Information Security Sr. Manager - Threat and Vulnerability Management
Information Security Sr. Manager - Threat and Vulnerability Management

Information Security Sr. Manager - Threat and Vulnerability Management

Edinburgh Full-Time 60000 - 84000 £ / year (est.) No home office possible
Go Premium
Oracle

At a Glance

  • Tasks: Lead vulnerability assessments and drive security improvements across cloud and non-cloud environments.
  • Company: Join Oracle's innovative Threat and Vulnerability Management team.
  • Benefits: Competitive salary, career growth, and a supportive team culture.
  • Why this job: Shape the future of cloud security and tackle complex challenges with a talented team.
  • Qualifications: 5+ years in software engineering and 3+ years in people management required.
  • Other info: Opportunity to work on large-scale distributed security systems and tools.

The predicted salary is between 60000 - 84000 £ per year.

Oracle Cloud Infrastructure

The Oracle Threat and Vulnerability Management (TVM) team proactively identifies, assesses, prioritizes, and relentlessly drives the remediation of security weaknesses and vulnerabilities at scale across the total enterprise. The TVM team performs security assessments, vulnerability research, guides and advises mitigation strategies, and coordinates the response to zero-day and other urgent vulnerabilities. We ensure the security of the software and hardware that runs our cloud and non-cloud infrastructure and strive for continuous improvement. As a team, we defend our customers and ensure Oracle meets or exceeds all applicable security and regulatory requirements in all markets.

Values our foundation and how we deliver excellence. We strive for equity, inclusion, and respect for all. We are committed to the greater good in our products and our actions. We are constantly learning and taking opportunities to grow our careers and ourselves. We challenge each other to stretch beyond our past to build our future. You can learn more about us by visiting https://cloud.oracle.com/cloud-infrastructure.

Are you interested in building large-scale distributed security systems and tools for the cloud? Do you enjoy all aspects of security, from end user devices and traditional information technology (IT), to hyperscale cloud and multicloud services, to hardware and operational technology (OT)? A security-focused leader can have significant technical and business impact. This is a unique opportunity to work with smart people to solve complex and industry-wide problems in distributed systems, security, and multi-tenant Infrastructure-as-a-Service (IaaS) at massive scale. The biggest challenges for the team is the dynamic and fast growth of the business, driving us to improve our systems, tools, and automation to scale to our security expertise several orders of magnitude greater than what we can support today. We understand that software is living and needs investment. The challenge is making the right tradeoffs, communicating those decisions effectively, and crisp execution. Come shape the future of one of the largest cloud services on earth with us!

Our ideal candidate is a hardworking and hands-on leader concerned with both security and building the best team possible, a passionate leader about security and furthering their knowledge every day as well as that of their team, and has previous experience working in the cloud or hardware industry.

This role is for a hands-on leader to drive day-to-day vulnerability assessments, deviation reviews, and remediation activities across cloud and non-cloud environments.

Responsibilities

  • Leading a diverse set of personalities and talent
  • Understanding the importance of a healthy and supportive team culture
  • Support a culture of accountability, integrity, and high expectations
  • Effectively communicate to anyone in the organization, from the most technical operator to senior leadership
  • Maintain awareness of known vulnerabilities and work towards applying appropriate mitigations
  • Guide and mentor security analysts and engineers as they perform vulnerability assessments
  • Provide direction and advice on emerging threats, weaknesses, and security practices that may impact the security posture of Oracle
  • Manage and lead the performance of vulnerability assessments and deviation reviews
  • Be able to critically examine an organization and system through the perspective of a threat actor and articulate risks in clear, detailed terms
  • Guide effective remediations and fixes in our cloud (including public, private, distributed, hybrid, and multi) and on-premise platforms and products

Qualifications

  • 3+ years people management or technical lead experience
  • 5+ years of software or systems engineering experience
  • Must possess or have the ability to obtain and maintain a Security Check (SC) clearance (required).
  • Strong overall business and communication skills, including executive presentation skills and eye for business
  • Strong leadership and people management skills
  • Understanding the importance of a balanced work approach to encourage team culture
  • Strong knowledge of data structures, algorithms, operating systems, and distributed systems fundamentals
  • Strong understanding of databases, NoSQL systems, storage and distributed persistence technologies
  • Prior experience with distributed systems, cloud computing, and IaaS
  • Prior experience with security
  • Understanding of security vulnerabilities and mitigation strategies
  • Programming and debugging fundamentals in languages/interfaces, such as Python, Java, Go, etc.

