What are the responsibilities and job description for the Principal Security Engineer position at Oracle?
We are seeking a highly skilled and proactive IT Applications & Database Security Operations Engineer to join our internal Security Operations team. This role will focus on managing the end-to-end security lifecycle of internal IT applications and databases. You will be instrumental in helping automate SOX and Privacy Audits, auditing user access provisioning, ensuring security compliance, and optimizing security measures across various platforms.
The ideal candidate will have a strong foundation in security auditing, particularly in SOX-compliant environments, and experience working with Internal and External auditors like E&Y, KPMG, PWC and a strategic thinker with strong functional expertise and leadership capabilities to ensure the integrity, confidentiality, and audibility of OAL IT applications and databases. Your expertise in security monitoring and knowledge of security tools to detect, mitigate, and respond to security incidents will be essential in maintaining the integrity and security of our applications and databases.
Qualifications:
Disclaimer:Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from: $96,800 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
Responsibilities:
Responsibilities
- Oversee the security and compliance of internal IT applications and databases throughout their lifecycle.
- Assist with automating auditing of user access provisioning and deprovisioning processes.
- Implement and manage security tools and configurations for database security.
- Ensure applications and databases are secured in alignment with industry standards and internal policies.
- Work closely with internal and external auditors, includes but not limited to SOX compliance, Finance Compliance and other cross-functional teams to monitor and respond to SOX and Privacy security audits.
- Utilize programming skills (PL/SQL, Java, Python) to develop and optimize security features and tools.
- Collaborate with the IT team to integrate security measures into the application and database infrastructure.
- Support the organization's compliance efforts, including adherence to SOX and other regulatory frameworks.
- Conduct regular security assessments and audits to identify and remediate vulnerabilities.
- Stay current with emerging security threats and best practices to ensure a proactive security posture.
Qualifications
- Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience).
- Proven experience in IT security, specifically with applications and databases.
- Solid experience with security auditing, preferably in a SOX-compliant environment with Internal and External auditors.
- Strong knowledge and hands-on experience with Identity and Access Management (IAM) tools.
- Understanding in programming languages such as PL/SQL, Java, and Python, with a focus on security-related functionality.
- Experience with database security tools and configurations.
- Familiarity with security monitoring tools and frameworks.
- Strong analytical and problem-solving skills, with the ability to quickly assess and mitigate security risks.
- Excellent communication skills and the ability to work effectively with cross-functional teams.
Preferred Skills
- Certifications such as CISSP, CISM, or other relevant security credentials.
- Familiarity with regulatory frameworks and standards (e.g., SOX, GDPR).
- Prior experience in a security operations or security development role.
Salary : $96,800 - $223,400