Search jobs > Cary, NC > Sr system engineer

Sr SAP Security Engineer (Threat Modeling), Enterprise Systems

Apple
Cary, NC, United States
Full-time

Summary

Posted : Feb 2, 2024

Weekly Hours : 40

Role Number : 200511486

It's the diversity of those people and their ideas that supports the innovation that runs through everything we do, from amazing technology to industry-leading environmental efforts.

Join Apple and help us leave the world better than we found it. As a part of Apple's Information Systems & Technology team, the Senior SAP Security Engineer will design and deliver solutions that improve the security, privacy, and compliance of one of the world's largest and most powerful SAP environments! You are someone eager to apply your deep security expertise to a sophisticated landscape and leave a legacy of powerful transformation that will enable Apple's worldwide operations for years to come.

Key Qualifications

  • Outstanding ethical standards and integrity
  • Highly reciprocal and excellent communicator (written & verbal)
  • Passionate about security and privacy research, technologies, and methods
  • Motivated by difficult and novel problems in a highly-complex, ground-breaking SAP environment
  • Familiarity with tools and threat models for sophisticated landscapes and operating environments
  • Proficient in handling security toolchains, and architecture design reviews
  • Experience with secure code reviews and software security testing tools & methods
  • Knowledge of SAP ECC, BW, Portal, BPC as well as S / 4 HANA and SAP Cloud Services.

Description

You will be a technical security authority responsible for ensuring secrecy, security, privacy, and compliance of SAP-based services that enable Apple's Treasury and Global Supply Chain.

You will work with engineers, project teams, and business liaisons to enable deep analysis and understanding of the operating environment (i.

e. technical and functional level.) You will threat model existing and proposed environmental changes, identify security vulnerabilities, and document recommended security controls to ensure security, privacy, and compliance goals are met.

You will research and publish expert-level risk assessments, and promote the adoption of secure techniques and technologies across the organization.

Education & Experience

Bachelors or Masters / PhD in Computer Science or Engineering with an emphasis in Computer Security or a related field, or equivalent experience.

Additional Requirements

  • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends
  • Understanding of cloud technologies, security compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment.
  • 7+ years of experience working with engineering teams to build and deliver secure environments
  • Desirable Certifications : GCFR, GNFA, GX-FA, GCTI, GDSA, GSOC
  • 2 days ago
Related jobs
Promoted
Synopsys
Morrisville, North Carolina

This role guides and defines overarching technical security engineering and knows enterprise security best practices and requirements, to ensure Synopsys solutions are designed and implemented to the highest security standards and are differentiated in the marketplace. Responsible for delivery of se...

Promoted
Cisco Systems, Inc.
Raleigh, North Carolina

The Customer Delivery Consulting Engineering role is comprised of geographically dispersed engineers that design, architect, and support work on critical networks with innovative Cisco solutions. Interacts effectively with Engineering to solve complex problems, identifies serviceability issues and d...

Promoted
Synopsys
Durham, North Carolina

This role guides and defines overarching technical security engineering and knows enterprise security best practices and requirements, to ensure Synopsys solutions are designed and implemented to the highest security standards and are differentiated in the marketplace. Responsible for delivery of se...

Promoted
Southern Talent Specialists
Raleigh, North Carolina

Ability to:  to create and manage on-prem, cloud only, and hybrid identities across multiple tenants either through the GUI or programmatically using PowerShell; utilize configuration management to meet the goals of security and compliance; create and manage Azure Conditional Access Policies to...

Promoted
Lucid
Raleigh, North Carolina

A successful Security Engineer at Lucid will be passionate about safeguarding customer and corporate data by proactively identifying and proposing solutions to remediate risks. As a Security Engineer at Lucid, you will protect Lucid’s corporate assets, including our world-class web applications and ...

TEKsystems
Holly Springs, North Carolina
Remote

Skills:*Applications Security, S-SDLC, SDLC, OWASP Top 10, Developer, Cloud, Information security, Code Review, Threat Modeling, owasp, Application security, Security architecture, Vulnerability, code deployment*Top Skills Details:*Applications Security,S-SDLC,SDLC,OWASP Top 10,Developer,Cloud,Infor...

Apex Systems
Raleigh, North Carolina

Bachelor or Associate level degree and a minimum of 4-8 years of work experience as a DBA in an enterprise data center environment OR High School Diploma / GED and a minimum of 10 years work experience as a DBA in an enterprise data center environment. This position is also responsible for maintaini...

Apex Systems
Raleigh, North Carolina
Remote

The Senior Information Security Engineer plays a crucial role in maintaining the security posture. The candidate will be responsible for implementing and managing security solutions to protect our systems, networks, and data from potential threats. Monitor security systems for breaches or intrusions...

First Horizon Bank
Raleigh, North Carolina

Ability to: to create and manage on-prem, cloud only, and hybrid identities across multiple tenants either through the GUI or programmatically using PowerShell; utilize configuration management to meet the goals of security and compliance; create and manage Azure Conditional Access Policies to meet ...

Southern Talent Specialists
Raleigh, North Carolina

Ability to:  to create and manage on-prem, cloud only, and hybrid identities across multiple tenants either through the GUI or programmatically using PowerShell; utilize configuration management to meet the goals of security and compliance; create and manage Azure Conditional Access Policies to...