Cloud Security Engineer – Oracle
Jobgether United States · $100K–$150K/yr
Internet Marketplace Platforms · 11-50 employees
About the role
Design and implement enterprise-grade security controls across Oracle Cloud Infrastructure, including identity management, data protection, and threat detection. Lead vulnerability management, compliance efforts, and incident response while automating security operations using Python and Terraform.
What they look for
Requirements
Requires 5+ years of cloud security experience with significant hands-on expertise in Oracle Cloud Infrastructure. Candidates must possess strong scripting skills in Python and Bash, along with knowledge of regulatory frameworks like PCI-DSS, HIPAA, and SOC 2.
Benefits
Full description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cloud Security Engineer – Oracle based in United States.
This is a full-time, fully remote opportunity for an experienced cloud security professional specializing in Oracle Cloud Infrastructure (OCI). You will design, implement, and operate enterprise-grade security controls across OCI, Oracle Cloud Applications, and hybrid environments. The role spans identity, access management, data protection, vulnerability management, monitoring, compliance, and incident response. You will help establish secure cloud architectures while ensuring workloads meet rigorous security and regulatory standards. Automation is a key focus, with opportunities to use Python, Terraform, and OCI tooling to improve security operations and efficiency. You will also partner with infrastructure and application teams, provide security guidance, and mentor other engineers. This role offers the opportunity to make a meaningful impact on cloud security within a growing technology environment.
\n
Accountabilities
- Design and implement enterprise security architectures across OCI tenancies, including landing-zone guardrails, security zones, compartment structures, and policy controls.
- Configure and manage OCI Identity Domains, corporate identity federation, RBAC strategies, and IAM policies.
- Implement secure key and secrets management using OCI Vault, including key rotation and HSM integrations where appropriate.
- Harden OCI compute, networking, and database environments using CIS benchmarks, OCI Security Zones, and internal security standards.
- Operate OCI Cloud Guard for continuous threat detection and response, including tuning detectors and remediating security findings.
- Configure OCI Logging and Audit services and integrate cloud workloads with SIEM platforms for centralized monitoring, investigation, and forensics.
- Implement data security controls through OCI Data Safe, including sensitive-data discovery, data masking, and privileged-user analysis.
- Lead vulnerability management activities covering image scanning, patching, remediation tracking, and risk reduction.
- Drive compliance with frameworks and standards such as PCI-DSS, HIPAA, SOC 2, ISO 27001, and FedRAMP.
- Conduct threat modeling and security architecture reviews for new and existing OCI workloads.
- Lead cloud security incident response activities, including containment, investigation, remediation, and post-incident reviews.
- Develop security automation and operational tooling using Python, Bash, Terraform, and OCI CLI/SDK.
- Maintain comprehensive technical documentation, including architecture diagrams, configuration references, design decisions, runbooks, and operational procedures.
- Provide security guidance and mentorship to application, infrastructure, and engineering teams.
Requirements
- 5+ years of cloud security experience, including significant hands-on experience with Oracle Cloud Infrastructure.
- Deep knowledge of OCI Identity, IAM policies, identity federation, and enterprise access-control strategies.
- Hands-on experience with OCI Cloud Guard, Security Zones, Vault, and Data Safe.
- Strong understanding of cloud-native security principles, CIS benchmarks, and secure cloud architecture.
- Experience managing vulnerability identification, patching, remediation, and security findings.
- Working knowledge of regulatory and compliance frameworks including PCI-DSS, HIPAA, SOC 2, and ISO 27001.
- Strong scripting and automation skills using Python and Bash, combined with practical Terraform experience.
- Experience integrating cloud environments with SIEM platforms for centralized security monitoring.
- Strong analytical and problem-solving abilities, with experience conducting threat modeling, architecture reviews, and incident investigations.
- Ability to communicate complex security concepts clearly and collaborate effectively with application, infrastructure, and business stakeholders.
- Strong documentation, organization, and ownership skills, with the ability to operate independently in a remote environment.
- A bachelor's degree or equivalent professional experience is preferred.
- Oracle Cloud Security Professional certification is preferred; CISSP, CCSP, or equivalent certifications are a plus.
- Experience with multi-cloud security architectures, SOAR platforms, automated incident response, or zero-trust architecture is advantageous.
- Candidates must be authorized to work in the United States; new H-1B visa sponsorship is not available for this position.
Benefits
- Salary: $100,000–$150,000 annually, depending on experience and qualifications.
- Work arrangement: 100% remote within the United States.
- Employment: Full-time, direct W-2 position.
- Career growth: Opportunity to work on enterprise cloud security, Oracle technologies, automation, and compliance initiatives.
- Professional development: Exposure to advanced cloud security practices and opportunities to expand technical expertise.
- Collaborative environment: Work alongside technology and security professionals on complex enterprise initiatives.
- Eligibility: U.S. Citizens, Green Card holders, EAD holders, and H-1B transfer candidates are encouraged to apply.
\nHow Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1
Similar roles
-
Senior Security Engineer (m/w/d)
Yoummday GmbH Sofia, Sofia-City, Bulgaria
-
Senior Cybersecurity Engineer | Cyber Threat Intelligence & Response
Xplor Atlanta, Georgia, United States
-
Principal Cloud Security Engineer
LastPass Canada
-
Senior Network Security Engineer (m/f/d)
We One Łódź, Łódź Voivodeship, Poland · PLN 92K–PLN 146K/yr
-
Data Privacy and Protection - Cyber GRC Professional - Cybersecurity
EY Greece Patras, Peloponnese, Western Greece and the Ionian, Greece
- Italian Speaking Cybersecurity Customer Experts - Work In Athens, Greece