Senior Principal Penetration Tester
United States
Oracle
Oracle offers a comprehensive and fully integrated stack of cloud applications and cloud platform services.Our team is tasked with delivering a corporate-wide Offensive Security Assurance program. Our goal is to ensure that Oracle is well positioned to face current and emerging threats from any source.
We are looking for experienced pen-testers with the enthusiasm and maturity to develop themselves further and join us in pushing our global team’s capabilities to a new level. A track record of self-education and an ability to adapt comfortably to change is necessary; this will be supported by a formal training plan. The successful candidate will find themselves in a supportive team of peers and will contribute fully to our penetration testing platforms, tooling and evolving comprehensive methodologies.
This is an exciting opportunity to join a motivated team delivering a global program.
Career Level - IC5
RESPONSIBILITIES/ TASKS
- Conduct rigorous penetration testing of Oracle’s latest generation Cloud Services (SaaS, PaaS, IaaS)
- Conduct network and server layer penetration testing against Corporate Internet-facing and internal systems
- Conduct application-layer penetration testing against Corporate and customer software applications and webservices deployed globally
- Document technical issues identified during security assessments, and author formal reports
- Follow up on implementation of corrective actions from assessments
- Research security threats and attack vectors
- Develop novel tooling and techniques to enhance the team’s platform and capabilities
- Perform special security projects on an ad-hoc basis
- Perform other duties as assigned
Required qualifications
- US Candidates: It will be an advantage if the candidate holds or is prepared to gain US Security Clearance: Oracle's commercial background investigation, plus NACLC and be willing to obtain MBI or SSBI as needed
- University degree from an accredited college/ university, or equivalent experience
- Previous hands-on experience in automated and manual penetration testing (infrastructure and web app/ service), 5 years minimum preferred
- Prior experience with systems development, systems administration, or network administration, 3 years minimum preferred
- Professional certification: minimum OSCP, OSCE/ OSWE or equivalent preferred
- Experience in Information Security and technical aspects thereof, CISSP certification preferred
- Scripting/ programming experience (BASH, PowerShell, Python, C, Assembler) is an advantage
- Knowledge of Information Security standards and access controls such as ISO27001/2 and PCI DSS
- Strong organizational skills and detail-oriented, able to handle concurrent assignments
- Strong presentation, written and verbal communication skills in English
- Strong negotiation skills
- Self-starter and self-sufficient, doesn’t need to be micro-managed
- Excellent team player, willing to share knowledge and skills with peers
Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range: from $120,100 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle’s differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
As a world leader in cloud solutions, Oracle uses tomorrow’s technology to tackle today’s problems. True innovation starts with diverse perspectives and various abilities and backgrounds.
When everyone’s voice is heard, we’re inspired to go beyond what’s been done before. It’s why we’re committed to expanding our inclusive workforce that promotes diverse insights and perspectives.
We’ve partnered with industry-leaders in almost every sector—and continue to thrive after 40+ years of change by operating with integrity.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer a highly competitive suite of employee benefits designed on the principles of parity and consistency. We put our people first with flexible medical, life insurance and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We’re committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by calling +1 888 404 2494, option one.
Disclaimer:
Oracle is an Equal Employment Opportunity Employer*. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
* Which includes being a United States Affirmative Action Employer
Tags: Bash C CISSP Clearance Cloud IaaS ISO 27001 Offensive security Oracle OSCE OSCP OSWE PaaS PCI DSS Pentesting PowerShell Python SaaS Scripting Security assessment Security Clearance
Perks/benefits: 401(k) matching Career development Competitive pay Equity Flex hours Flexible spending account Flex vacation Health care Insurance Medical leave Parental leave Salary bonus
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Senior Product Security Engineer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Product Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Cybersecurity Analyst jobs
- Open Security Specialist jobs
- Open Chief Information Security Officer jobs
- Open Staff Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Senior Information Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open IT Security Engineer jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Penetration Tester jobs
- Open Cybersecurity Specialist jobs
- Open Security Operations Analyst jobs
- Open Sr. Security Engineer jobs
- Open Security Consultant jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open ISO 27001-related jobs
- Open Threat intelligence-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open Malware-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open APIs-related jobs
- Open Security Clearance-related jobs
- Open Forensics-related jobs
- Open SaaS-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open DoD-related jobs