Talent.com
Oracle
Senior Principal Offensive Security Engineer (OCI)Oracle • Nashville, TN, United States
No longer accepting applications
Senior Principal Offensive Security Engineer (OCI)

Senior Principal Offensive Security Engineer (OCI)

Oracle • Nashville, TN, United States
30+ days ago
Salary
$120,100.00 yearly
Job type
  • Permanent
Job description

Job Description

Offensive Security Engineer
Oracle Cloud Infrastructure Group

The Oracle Cloud Infrastructure (OCI) Offensive Security team provides OCI with the capabilities to ensure our systems and services meet the security objectives we communicate to customers. The Offensive Security group performs security assessments, vulnerability research, static and dynamic analysis research, penetration testing, red-teaming, and security tool development. We ensure the security of the software and hardware that runs our cloud infrastructure and strive for continuous improvement. The OCI Offensive Security group works as a team. We don't fit people into predefined roles. We bring together the right people who enhance team capability and build roles around each team member's skills and interests.

Values are OCI's foundation and how we deliver excellence. We strive for equity, inclusion, and respect for all. We are committed to the greater good in our products and our actions. We are continually learning and taking opportunities to grow our careers and ourselves. We challenge each other to stretch beyond our past to build our future. You can learn more about us by visiting .

Are you interested in building large-scale distributed security systems and tools for the cloud? Do you love the idea of working in an environment with the excitement of a start-up, but the financial backing of a Fortune 100 company? This role offers huge upside potential, high visibility, and fast career growth without the risks of a typical start-up. We are growing fast, maturing, and working on results-oriented initiatives. A security-focused leader can have significant technical and business impact. This is a unique opportunity to work with smart people to solve complex problems in distributed systems, security, and multi-tenant Infrastructure-as-a-Service (IaaS) operating at massive scale. The biggest challenges for the team is the dynamic and fast growth of the business, driving us to improve our systems, tools, and automation to scale to our security expertise several orders of magnitude greater than what we can support today. We understand that software is living and needs investment. The challenge is making the right tradeoffs, communicating those decisions effectively, and crisp execution. We hope you like working at scale as much as we do because Oracle has no shortage of it! Craft the future of one of the largest clouds on earth with us!

Our ideal candidate is a hardworking and hands-on engineer who cares about security and improves their knowledge every day. We're looking for hands-on cloud hackers with expertise and passion in identifying and exploiting complex security problems in distributed, multi-tenant services and infrastructure. We operate distributed systems at a high scale, worldwide. These are the foundations of our cloud environment. Our customers run their businesses on our cloud, and our mission is to provide them with a best-in-class and ever-expanding set of cloud-based services.

A security-focused engineer at any level can have significant technical and business impact. Come shape the future of one of the largest clouds on earth with us. To get you excited, here is a list of some of the projects over the last year this team has worked on:

  • Big iron - ExaLogic, ExaData, UltraSPARC, InfiniBand
  • Firmware reverse engineering of various hardware components
  • Developing custom fuzzing platforms for code-coverage analysis
  • Several different hypervisors
  • Linux and Windows kernel mode non-sense
  • The list goes on and on!

This role is for a hands-on cloud hacker on the Offensive Security Team.

This team is targeting candidates in the . who can work ONSITE in Nashville-TN (priority) or Austin-TX (secondary). Relocation Assistance provided. (This is not a remote position)

Must be a . Citizen or Permanent Resident of the United States. Visa sponsorship is not available for this position.

