As an SAP Security Operations Engineer at Randstad Digital, you aren't just monitoring logs—you are the frontline defender of our client’s most critical business data. You will bridge the gap between traditional CyberSec and SAP Basis, ensuring that complex ERP landscapes are shielded against modern exploits, misconfigurations, and unauthorized access.
Your Key Responsibilities
In this role, you will lead the detection and response efforts for a high-stakes SAP environment:
Detection & Rule Building: Create custom detection rules for SAP application and infrastructure layers to identify malicious activity and system misuse.
Monitoring & Telemetry: Oversee SAP logs, OS/AWS logs, and EDR telemetry (CrowdStrike) within SIEM dashboards (Splunk) to catch indicators of compromise.
Incident Response & Forensics: Perform triage and deep-dive investigations into SAP-related alerts, conducting forensic analysis across application and network layers.
Vulnerability Management: Monitor SAP HotNews, review system deviations, and recommend compensating controls for unpatched vulnerabilities.
Tool Optimization: Support and tune specialized security tools such as Onapsis, Pathlock, or RedSeal.
Reporting & Governance: Document monthly security health, KPIs, and audit logs to ensure continuous improvement of the security posture.
Your Profile
We are looking for a hybrid professional who understands both the "Security" and "Basis" worlds.
SAP Expertise: Strong grasp of SAP ERP security concepts (Security Audit Logs, RFC activity, roles/authorizations, and ABAP fundamentals).
SecOps Toolkit: Proven experience with SIEM (Splunk), log analysis, and endpoint detection tools.
Infrastructure Knowledge: Familiarity with AWS cloud security architecture, network segmentation, and WAFs.
Legacy & Modern Systems: Ability to investigate OS-level threats on legacy systems and correlate them with SAP application behavior.
Technical Literacy: Proficient in scripting (Python, PowerShell, or Terraform) for automation and log enrichment.
Security Tools: Experience with CrowdStrike, Cloudflare, Qualys, or Fortinet is a significant advantage.
Why Randstad Digital?
At Randstad Digital Switzerland, we offer you the opportunity to work on large-scale, high-impact projects with the backing of a global leader in technology talent.
Professional Growth: Access to continuous learning and certifications.
Expert Community: Join a team of specialists who are redefining digital transformation.
Flexibility: Competitive Swiss employment conditions with modern hybrid working models.
Due to urgency of this position, we are only able to accept applications from candidates based in Switzerland or from the EU
...