.Your tasks:Support the implementation of cyber security processes at CVS with the guide of a Cyber Security coach Keep CVS up-to-date regarding cyber security trends and emerging technologies Interacting with customers and...


  • Shanghai, Shanghai, China ZF Group Full time

    Req ID 64867 Shanghai, China We are currently expanding our R&D teams and looking for new colleagues who will join our team in Shanghai.Your tasks:Support the implementation of cyber security processes at CVS with the guide of a Cyber Security coach Keep CVS up-to-date regarding cyber security trends and emerging technologies Interacting with customers and...


  • Shanghai, Shanghai, China ZF Group Full time

    Your tasks Support the implementation of cyber security processes at CVS with the guide of a Cyber Security coach Keep CVS up-to-date regarding cyber security trends and emerging technologies Interacting with customers and suppliers to finalize security concepts Your profile: Major in Software Engineering, Information Engineering, etc Master...


  • Shanghai, Shanghai, China VF Corporation Full time

    Let's Talk about the Role The Cyber Security Senior Manager will support VF's Global Cyber Security Team by ensuring that information security risks associated with complex business operations are within acceptable tolerances. You will perform information security risk assessments, provide direction and guidance to stakeholders concerning the handling...

  • Software Engineer

    2 weeks ago


    Shanghai, Shanghai, China Maersk Full time

    OpportunityAt Maersk, we are undergoing a transformation to become the leading global integrator of container logistics, simplifying and enhancing our customers' supply chains.We are currently seeking a leader to join the Maersk Air & LCL (Less than Container Load) Platform technology team. This team plays a crucial role in developing and managing the...


  • Shanghai, Shanghai, China Third Bridge Full time

    Job Description Product & Technology Overview Our Chief Information Officer (CIO) leads the technology function, and our Chief Product and Data Officer (CPDO) leads the product function. We invest heavily in product, data, and technology capabilities, enabling us to deliver innovative products, solutions, and deep market intelligence to our clients. ...


  • Shanghai, Shanghai, China Third Bridge Full time

    Job DescriptionProduct & Technology OverviewOur Chief Information Officer (CIO) leads the technology function, and our Chief Product and Data Officer (CPDO) leads the product function. We invest heavily in product, data, and technology capabilities, enabling us to deliver innovative products, solutions, and deep market intelligence to our clients.The Product...


  • Shanghai, Shanghai, China Ford Motor Company Full time

    Focus on Mobile App and Browser-based products' cybersecurity and act as cybersecurity SME Co-lead Vehicle/API Security Operations Center system design, development, deployment, and operations Provide cybersecurity technical services including but not limited to developing cybersecurity specifications, performing threat and risk assessment, performing...

  • IoT Security Engineer

    2 months ago


    Shanghai, Shanghai, China Signify Netherlands B.V. Full time

    We're looking for a IoT Security Engineer Intern to join our AI & Emerging Technologies in Shanghai.Working for Signify means being creative and adaptive. Our culture of continuous learning and commitment to diversity and inclusion creates an environment that allows you to build your skills and career. Together, we're transforming our industry.As the world...

  • Senior Merchandiser

    2 weeks ago


    Shanghai, Shanghai, China H&M Group Full time

    Job Description As a Senior Merchandiser, your focus is on delivering the optimal product for your designated customer group. You take full ownership of implementing and ensuring the success of the merchandising strategy tailored to your specific customer segment, section, department, or product type. Your role involves overseeing a structured workflow...

  • Security Manager

    2 weeks ago


    Shanghai, Shanghai, China ASML Full time

    Description Collaborate and support our business stakeholders on information security inquiries and embedding information security in the 1st line; Translate security requirements from our security policies delivered by the 2nd line of responsibility (RBA), into practical guidance and balance this with business needs; Coordinate and execute security...