Responsibilities

  • You enjoy diving into complex source code audits to reveal subtle security vulnerabilities
  • Writing new tools such as fuzzers in languages such as C/C++, Python, Ruby, Go or Java,
  • Tearing apart an undocumented file format or network protocol
  • Coming up with novel techniques to solve unique and interesting security problems
  • Review new services, including their integration points with existing services
  • Guide security projects beyond the scope of performing assessment work
  • Identify and disclose vulnerabilities to 3rd party vendors
  • Design complex systems and services that improve quantity or quality of offensive security output
  • You'll reviews new features of moderate complexity in existing systems, identifying areas of new risk created; work with service teams to explore and recommend mitigations; and collaborate across service teams and security stakeholders.
  • Review new services, including their integration points with existing services
  • Guide security projects beyond the scope of performing assessment work: identifying and disclosing vulnerabilities to 3rd party vendor or design of complex systems and services that improve quantity or quality of offensive security output
  • You'll drive organization wide improvement in the form of engineering practices, security architecture, operation practices or development practices.
  • You'll reviews new services and their integration points with other services; guides security assessments of our most complex or important products, and is independently capable of balancing business and security risk; and apply your expertise in business-critical security area to advance the business relative to the industry.

Qualifications

  • 6+ years of experience in vulnerability discovery / security engineering / application security
  • Threat modeling experience of microservice architectures
  • Experience working in a large cloud or software company
  • Extensive research or experience with multiple classes of security bugs
  • Evidence of contribution to the security community in the form of conducting training / thought leadership / conference talks / publications
  • Improve security throughout the organization, identifying areas of risk or opportunities for improvement and piloting them
  • Be a subject matter expert in at least one business-critical area (. cryptography, hardware security, operating systems, authentication protocols, fuzzing, DoS mitigation, networks, distributed systems)
  • Collaborative track record working between internal teams and external organizations
  • Excellent organizational, verbal and written communication skills
  • Intermediate knowledge of Linux OS Internals
  • Advanced knowledge of one programming language and ability to read two high level programming language such as Java

Preferred Qualifications

  • Undergraduate or Graduate degree in Electrical Engineering, Computer Science, or another related field or equivalent work experience.
  • Hands-on experience developing services on a public cloud platform (., AWS, Azure, Oracle)
  • Building continuous integration/deployment pipelines with robust testing and deployment schedules
  • Experience working with internal customers and translating requests into prioritized work or features
  • Expertise in applying risk identification techniques to develop security solutions
  • Experience and understanding of Cryptographic algorithms, standards, implementation and application
  • Experience and understanding of threat modeling, penetration testing, reverse engineering and attacks on software
  • Experience working with large enterprise customers
  • Active TS/SCI Clearance
Disclaimer:

Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.

Range and benefit information provided in this posting are specific to the stated locations only

US: Hiring Range in USD from: $120,100 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral.

Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle’s differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.

Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance

The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.

Career Level - IC5


Create a job alert for this search

Senior Principal Offensive Security Engineer (OCI) • Nashville, TN, United States

Similar jobs

Senior CIAM Engineer - Remote Backend & Security

AffirmNashville, TN, United States
Remote
Full-time

A financial services company is seeking a backend engineer specializing in CIAM (Customer Identity and Access Management) systems.The role involves designing and implementing secure authentication ... Show more

 • Promoted

Head of Information Security

Grayson Search PartnersNashville, TN, United States
Full-time

Get AI-powered advice on this job and more exclusive features.The Head of Information Security will lead the organization’s cybersecurity and IT risk management program, ensuring the confidentialit... Show more

 • Promoted

Safety & Security Officer

Marriott International, IncNashville, TN, United States
Full-time

Additional InformationEvening Shift Job Number26041650 Job CategoryLoss Prevention & Security LocationW Nashville, 300 12th Ave S, Nashville, Tennessee, United States, 37203 VIEW ON MAP Schedul... Show more

 • Promoted

Chief Information Security Officer (CISO)

ConfidentialNashville, TN, United States
Full-time

Chief Information Security Officer (CISO).Accomplished executive search firm.The Company is seeking a Chief Information Security Officer (CISO) to oversee and direct its information security strate... Show more

 • Promoted

Information Security Manager

Kinsley Power SystemsNashville, TN, United States
Full-time

The Information Security Manager position is an exciting role for the right candidate with technical know-how and leadership qualities who is eager to drive security initiatives from start to finis... Show more

