Principal Security Pentester - OASE
India
Oracle
Oracle offers a comprehensive and fully integrated stack of cloud applications and cloud platform services.- Oracle Cloud Infrastructure (OCI) and/or AWS, Azure, or GCP compute, storage, and network operational experience.
- Methodical approaches to fixing and solving complex technical problems
- Issue tracking and teamwork (Jira and Confluence).
- Producing documentation in support of developed work (KBs, run books, help guides).
- Linux/Unix system administration including system level knowledge of Linux on OCI Gen 2, creating and completing scripts.
- Networking and TCP/IP fundamentals.
- Applying agile methodologies.
- Working with remote, global teams as well as individuals.
- Ability to effectively assess and communicate risks and appropriate levels of urgency to management and engineering staff as we as team environment
- Working independently and in a self-directed manner.
- Proven experience in Security engineering / application / penetration (Red/Black-box) / vulnerabilities
- Strong application/product/software security background
- Vulnerability discovery across Cloud services
- Extensive research or experience with multiple classes of security bugs
- Emergent threat testing
- Understand internet networking services, such as DNS, HTTP, etc.
- Programming and scripting languages (Python, Java, bash are our preferred)
- Using Ci/CD scripting tools such as Ansible, Puppet, or Chef.
- Containers and orchestration (Docker, Kubernetes).
- Oracle Database, MySQL or other RDBMS.
- Used Kali Linux, BurpSuite, Postman, Nmap.Nessus, Wireshark
- At least one security certification (OSCP, GPEN, CISSP and etc.)
- Demonstrated competence in managing large scale cloud Security projects
- Security lifecycle, Security Pen-testing, hacking
- Strong sense of ownership, accountability and drive
Career Level IC4
Responsible for advanced planning, design and build of security systems, applications, environments and architectures; oversees the implementation of security systems, applications, environments and architectures and ensures compliance with information security standards and corporate security policies and procedures.
Provides technical advice and direction to support the design and development of secure architectures.
May participate in an incident management team, bringing advanced-level skills to respond to security events in line with Oracle incident response playbooks. Investigates purported intrusions and breaches, and oversees root cause analysis. Coordinates incidents with other business units and may act as Incident Commander of serious incidents. Develops new methods, and playbooks, as well as sophisticated scripts, applications, and tools, and trains others in their use.
May participate in an incident management team, responding to security events in line with Oracle incident response playbooks. Investigates purported intrusions and breaches, and oversees root cause analysis. Coordinates incidents with other business units and may act as incident commander of serious incidents. Participates in developing new methods, playbooks throughout Oracle.
Evaluates existing and proposed technical architectures for security risk, provides technical advice to support the design and development of secure architectures and recommends security controls to mitigate those risks. Evaluations of internal security architecture may include design assessment, risk assessment, and threat modeling.
Brings advanced-level skills to research, evaluate, track, and manage information security threats and vulnerabilities in situations where in-depth analysis of ambiguous information is required, and where computer programming/scripting knowledge is required.
Work with Senior management to develop and implement a multi-year security roadmap
Focus on operational and strategic level tasks, and provide counsel and guidance to the other security engineers
Career Level - IC4
As a world leader in cloud solutions, Oracle uses tomorrow’s technology to tackle today’s challenges. We’ve partnered with industry-leaders in almost every sector—and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That’s why we’re committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We’re committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling +1 888 404 2494 in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Analytics Ansible Application security Audits AWS Azure Bash Burp Suite CI/CD CISSP Cloud Compliance Confluence DNS Docker GCP GPEN Incident response Java Jira Kali Kubernetes Linux MySQL Nessus Nmap Oracle OSCP Pentesting PostMan Puppet Python RDBMS Red team Risk assessment Scripting Strategy TCP/IP Threat detection UNIX Vulnerabilities
Perks/benefits: Career development Flex hours Insurance Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.