Principal Security Engineer
Principal Security Engineer

Principal Security Engineer

Full-Time 60000 - 84000 £ / year (est.) No home office possible
O

At a Glance

  • Tasks: Lead security architecture for Oracle Cloud, ensuring top-notch security standards.
  • Company: Join Oracle, a global leader in cloud solutions with over 40 years of innovation.
  • Benefits: Enjoy flexible vacation, comprehensive health insurance, and a 401(k) plan with company match.
  • Why this job: Be part of a dynamic team shaping the future of cloud security and AI technologies.
  • Qualifications: 8+ years in security, with expertise in cloud and AI; strong communication skills required.
  • Other info: Remote work options available; inclusive workplace committed to diversity.

The predicted salary is between 60000 - 84000 £ per year.

Principal Security Engineer

Location: Reading, hybrid

Do you have a passion for high scale services and working with some of Oracle's most critical customers? We are seeking an experienced, passionate, and talented Senior Principal Security Researcher who has genuine excitement for and interest in reverse engineering, vulnerability finding and exploit development. You will support in reverse engineering and deep understanding of vulnerabilities, including impact analysis and automation. You must relish the challenge of findings critical vulnerabilities in complex software binaries through automation and manual practices. Creativity is highly valued; being able to find novel vulnerabilities is essential in this role.

Who We Are

We are a world-class team of high caliber security researchers and application security engineers who thrive on new challenges. We are an inclusive and diverse team with a full spectrum of experience distributed globally. We have the resources of a large enterprise and the energy of a start-up, working on a critical greenfield software assurance project collaboratively with our cloud team. The Software Assurance organization has the mission to make application security and software assurance, at scale, a reality. The research team is a dedicated team, leveraging each other’s insights and abilities to produce cutting edge solutions to difficult reverse engineering and vulnerability finding problems. Contributing to the overall success of the Software Assurance organization. Join us to grow your career and create the future of software assurance at scale together.

Work You’ll Do

As a member of our team, you will work independently and/or side-by-side within a team structure to develop and deliver practical solutions. You will be responsible for designing, implementing and testing complex software, often through reverse engineering, with the objective of identifying impactful security vulnerabilities across a variety of architectures and platforms.

What You’ll Bring

  • Bachelor’s or Master’s degree in Computer Science or related field (e.g. Electrical Engineering) or related relevant experience
  • 10+ years of relevant experience in vulnerability identification, deep platform security consulting or equivalent (with demonstrable reverse engineering experience)
  • Reverse engineering across various architectures and platforms; including x86/64, ARM. Experience with other platforms such as MIPS, RISCV and others are desirable
  • Experience with disassemblers and decompilers (IDA Pro, Binary Ninja, or Ghidra)
  • Knowledge of common exploitation countermeasures and their bypasses (CFI, NX, ASLR, etc.)
  • Researching operating system and applications to understand strengths and weaknesses in their design and implementation
  • Ability to automate reversing tasks, using the headless capabilities (and internal representations) of the tooling
  • Software development using C or C++
  • Demonstrated leadership skills, organizational capability and management techniques
  • A personality and communication skills that inspire teams and team members
  • Must be legally authorized to work in the United Kingdom without the need for employer sponsorship, now or at any time in the future

Nice to Have

  • Experience working in a large cloud or Internet software company, or similar engagements via consulting
  • Experience navigating and working with extremely large codebases and complex binary code
  • Proven experience with security research including any published CVEs, papers or presentations
  • Experience developing proof of concept exploits bypassing modern exploit mitigations
  • Active participant or organizer of Capture the Flag competitions
  • Knowledge of common vulnerabilities in different types of software and programming languages, including
  • How to test for/exploit them
  • Real world mitigations that can be applied
  • Familiarity with vulnerability classification frameworks (e.g. OWASP Top 10)

