Sr Consultant - Enterprise Application Security Engineer

  • Full-time
  • Work Model: On-Site

Company Description

Metro Global Solution Center (MGSC) is internal solution partner for METRO, a €31.5 Billion international wholesaler with operations in 32 countries through 625 stores & a team of 85,000 people globally. Metro operates in a further 10 countries with its Food Service Distribution (FSD) business and it is thus active in a total of 34 countries.

MGSC, location wise is present in Pune (India), Düsseldorf (Germany) and Szczecin (Poland). We provide Finance, HR, IT & Business operations support to 31 countries, speak 24+ languages and process over 18,000 transactions a day. We are setting tomorrow’s standards for customer focus, digital solutions, and sustainable business models. For over 12 years, we have been providing services and solutions from our two locations in Pune and Szczecin. This has allowed us to gain extensive experience in how we can best serve our internal customers with high quality and passion. We believe that we can add value, drive efficiency, and satisfy our customers.

Website: https://www.metro-gsc.in

Company Size: 1100-1200

Headquarters: Pune, Maharashtra, India

Type: Privately Held

Inception:  2011

Job Description

ABOUT THE ROLE:

Functionally reporting to the Head of Security and Privacy Engineering as part of the Security Engineering group. Individuals will contribute to security implementations, technical activities, and as embedded support for the security platform areas. This role will help to ensure security requirements and provide guidance on best practices across a diverse technology stack while ensuring security providence throughout the organization.

 

FUNCTIONAL RESPONSIBILITIES:

  • Participate in the design, build, and implementation of security controls across CI/CD pipelines including SAP transport landscapes, ensuring security guardrails and remediation of risk and vulnerabilities in a timely manner.
  • Work with platforms to ensure SAP environments including S/4HANA, NetWeaver ECC, and Solution Manager with an emphasis on system hardening, configuration baselines, and continuous validation as part of SSDLC.
  • Support with Identity and Access Management governance including role design, segregation, service accounts, and best practices
  • Provide guidance and technical understanding on SAP related remediations using tooling like Security bridge including aiding in investigation and risk assessment while validating fixes in collaboration with SAP Security teams.
  • Assist in auditing, and continuous improvement of SAP systems.
  • Participate actively in the engineer community led by METRO Corporate Information Security to define best practices, align way-of-working, prioritize and execute on the needed activities across SAP platforms, modules, and environments.

Qualifications

SAP security experience in one, or more of the following:

  • Hands on experience with various authorization concepts, roles, duties, and privileged access concepts.
  • Experience integrating SAP security checks into delivery workflows, including SAP transport pipelines utilizing CI/CD patterns and third-party tooling such as Security Bridge
  • Experience designing, refining and teaching security baselines for SAP systems.
  • Experience securing SAP workloads in cloud environments, in conjunction with Cloud engineers.
  • Experience working with and investigating systems as part of incident response.
  • Experience designing and enforcing secure baseline configurations including security parameters, interface hardening, transport and change controls, security alignment and identity and access foundations.

And:

  • Experience with LLMs, AI, and agentic coding platforms such as Github Co-pilot, Gemini, or Claude Code.
  • Proven experience as a security subject-matter expert, mentoring and raising awareness to security mandates.
Privacy NoticeImprint