Work in Washington Veterans Jobs

Job Information

SAP Senior Incident Response Detection Engineer in Bellevue, Washington

What we offer

Our company culture is focused on helping our employees enable innovation by building breakthroughs together. How? We focus every day on building the foundation for tomorrow and creating a workplace that embraces differences, values flexibility, and is aligned to our purpose-driven and future-focused work. We offer a highly collaborative, caring team environment with a strong focus on learning and development, recognition for your individual contributions, and a variety of benefit options for you to choose from. Apply now!

An SAP Incident Response Strategist is a crucial defender and leader of SAPs digital enterprise. Our Incident Response team is responsible for triaging critical security events detected by security monitoring operations, analyzing all available data to determine if a cyber-attack is occurring, coordinating efforts to contain attacks, and conducting forensic investigations to determine the details around the attack. As a strategist, you will identify and solve challenges that significantly impede the security groups success, by designing forward-looking approaches for SAP's unique and complex security requirements and partnering with key allies across the business to implement creative and scalable solutions.

The Role

The Incident Response Strategist team is looking for an experienced Senior Incident Response Detection Engineer to be an integral part of our Global Security organization. The ideal candidate comes with years of real-world experience in developing detection playbooks and hunts, and continually strives to improve processes and response times. As a strategist, a successful candidate will help lead continued process and tool improvements, mentor more junior team members, and act as a detection lead during large scale incidents.

As a part of the IR team, your responsibilities will include:

  • Develop and engineer security detections to identify anomalous or malicious activities

  • Automate identification, response, and remediation of malicious activities for consistent and timely response

  • Support threat intelligence, threat hunting, and incident response activities

  • Collaborate with the red team to continuously assess the environment and build coverage for threats

  • Ensure the team has proper visibility across environments

  • Partner with analysts, investigators, and managers to identify opportunities for systemic improvement in tooling or processes

  • Own key objectives and work with our partners in security architecture, vulnerability management, Lines of Business, IT, Cloud Operations, Cyber Threat Intelligence, and external vendors to design and deliver solutions to our most pressing challenges.

Role Requirements

You should have demonstratedexperience in cyber-attack detections and of working in a similar 24/7 environments managing cases with enterprise SIEM or Incident Management systems. We are looking for analytical, critical thinking, solution orientated problem solvers. You should be quick to learn and adapt and operate in a large dynamic environment.

You will also need to have the following technical skills and experience:

  • 4-6 years of experience working in a 24/7 operational environment (Cyber Intelligence Fusion Center, SOC, NOC, Operations Center)

  • Demonstrated ability to create effective detections at scale

  • Knowledge of TTP methods and frameworks

  • Previous system, dev[sec]ops, or network administration experience

  • Strong core networking skills

  • Splunk Search Processing Language (SPL) skills

  • Able to work in a global and environment across multiple time zones

  • Scripting or software development abilities and experience with security automation

  • Experience managing cases with enterprise SIEM or Incident Management systems

We are SAP

SAP innovations help more than 400,000 customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with 200 million users and more than 100,000 employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, we build breakthroughs, together.

Our inclusion promise

SAPs culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone regardless of background feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better and more equitable world.

SAP is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to the values of Equal Employment Opportunity and provide accessibility accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for employment with SAP and are in need of accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to Recruiting Operations Team: Americas: or , APJ: , EMEA: .

EOE AA M/F/Vet/Disability:

Qualified applicants will receive consideration for employment without regard to their age, race, religion, national origin, ethnicity, age, gender (including pregnancy, childbirth, et al), sexual orientation, gender identity or expression, protected veteran status, or disability.

Successful candidates might be required to undergo a background verification with an external vendor.

Requisition ID:310320| Work Area: Information Technology| Expected Travel: 0 - 10%| Career Status: Professional| Employment Type: Regular Full Time| Additional Locations:Virtual - USA