Preferred Qualifications

  • Hands-on experience developing or securing services on a public cloud platform (e.g., AWS, Azure, GCP, OCI)
  • Proven ability to drive culture and behavioral change within engineering organizations
  • Strong knowledge of compliance program security controls, like ISO 27001, SOC 2, HITRUST, FedRAMP, and UK Cyber Essentials as applied to cloud SaaS, PaaS, and IaaS operations.
  • Experience building continuous integration/deployment pipelines with robust testing and deployment schedules
  • Experience working with internal customers and translating requests into prioritized work or features
  • Expertise in applying risk identification techniques to develop security solutions
  • Experience and understanding of cryptographic algorithms, standards, implementation and application
  • Experience and understanding of threat modeling, penetration testing, reverse engineering and attacks on software
  • Experience working with large enterprise customers
  • The ideal candidate posseses or has the ability to obtain and maintain a Developed Vetting (DV) clearance.

Information Security Sr. Manager - Threat and Vulnerability Management employer: Oracle

At Oracle, we pride ourselves on being an exceptional employer, offering a dynamic work environment that fosters innovation and collaboration. Our commitment to equity, inclusion, and continuous learning ensures that every team member has the opportunity to grow their career while contributing to the security of our cutting-edge cloud infrastructure. With a focus on building a supportive team culture and tackling complex challenges in the tech industry, Oracle is the perfect place for passionate leaders in information security to thrive.
Oracle

Contact Detail:

Oracle Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Sr. Manager - Threat and Vulnerability Management

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even online forums. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects and contributions to security. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews like it’s game day! Research the company, understand their security challenges, and come armed with questions. Show them you’re not just interested in the role, but also in how you can contribute to their mission.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!

We think you need these skills to ace Information Security Sr. Manager - Threat and Vulnerability Management

Threat and Vulnerability Management
Security Assessments
Vulnerability Research
Mitigation Strategies
Zero-Day Vulnerabilities Response
Cloud Security
Distributed Systems
Infrastructure-as-a-Service (IaaS)
People Management
Communication Skills
Data Structures and Algorithms
Cloud Computing
Security Vulnerabilities Mitigation
Programming in Python, Java, Go
Compliance Program Security Controls

Some tips for your application 🫡

Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the role of Information Security Sr. Manager. Highlight your leadership experience and any relevant technical skills, especially in cloud security and vulnerability management.

Craft a Compelling Cover Letter: Use your cover letter to tell us why you're passionate about security and how your background makes you a great fit for our team. Share specific examples of how you've tackled security challenges in the past.

Showcase Your Communication Skills: Since this role involves communicating with various stakeholders, demonstrate your ability to convey complex security concepts clearly. Use straightforward language and avoid jargon where possible.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows your enthusiasm for joining our team!

How to prepare for a job interview at Oracle

✨Know Your Stuff

Make sure you brush up on your knowledge of security vulnerabilities and mitigation strategies. Be ready to discuss specific examples from your past experience, especially in cloud environments. This will show that you’re not just familiar with the theory but have practical insights to share.

✨Show Your Leadership Skills

As a potential leader, it’s crucial to demonstrate your ability to manage diverse teams. Prepare to talk about how you've fostered a supportive team culture and held your team accountable. Share stories that highlight your leadership style and how you’ve guided others through complex security challenges.

✨Communicate Clearly

You’ll need to communicate effectively with both technical and non-technical stakeholders. Practice explaining complex security concepts in simple terms. This will help you convey your ideas clearly during the interview and show that you can bridge the gap between different audiences.

✨Stay Current

The security landscape is always changing, so be prepared to discuss recent trends or emerging threats. Show your passion for continuous learning by mentioning any recent courses, certifications, or conferences you’ve attended. This demonstrates your commitment to staying ahead in the field.

Information Security Sr. Manager - Threat and Vulnerability Management
Oracle
Location: Edinburgh
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>