Job Description
rovides advanced level skills and knowledge in the design and review of secure networks, applications, systems, infrastructure, environments and security systems, ensuring requirements are in line with Corporate information security policies and processes, as well as Line of Business (including Cloud) security standards.
Key Responsibilities:
Drive and champion security tool development (e.g. scanning tools)
Consult software development teams in design and architecture of safe and secure systems through Threat Modeling and modeling exercises
Champion and consult on secure development lifecycle practices
Design and integrate verification and posture reporting mechanisms
Define security configuration and implementation best practices
Proto@type, design, and implement security solutions for new and challenging problems
Evaluate, select, and deploy technical security controls and tools to enhance protection of networks, applications, and data.
Conduct security risk assessments, threat modeling, and architecture reviews for critical systems and new initiatives.
Collaborate with IT and business units to integrate security into project lifecycle, including cloud migrations, new application deployments, and third-party solutions.
Define and maintain security policies, procedures, and technical documentation.
Monitor emerging threats and technology trends; recommend controls and risk mitigation strategies.
Participate in incident response activities, including investigation, remediation, and reporting on security incidents.
Provide mentorship and technical leadership to junior security team members.
Ensure compliance with relevant regulations (e.g., GDPR, HIPAA, PCI DSS, SOX) and internal security requirements.
Quals
Bachelor's or Master's degree in Computer Science, Information Security, or related field.
7+ years of experience in information security, including architectural design.
Strong understanding of security principles, frameworks (e.g., NIST, ISO 27001), and regulatory requirements.
Hands-on experience with network, application, infrastructure, and cloud security technologies (e.g., firewalls, SIEM, IAM, encryption solutions, AWS/Azure/GCP)
Professional certifications such as CISSP, CISM, CCSP, or SABSA strongly preferred.
Excellent analytical, communication, and interpersonal skills.
Ability to translate complex security requirements into practical technical solutions.
Experience building automated security solutions
Strong security experience, particularly with focus in one of the following areas:
Defensive & Offensive Security
Service architecture and Design Patterns
Strong collaboration and communication skills
Preferred Skills:
Experience with DevSecOps practices and tools.
Familiarity with secure software development lifecycle (SDLC) methodologies.
Experience scaling operational activities via Python, Bash, and other tools
DevOps or SRE experience operating large, distributed, continuously deployed services
Knowledge on bridging security engineering requirements into the software development life cycle.
Security training and mentoring experience
Experience with statistical/mathematical predictive modeling
Experience with machine learning / artificial intelligence
Experience designing resilient systems that support quick recovery
Experience with container orchestration and management
History of collaborating and integrating processes with software development teams, data scientists, business and other technical roles
Responsibilities
Provides advanced level skills and knowledge in the design and review of secure networks, applications, systems, infrastructure, environments and security systems, ensuring requirements are in line with Corporate information security policies and processes, as well as Line of Business (including Cloud) security standards.
Evaluates existing and proposed technical architectures for security risk, provides advanced technical advice to support the design and development of secure architectures and identifies security controls to mitigate those risks.
Provides technical leadership regarding security protocols related to all aspects of enterprise and cloud computing.
Evaluations of security architecture may include design assessment, risk assessment, threat modeling and code review.
Designs automated toolsets for implementing security controls, and monitoring the security of networks, systems and applications.
Identifies and prioritizes security design issues and vulnerabilities.
Conducts security research regarding threats, troubleshoots issues and manages upgrades on security platforms.
Provides advanced level advice on data security issues, compliance, and privacy requirements.
May train and mentor other staff.
Disclaimer:
Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from: $109,200 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
Medical, dental, and vision insurance, including expert medical opinion
Short term disability and long term disability
Life insurance and AD&D
Supplemental life insurance (Employee/Spouse/Child)
Health care and dependent care Flexible Spending Accounts
Pre-tax commuter and parking benefits
401(k) Savings and Investment Plan with company match
Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
11 paid holidays
Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
Paid parental leave
Adoption assistance
Employee Stock Purchase Plan
Financial planning and group legal
Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
About Us
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling +1 888 404 2494 in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.