Principal Product Manager - Identity, Authentication & Government Cloud Security

SAP LTD.
Palo Alto, CA, United States
4 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

User Authentication Cloud Computing Cloud Computing Security Identity and Access Management OAuth OpenID Cloud Services Security Assertion Markup Language (SAML) SAP (Applications) SAP Business Suiteing Single Sign-On Cloud Platform System
+1 more
SAP Business Technology Platform

Job description

At SAP, we keep it simple: you bring your best to us, and we’ll bring out the best in you. We’re builders touching over 20 industries and 80% of global commerce, and we need your unique talents to help shape what’s next. The work is challenging - but it matters. You’ll find a place where you can be yourself, prioritize your wellbeing, and truly belong. What’s in it for you? Constant learning, skill growth, great benefits, and a team that wants you to grow and succeed.

This is a hybrid role based out of Palo Alto, CA. Hybrid is 3 days a week onsite, 2 days a week remote.

The Principal Product Manager will lead production requirement definition for the SAP Business Network authentication and platform security framework on NS2 and SAP Sovereign Cloud deployments. This role sits at the intersection of US Government identity requirements, cloud platform security, and SAP product strategy, and is critical to enabling government customers to operate SAP Business Network in FedRAMP-authorized, sovereign environments.

The successful candidate will drive the end-to-end product requirement lifecycle for government-grade authentication features, including Bring Your Own IdP (BYOIdP) support, Single Sign-On federation, and the Authorization Management Service. You will serve as the internal subject matter expert on FedRAMP certification requirements, translating compliance mandates into well-scoped, deliverable product requirements. This role will collaborate closely with engineering, security, and compliance teams as well as third-party identity providers.

The candidate must be capable of translating complex security and compliance requirements into actionable product specifications and communicating those to both technical and executive stakeholders. They will review government customer use cases and requirements, represent the product roadmap to partners and agencies, and ensure that SBN’s security posture meets the evolving demands of FedRAMP High and SAP Sovereign Cloud environments.

Responsibilties :

  • Lead production requirement definition for the SBN Authentication Framework targeting NS2 and SAP Sovereign Cloud
  • Define and own product requirements for US Government BYOIdP support, including third-party identity provider integrations
  • Drive the Authorization Management Service roadmap to meet government access control mandates
  • Serve as internal SME on FedRAMP certification processes and translate compliance obligations into actionable engineering requirements
  • Partner with SAP BTP, SAP Identity Authentication Services (IAS), and cloud security teams to define and validate SSO and federation architectures
  • Engage government customers and agency stakeholders to validate requirements, prioritize features, and gather feedback
  • Communicate product vision, security rationale, and roadmap status to cross-functional teams and leadership
  • Ensure alignment between platform security capabilities and the broader NS2 and Sovereign Cloud product strategy

Requirements

  • 10 years of product management experience, with a focus on platform security, identity, or access management
  • Deep knowledge of identity protocols (SAML, OIDC, OAuth 2.0) and enterprise SSO architectures
  • Hands-on familiarity with SAP BTP Security Model and SAP Identity Authentication Services (IAS)
  • Demonstrated experience with FedRAMP certification requirements and the Authorization to Operate (ATO) process
  • Strong written and verbal communication skills; ability to explain security concepts to non-technical stakeholders
  • A goal-focused team player comfortable operating in a fast-paced, cross-functional, and compliance-driven environment

About the company

SAP Business Network is the world’s largest B2B commerce and collaboration platform, connecting millions of trading partners across procurement, logistics, asset management, and supply chain. We are building the Network of Intelligent Enterprises, a unified, AI-powered platform that transforms how companies collaborate with suppliers, logistics providers, contract manufacturers, and partners.

Bring out your best

SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services for database, analytics, intelligent technologies, and experience management. As a cloud company with two hundred million users and more than one hundred thousand employees worldwide, we are purpose-driven and future-focused, with a highly collaborative team ethic and commitment to personal development. Whether connecting global industries, people, or platforms, we help ensure every challenge gets the solution it deserves. At SAP, you can bring out your best.

We win with inclusion

SAP’s culture of inclusion, focus on health and well-being, and flexible working models help ensure that everyone - regardless of background - feels included and can run at their best. At SAP, we believe we are made stronger by the unique capabilities and qualities that each person brings to our company, and we invest in our employees to inspire confidence and help everyone realize their full potential. We ultimately believe in unleashing all talent and creating a better world.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

2:41 min

Transitioning artificial intelligence infrastructure into scalable commodity cloud services

juarezjunior juarezjunior · World Congress 2024

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all