Talent.com
Hardware Security Consulting Engineer

Hardware Security Consulting Engineer

OracleBoston, MA, United States
2 days ago
Job type
  • Full-time
Job description

Job Description

As consulting hardware security engineer, you will be responsible for defining security requirements for hardware used within OCI, conducting security / architectural reviews and assessments, offensive testing for hardware and firmware and mentoring junior engineers

Responsibilities

Job Description

Principal Engineer - Hardware Security

Oracle Cloud (United States)

The Oracle Cloud Infrastructure (OCI) team can provide you the opportunity to build and operate a suite of massive scale, integrated cloud services in a broadly distributed, multi-tenant cloud environment. OCI is committed to providing the best in cloud products that meet the needs of our customers who are tackling some of the world's biggest challenges.

We offer unique opportunities for smart, hands-on security engineers with the expertise and passion to solve difficult problems in distributed highly available services and virtual infrastructure. At every level, our engineers have a significant technical and business impact designing and building innovative new systems to power our customer's business critical applications. Our customers run their businesses on our cloud, and our mission is to provide them with the most secure cloud services.

The OCI Hardware Security group conducts Security assessments of the production hardware that runs our cloud, and develops the requirements for future Networking, Storage, Compute components. We work closely across Oracle, with third party vendors, and with standards organization to influence the next generation of hardware platform security. In addition to defining the best hardware, OCI HW Security knows that platform security also depends on how that hardware is used. To that end, HW Security also works closely with OCI's operations and engineering teams, constantly striving to improve Oracle Cloud's overall operational security posture by defining the supply chain and operational requirements to establish best practices for managing security for every device in our data centers.

A security-focused engineer at any level can have significant technical and business impact. Come shape the future of one of the largest clouds on earth with us. Overall, the OCI Security Architecture team performs a variety of work ranging from cloud security, application security, vulnerability analysis, threat modeling, and hacking / enterprise network penetration.

The biggest challenges for the team is the dynamic and fast growth of the business, driving us to improve our systems, tools, and automation to scale to our security expertise several orders of magnitude greater than what we can support today. We understand that software is living and needs investment. The challenge is making the right tradeoffs, communicating those decisions effectively, and crisp execution.

Responsibilities :

Develop and communicate requirements for new vendors and hardware (compute, storage, networking)

Engage with Oracle Hardware Division and third party vendors to understand their roadmaps

Create planning roadmaps to drive multi-year security improvements across the OCI Infrastructure

Review or assess engineering changes, or revisions of, an existing component. E.g. : new firmware for a device, vendor revision of an existing device

Identify and participate in external standards groups to drive improvements across the industry

Consult development teams and third-party vendors in design and architecture of secure systems

Champion and consult on secure development life-cycle practices

Communicate and educate Senior Management on key Security topics and directions

Perform security / architectural / design reviews for security controls in hardware, offensive security assesments for hardware and firmware

Minimum Qualifications

Bachelor's degree in Electrical Engineering, Computer Science or related field or equivalent experience

10+ years of experience in hardware security architecture / engineering / validation / planning or related area

Demonstrated competency in application / product / software / hardware security

Preferred Qualifications

Ability to write clear and concise product security requirements

Ability to effectively assess risk from findings and threat models and identify proper risk mitigation controls

Ability to succeed individually or collaboratively, whether working internally or with external organizations and individuals

Experience working effectively in a large and distributed company

Basic knowledge of x86 and / or ARM server platform architecture

Knowledge of standard UEFI architecture and implementation

Knowledge of modern platform security technologies like TPM 2.0 and TCG SRTM / DRTM

Knowledge of vendor-specific TEE technologies such as Intel SGX

Familiarity with common embedded communications interfaces (SPI, I2C, RS232-style serial)

Ability to read and understand simple schematic diagrams

Basic knowledge of enterprise and / or datacenter networking architecture

Excellent organizational, verbal and written communication skills

Our senior team members possess expertise in the areas listed above in addition to some of the following :

Master's degree in Electrical Engineering, Computer Science or related field or equivalent experience

10+ years of experience in vulnerability discovery / security engineering / hardware security / security product management

Extensive research or experience with multiple classes of security bugs

Specification and / or design of hardware security features

Expert knowledge of x86 and / or ARM server platform architecture

Ability to work with most common programming languages (C, C++, Java, Python, Ruby, Go, Rust)

Ability to read and understand x86 and / or ARM assembly language

Ability to read and understand large and complex platform-level schematics

Knowledge of host and network virtualization technologies and how to use them securely

Significant experience operating in a large-scale DevOps or CICD environment

Conducting training / thought leadership / conference talks / publications

Disclaimer :

Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.

Range and benefit information provided in this posting are specific to the stated locations only

US : Hiring Range in USD from : $120,100 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral.

Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.

Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.

Oracle US offers a comprehensive benefits package which includes the following :

Medical, dental, and vision insurance, including expert medical opinion

Short term disability and long term disability

Life insurance and AD&D

Supplemental life insurance (Employee / Spouse / Child)

Health care and dependent care Flexible Spending Accounts

Pre-tax commuter and parking benefits

401(k) Savings and Investment Plan with company match

Paid time off : Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.

11 paid holidays

Paid sick leave : 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.

Paid parental leave

Adoption assistance

Employee Stock Purchase Plan

Financial planning and group legal

Voluntary benefits including auto, homeowner and pet insurance

The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.

Career Level - IC5

About Us

As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.

We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.

Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.

We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling +1 888 404 2494 in the United States.

Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

Create a job alert for this search

Hardware Engineer • Boston, MA, United States

Related jobs
  • Promoted
Security Engineer, Audible Security

Security Engineer, Audible Security

AmazonCambridge, MA, United States
Full-time
At Audible, we believe stories have the power to transform lives.It's why we work with some of the world's leading creators to produce and share audio storytelling with our millions of global liste...Show moreLast updated: 2 days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

VirtualVocationsDorchester, Massachusetts, United States
Full-time
A company is looking for a Senior Security Engineer to lead the design and implementation of security controls for client systems. Key Responsibilities Apply Zero Trust principles and translate ar...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer

Security Engineer

METABoston, MA, United States
Full-time
Meta), formerly known as Facebook Inc.When Facebook launched in 2004, it changed the way people connect.Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around t...Show moreLast updated: 30+ days ago
  • Promoted
Advanced Security Engineer - Cyber Security

Advanced Security Engineer - Cyber Security

RelativityBoston, MA, United States
Full-time
As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer

Security Engineer

The Ceres GroupBoston, MA, United States
Full-time
Reporting to the manager of the IT Networking & Security team, this position is part of the IT Infrastructure group.The IT Security Engineer has responsibility for the design and implementation of ...Show moreLast updated: 2 days ago
  • Promoted
Senior Principal Systems Engineer - I&T Lead Onsite

Senior Principal Systems Engineer - I&T Lead Onsite

RaytheonAndover, Massachusetts, United States of America
Full-time
MA600 : Andover, MA 366 Lowell St 366 Lowell Street , Andover, MA, 01810-5423 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is rooted in our values...Show moreLast updated: 2 days ago
  • Promoted
Security Engineer

Security Engineer

TeradataBoston, MA, United States
Permanent
At Teradata, we believe that people thrive when empowered with better information.That's why we built the most complete cloud analytics and data platform for AI. By delivering harmonized data, trust...Show moreLast updated: 2 days ago
  • Promoted
Offensive Security Engineer, Assessments (Web3)

Offensive Security Engineer, Assessments (Web3)

CoinbaseBoston, MA, United States
Full-time
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Security Engineer - Detection

Security Engineer - Detection

VirtualVocationsDorchester, Massachusetts, United States
Full-time
A company is looking for a Security Engineer - Detection & Response.Key Responsibilities Implement and operate detection systems, including a scalable cloud-native SIEM platform Leverage AI to a...Show moreLast updated: 15 hours ago
  • Promoted
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

RelativityBoston, MA, United States
Full-time
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer

Security Engineer

Spyglass Partners LLCAndover, MA, United States
Full-time
Must have extensive experience as a Security Engineer.Spyglass Partners LLC has over 20 years of experience as a nationwide staffing firm and is your ideal source for all your project-based tempora...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Hardware Design Engineer

Senior Hardware Design Engineer

RaytheonTewksbury, US
Full-time
MA131 : Tewksbury, MA Bldg 1 Assabet 50 Apple Hill Drive Assabet - Building 1, Tewksbury, MA, 01876 USA.Person, or Immigration Status Requirements : . The ability to obtain and maintain a U.At Raytheo...Show moreLast updated: 15 hours ago
  • Promoted
Security Engineer

Security Engineer

Northeastern UniversityBoston, MA, United States
Full-time
Northeastern University is looking for a highly motivated and experienced candidate for the role of Security Engineer.Reporting to the Information Security Manager, this individual performs critica...Show moreLast updated: 30+ days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

SevenAIBoston, MA, United States
Full-time
We are seeking a Senior Security Engineer to join our team, focusing on defining security workflows and incident response (IR) strategies. You will design and implement advanced security use-cases, ...Show moreLast updated: 2 days ago
  • Promoted
Staff Engineer, Endpoint Security

Staff Engineer, Endpoint Security

VirtualVocationsLowell, Massachusetts, United States
Full-time
A company is looking for a Staff Engineer, Endpoint Agent.Key Responsibilities Own the technical vision and architecture of the cross-platform endpoint agent Collaborate with cross-functional te...Show moreLast updated: 2 days ago
  • Promoted
  • New!
SaaS Security Customer Engineer

SaaS Security Customer Engineer

VirtualVocationsLowell, Massachusetts, United States
Full-time
A company is looking for a Customer Engineer specializing in SaaS security and compliance.Key Responsibilities Guide customers through the implementation of Microsoft Purview solutions for data g...Show moreLast updated: 9 hours ago
  • Promoted
Sr. Security Engineer

Sr. Security Engineer

IBMCambridge, MA, United States
Full-time
A career in IBM Software means you'll be part of a team that transforms our customer's challenges into industry-leading solutions. We are an infinitely curious team, always seeking new possibilities...Show moreLast updated: 2 days ago
  • Promoted
System Security Engineer

System Security Engineer

Draper LabsCambridge, MA, United States
Full-time
Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA.The 2,000+ employees of Draper tackle important national challenges with a promise of delivering ...Show moreLast updated: 30+ days ago
  • Promoted
Principal Security Engineer

Principal Security Engineer

VirtualVocationsDorchester, Massachusetts, United States
Full-time
A company is looking for a Principal Security Applied Field Engineer.Key Responsibilities Support the design and architecture of secure, scalable customer workflow solutions tailored to financial...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer

Security Engineer

VirtualVocationsLowell, Massachusetts, United States
Full-time
A company is looking for a Security Engineer.Key Responsibilities Design, evaluate, test, implement, and configure security tools and services for cloud workloads, networks, and endpoints Collab...Show moreLast updated: 30+ days ago