Назад
Company hidden
6 дней назад

Security Compliance Specialist (Cloud Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
c1
Страна
Bulgaria
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Compliance Specialist (Cloud Security): Securing cloud-native applications, platforms, and software development processes across the Software Development Lifecycle with an accent on threat modelling, security assessments, vulnerability remediation, and secure design. Focus on integrating security controls into CI/CD pipelines, improving DevSecOps practices, and strengthening the security posture of business-critical services.

Location: Sofia, Bulgaria; hybrid work pattern

Company

hirify.global is part of SAP's internal development platform organization, delivering platforms and services that support more than 50,000 internal users and the digital enterprise.

What you will do

  • Integrate security into cloud-native applications, platforms, and services throughout the Software Development Lifecycle.
  • Conduct threat modelling, security assessments, security reviews, and security testing.
  • Translate security requirements into secure designs and implementations.
  • Drive vulnerability remediation and collaborate with product teams, architects, developers, and security experts.
  • Integrate security controls, automation, and monitoring into CI/CD delivery pipelines.
  • Improve security engineering standards, processes, playbooks, and documentation.

Requirements

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
  • Experience in application security, product security, cloud security, or software engineering.
  • Knowledge of security frameworks, secure development practices, threat modelling, vulnerability management, security testing, and risk mitigation.
  • Understanding of cloud platforms, container technologies, Kubernetes, and cloud-native architectures.
  • Strong analytical, problem-solving, and communication skills with a collaborative mindset.
  • Fluent English is required.

Nice to have

  • Experience with DevSecOps practices and CI/CD platforms.
  • Experience with GitHub, GitLab, Nexus, Artifactory, or comparable engineering platforms.
  • Programming or scripting experience.
  • Experience with application security testing, penetration testing, or vulnerability assessment tools.
  • Interest in AI-assisted development and AI security, or relevant security certifications.

Culture & Benefits

  • Collaborative environment within SAP's global and innovative organization.
  • Flexible working models and a focus on inclusion, health, and well-being.
  • Opportunity to contribute to platforms and services used by more than 50,000 internal users.
  • Career development in a large enterprise technology environment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →