Security Architect

Oracle is a world leader in cloud solutions, using tomorrow's technology to tackle today's problems. They have been in business for over 40 years and partner with industry leaders in almost every sector.
$161,600 - $338,600
Security
Principal Software Engineer
Hybrid
5,000+ Employees
10+ years of experience
AI · Cybersecurity · Enterprise SaaS

Description For Security Architect

We are looking for an experienced Product Security/Application Security professional to help guide product security initiatives across Oracle SaaS products. This position is part of SaaS Product Security Architecture and Assurance team under SaaS Cloud Security organization which is responsible for securing enterprise-grade software services on behalf of our 25,000 customers, processing over 60 billion transactions per day.

As a Product Security architect, you will be performing security reviews and providing hands-on help to development teams to address security issues systematically. We're looking for a passionate engineer who is able to consider business impact and risk to Oracle and its customers while dealing with any security issues. You will work as a trusted partner with one or more SaaS product development teams, while simultaneously collaborating with your peers in evolving or creating new security patterns or standards to address any security issues/gaps in an efficient way. You will research the product security landscape and help steer product security architecture for solutions that will provide a competitive edge for Oracle SaaS.

This position requires strong product security and application security experience. It will be highly valuable to have past experience in working in or with product development teams.

Key Responsibilities:

  • Work closely with development teams for SaaS products and provide security expertise and guidance
  • Ensure compliance with Oracle Software Security Assurance (OSSA) Standards
  • Analyze and triage security issues, risk, and deploy mitigations or fixes quickly
  • Perform security design reviews for SaaS Products
  • Review and assess security posture and CVEs in third party libraries or products
  • Focus on specific SaaS products to understand detailed architecture and identify problem areas
  • Perform source code reviews for vulnerability fixes
  • Write code to demonstrate proof of concept for fixing security issues
  • Propose systematic solutions to address industry trends and specific security challenges
  • Influence and create new security standards, patterns, or processes
  • Promote a DevSecOps culture while working with development teams

Qualifications:

  • Bachelor's degree in Computer Science or related field
  • 8+ years of experience in information technology, including 5+ years in product security
  • Expert knowledge of modern vulnerability types and threats
  • Hands-on experience with programming languages such as Java, Python, etc.
  • Experience with industry standard frameworks (OWASP, MITRE, NIST, PCI, FedRAMP, etc.)
  • Excellent written and verbal communication skills

Preferred Experience:

  • Experience as a Security Lead or Lead Security Point of Contact (SPOC)
  • Understanding of Oracle Software Security Assurance (OSSA) Standards
  • Experience in developing or supporting cloud/enterprise security products
Last updated 2 months ago

Responsibilities For Security Architect

  • Work closely with development teams for SaaS products and provide security expertise and guidance
  • Ensure compliance with Oracle Software Security Assurance (OSSA) Standards
  • Analyze and triage security issues, risk, and deploy mitigations or fixes quickly
  • Perform security design reviews for SaaS Products
  • Review and assess security posture and CVEs in third party libraries or products
  • Focus on specific SaaS products to understand detailed architecture and identify problem areas
  • Perform source code reviews for vulnerability fixes
  • Write code to demonstrate proof of concept for fixing security issues
  • Propose systematic solutions to address industry trends and specific security challenges
  • Influence and create new security standards, patterns, or processes
  • Promote a DevSecOps culture while working with development teams

Requirements For Security Architect

Java
Python
  • Bachelor's degree in Computer Science or related field
  • 8+ years of experience in information technology, including 5+ years in product security
  • Expert knowledge of modern vulnerability types and threats
  • Hands-on experience with programming languages such as Java, Python, etc.
  • Experience with industry standard frameworks (OWASP, MITRE, NIST, PCI, FedRAMP, etc.)
  • Excellent written and verbal communication skills

Benefits For Security Architect

401k
Dental Insurance
Medical Insurance
Vision Insurance
  • Medical, dental, and vision insurance
  • Short term disability and long term disability
  • Life insurance and AD&D
  • 401(k) Savings and Investment Plan with company match
  • Flexible vacation
  • 11 paid holidays
  • Paid sick leave
  • Paid parental leave
  • Adoption assistance
  • Employee Stock Purchase Plan

Interested in this job?

Jobs Related To Oracle Security Architect

Principal Technical Program Manager

Principal Technical Program Manager role at Oracle focusing on database security, requiring 5+ years of experience in technical program management and security expertise.

Sr Principal Product Manager/Strategy

Senior Principal Product Manager role at Oracle focusing on Identity and Access Management, demo strategy, and product development.

Security Hardware Architect

Principal-level Security Hardware Architect position at Oracle focusing on software development and architecture for enterprise systems.

Principal Member Technical Staff

Principal Software Engineer role at Oracle focusing on Java security testing and quality assurance, requiring 10+ years of experience in software development.

Oracle NetSuite Principal Security Engineer, Threat and Vulnerability Management

Principal Security Engineer role at Oracle NetSuite, focusing on threat and vulnerability management for NSGBU product lines.