




Job Summary: Join a company that loves transforming with technology and embraces diversity, serving as the security reference for SAP projects and corporate integrations. Key Highlights: 1. Serve as the security reference for SAP projects and corporate integrations 2. Support the design and implementation of secure system integrations and APIs 3. Define and validate security requirements for communication and data protection Join a company that loves transforming with technology and embraces diversity in all its forms! **Responsibilities and Duties** Serve as the security reference for projects involving SAP and corporate integrations Evaluate solution architectures from a security perspective, identifying risks and necessary controls Support the design and implementation of: Secure system integrations API exposure and consumption Authentication and authorization flows Define and validate security requirements for: Inter-system communication Identity and access management Protection of sensitive data Support architecture, development, and infrastructure teams in adopting security best practices Contribute to risk analyses, threat modeling, and architecture reviews Support investigation and resolution of security incidents related to integrations and access Document security standards, architectural decisions, and guidelines **Requirements and Qualifications** Experience as a Security Engineer in complex corporate environments Strong knowledge of security architecture applied to integrations and distributed systems Experience in: System integrations (SAP and non-SAP) REST/SOAP APIs and integration patterns API security (authN, authZ, rate limiting, mTLS, etc.) Solid knowledge of identity and authentication, including: SAML 2\.0, OAuth 2\.0, and OpenID Connect IAM concepts and identity federation Experience with SAP environments, including: SAP BTP SAP S/4HANA (on\-premise and cloud) Integrations with SAP and third-party solutions Practical knowledge of: Encryption in transit and at rest Certificate and key management Secure inter-system communication Experience with cloud security (AWS, Azure, or GCP), even if not exclusively SAP-related Nice-to-have Differentiators: Experience with SAP IAS / IPS (functional and architectural perspective) Knowledge of API Gateways (Apigee, Azure API Management, Kong, etc.) Experience with Zero Trust Architecture Experience with security tools (WAF, DLP, CASB, SIEM) Knowledge of regulatory requirements and compliance **Additional Information** Want to learn more about us and join the team building the future? **\#VemSerSpreader** **Transforming the World with Technology** We are nearly 2\.500 Spreaders, spread across 22 Brazilian states through Spread Anywhere, enabling us to work **100% remotely**, depending on the contract model. We are digital, hyperconnected, and practice one of our core cultural values—\#collaboration—every day, no matter where we are. **Innovation to Develop the Future** Spread is an innovation company with 41 years of history, offering comprehensive technology and digital business solutions. Today, we offer a robust portfolio of services, including application development, Quality Assurance, IT Outsourcing, Talent on Demand, Artificial Intelligence solutions, and SAP and S/4HANA consulting and implementation. We adopt a customer-centric approach, where customer experience is our top priority and guides our actions and strategies. This commitment is reflected in our NPS score of 75, positioning us in the quality zone and demonstrating our customers’ trust and satisfaction. **Diversity, Equity & Inclusion** Here, diversity and inclusion are not just words—they are genuine commitments. We strive to ensure all Spreaders feel **valued, respected, and empowered** to reach their full potential. We recognize that true diversity goes beyond superficial aspects and encompasses a broad range of characteristics, such as gender, ethnicity, sexual orientation, age, and abilities.