 • Promoted

Threat Intelligence Engineer

DataAnnotationTN, United States
Full-time +1

We are looking for experienced cybersecurity professionals to join our team to help train AI models.In this role, you will evaluate AI-generated security content, solve technical cybersecurity prob... Show more

 • Promoted

Hands-On Enterprise Architect: Cloud & Security

Insight GlobalNashville, TN, United States
Full-time

A technology staffing firm is seeking an Enterprise Architect to design and implement infrastructure systems, ensuring optimal performance and security.This role combines hands-on engineering and s... Show more

 • Promoted

Senior Director, Cloud & Healthcare IT Security

Model OncologyNashville, TN, United States
Full-time

A healthcare technology firm based in Nashville, TN, is seeking a Senior Director of Information Security.This key role involves overseeing security initiatives, infrastructure management, and ensu... Show more

 • Promoted

Corporate Security Officer

Securitas Inc.Nashville, TN, United States
Full-time

Corporate Security Officer We are seeking a professional, highly disciplined Corporate Security Officer to provide physical security support for a high-profile client.This role requires more than ... Show more

 • Promoted

Security Officer Access Control Associate

Allied Universal SecurityNashville, TN, United States
Part-time

Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in a dynamic, welcoming, and collaborati... Show more

 • Promoted

Sr. Network Security Engineer

Two95 International Inc.Nashville, TN, US
Full-time
Quick Apply

Minimum of 8 years’ experience (preferred); (At least 5 years of experience with cybersecurity or information assurance);.BS degree in Computer Science or related field (required); MS degree (prefe... Show more

Residential Security Systems - Independent Sales Executive

Indigo Solutions GroupNashville, TN, US
$115,000.00 yearly
Full-time
Quick Apply

Embrace Flexibility and High Earnings with Indigo Solutions Group!.This is NOT a J-O-B ==> It's a Lifestyle!.Are you tired of the traditional 9-to-5 grind? At Indigo Solutions Group, we offer a ... Show more

Information Security Manager

Acumen TechnologyNashville, TN, US
Full-time
Quick Apply

Acumen Technology is a security-first Managed Service Provider (MSP) founded in 2016, serving financial institutions, healthcare organizations, and other businesses that take IT and cybersecurity s... Show more

Vice President Of Security

Thyme CareNashville, TN, United States
Full-time

As the VP of Security, you will report to our SVP of Engineering and lead the security function of the organization.You will define and execute a long‑term security strategy that protects sensitive... Show more

 • Promoted

Armed Level II Security Officer - Nashville, TN

Ambassador Worldwide Protection AgencyNashville, TN, US
Full-time
Quick Apply

IMMEDIATE OPENINGS!!  Ambassador Worldwide Protection Agency, Inc.Armed (Level II) Security Officers** in the Nashville, Tennessee area.As a paramilitary and para-policing Veteran-Owned S... Show more

Security Systems Senior Sales Executive

SiemensNashville, TN, United States
Permanent

Security Systems Senior Sales Executive.Here at Siemens, we take pride in enabling sustainable progress through technology.We do this through empowering customers by combining the real and digital ... Show more

 • Promoted

Custom Protection Officer - Corporate Site

Allied Universal SecurityNashville, TN, United States
Full-time

Company Overview: Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in a dynamic, welcomi... Show more

 • Promoted

Principal Oracle Fusion Security Consultant

Kforce IncNashville, TN, United States
Full-time

Owns and implements robust security strategies for Oracle Fusion applications, to define access controls, role hierarchies, and data security policies based on business requirements.Develops, manag... Show more

 • Promoted

Security Officer

Virgin Hotels Central Services LLCNashville, TN, United States
Full-time

Who we are:We love what we do and what we do is important! We believe that everyone should leave feeling better - this means not just our guests and owners, but also our teammates.Everyone should g... Show more

 • Promoted

Traveling Electronic Security Systems Technician

Evergreen Fire and SecurityNashville, TN, US
Full-time
Quick Apply

Who We Are Evergreen Fire and Security (EFS) is a recognized leader in the life safety and security solutions industry.We are entrusted by the Federal Government and commercial customers to protect... Show more