What We’ll Give You

  • A team of very skilled and diverse personnel across the globe
  • Ability to work in a flexible work from home arrangement
  • Exposure to mind blowing large-scale cutting-edge systems
  • The resources of a large, global operation while still having the small, start-up feel of a smaller team day to day
  • Develop new skills and competencies working with our vast cloud product offerings
  • Ongoing extensive training and skills development to further your career aspirations
  • Incredible benefits and company perks
  • An organization filled with smart, enthusiastic, and motivated colleagues
  • The opportunity to impact and improve our systems and delight our customers

Principal Security Engineer employer: Oracle

Oracle is an exceptional employer that fosters a culture of innovation and inclusivity, making it an ideal place for a Principal Security Engineer to thrive. With a comprehensive benefits package, including flexible vacation, health insurance, and a robust 401(k) plan, employees are supported in both their professional and personal lives. The opportunity for mentorship and involvement in cutting-edge cloud security initiatives ensures continuous growth and development in a dynamic work environment.
O

Contact Detail:

Oracle Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Principal Security Engineer

✨Tip Number 1

Familiarise yourself with Oracle's cloud security standards and practices. Understanding their specific requirements and benchmarks will help you demonstrate your alignment with their security posture during discussions.

✨Tip Number 2

Network with current or former employees in similar roles at Oracle. Engaging with them can provide valuable insights into the company culture and expectations, which can be beneficial during interviews.

✨Tip Number 3

Stay updated on the latest trends in AI and cloud security. Being able to discuss recent advancements and how they relate to Oracle's services will showcase your expertise and enthusiasm for the role.

✨Tip Number 4

Prepare to discuss your experience with threat modelling and risk assessment in detail. Be ready to share specific examples of how you've successfully implemented security measures in previous roles, as this will highlight your practical knowledge.

We think you need these skills to ace Principal Security Engineer

Cloud Security Expertise
Security Architecture Design
Threat Modelling
Risk Assessment and Mitigation
AI and Machine Learning Knowledge
Technical Security Standards Development
Mentorship and Leadership Skills
Communication of Technical Security Requirements
Multi-tenancy Concepts
Access Management and Identity Governance
Encryption and Key Management
Cybersecurity Fundamentals
Deployment Methodologies
Security Standards Compliance (e.g., STIG, FedRAMP, PCI-DSS)
Containerisation Technologies (Docker, Kubernetes)
Network Security and VPN/Firewall Management
Analytical and Problem-Solving Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your experience in Cloud Security and AI technologies. Focus on relevant projects and roles that demonstrate your expertise in security architecture, risk assessment, and cloud services.

Craft a Compelling Cover Letter: In your cover letter, express your passion for security and how your background aligns with Oracle's mission. Mention specific experiences that showcase your ability to lead security initiatives and mentor junior engineers.

Highlight Relevant Skills: Clearly list your skills related to cloud security, AI, and machine learning. Include any certifications or training that are pertinent to the role, such as knowledge of encryption, access management, and security compliance standards.

Showcase Communication Skills: Since the role requires clear communication of complex security requirements, provide examples in your application of how you've successfully communicated technical information to non-technical teams or stakeholders.

How to prepare for a job interview at Oracle

✨Showcase Your Cloud Security Expertise

Make sure to highlight your experience in cloud security during the interview. Discuss specific projects where you implemented security measures and how they improved the overall security posture of the services.

✨Understand Oracle's Security Standards

Familiarise yourself with Oracle's security standards and practices. Be prepared to discuss how you can contribute to setting and maintaining these standards, especially in relation to AI and machine learning technologies.

✨Demonstrate Leadership Skills

As a Principal Security Engineer, you'll be expected to lead initiatives and mentor junior engineers. Share examples of how you've successfully led teams or projects in the past, focusing on your leadership style and outcomes.

✨Prepare for Technical Questions

Expect technical questions related to security architecture, risk assessment, and threat modelling. Brush up on relevant concepts and be ready to explain complex security requirements clearly, as this will be crucial in your role.

Principal Security Engineer
Oracle

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

O
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>