About the company
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cloud Security Engineer – Oracle based in United States.
Responsibilities
- Design and implement enterprise security architectures across OCI tenancies, including landing-zone guardrails, security zones, compartment structures, and policy controls.
- Configure and manage OCI Identity Domains, corporate identity federation, RBAC strategies, and IAM policies.
- Implement secure key and secrets management using OCI Vault, including key rotation and HSM integrations where appropriate.
- Harden OCI compute, networking, and database environments using CIS benchmarks, OCI Security Zones, and internal security standards.
- Operate OCI Cloud Guard for continuous threat detection and response, including tuning detectors and remediating security findings.
- Configure OCI Logging and Audit services and integrate cloud workloads with SIEM platforms for centralized monitoring, investigation, and forensics.
- Implement data security controls through OCI Data Safe, including sensitive-data discovery, data masking, and privileged-user analysis.
- Lead vulnerability management activities covering image scanning, patching, remediation tracking, and risk reduction.
- Drive compliance with frameworks and standards such as PCI-DSS, HIPAA, SOC 2, ISO 27001, and FedRAMP.
- Conduct threat modeling and security architecture reviews for new and existing OCI workloads.
- Lead cloud security incident response activities, including containment, investigation, remediation, and post-incident reviews.
- Develop security automation and operational tooling using Python, Bash, Terraform, and OCI CLI/SDK.
- Maintain comprehensive technical documentation, including architecture diagrams, configuration references, design decisions, runbooks, and operational procedures.
- Provide security guidance and mentorship to application, infrastructure, and engineering teams.
Requirements
- 5+ years of cloud security experience, including significant hands-on experience with Oracle Cloud Infrastructure.
- Deep knowledge of OCI Identity, IAM policies, identity federation, and enterprise access-control strategies.
- Hands-on experience with OCI Cloud Guard, Security Zones, Vault, and Data Safe.
- Strong understanding of cloud-native security principles, CIS benchmarks, and secure cloud architecture.
- Experience managing vulnerability identification, patching, remediation, and security findings.
- Working knowledge of regulatory and compliance frameworks including PCI-DSS, HIPAA, SOC 2, and ISO 27001.
- Strong scripting and automation skills using Python and Bash, combined with practical Terraform experience.
- Experience integrating cloud environments with SIEM platforms for centralized security monitoring.
- Strong analytical and problem-solving abilities, with experience conducting threat modeling, architecture reviews, and incident investigations.
- Ability to communicate complex security concepts clearly and collaborate effectively with application, infrastructure, and business stakeholders.
- Strong documentation, organization, and ownership skills, with the ability to operate independently in a remote environment.
- A bachelor's degree or equivalent professional experience is preferred.
- Oracle Cloud Security Professional certification is preferred; CISSP, CCSP, or equivalent certifications are a plus.
- Experience with multi-cloud security architectures, SOAR platforms, automated incident response, or zero-trust architecture is advantageous.
- Candidates must be authorized to work in the United States; new H-1B visa sponsorship is not available for this position.
Conditions
- Salary: $100,000–$150,000 annually, depending on experience and qualifications.
- Work arrangement: 100% remote within the United States.
- Employment: Full-time, direct W-2 position.
- Career growth: Opportunity to work on enterprise cloud security, Oracle technologies, automation, and compliance initiatives.
- Professional development: Exposure to advanced cloud security practices and opportunities to expand technical expertise.
- Collaborative environment: Work alongside technology and security professionals on complex enterprise initiatives.
- Eligibility: U.S. Citizens, Green Card holders, EAD holders, and H-1B transfer candidates are encouraged to apply.