- Company Name
- Oracle
- Job Title
- Senior Principal Security Engineer
- Job Description
-
**Job Title**
Senior Principal Security Engineer
**Role Summary**
Provide technical security leadership for foundational cloud infrastructure components. Advise engineering teams on secure design, threat modeling, and security architecture; establish security guardrails, processes, and tooling; embed security across the cloud platform; communicate strategy and vision to senior leadership.
**Expectations**
- Deliver executive‑level security guidance and vision for the next‑generation public cloud.
- Partner with product, engineering, and operations to integrate security at every layer.
- Influence architecture and design of large‑scale, globally distributed services.
**Key Responsibilities**
1. Lead secure design reviews and threat modeling (STRIDE, PASTA) for new features and services.
2. Define and implement security guardrails, processes, and automation tooling across CI/CD and IaC pipelines.
3. Collaborate with cross‑functional teams to embed security controls from concept to production.
4. Communicate security strategy, risks, and mitigate plans to senior executives and stakeholders.
5. Build and maintain security automation libraries in languages such as Java, Go, C/C++, Python.
6. Conduct security incident troubleshooting, post‑mortem analysis, and continuous improvement.
7. Stay current with hypervisor security, SDN, zero‑trust networking, encryption, and large‑scale protocol stacks.
**Required Skills**
- 10+ years security engineering in cloud or ISP environments.
- Deep expertise in hypervisor security, network security (SDN, firewalls, zero‑trust), or data encryption/integrity.
- Proficiency in threat modeling, secure design reviews, and formal frameworks (STRIDE, PASTA).
- Coding experience in Java, Go, C/C++, or Python; ability to build and deploy security automation tools.
- Experience with CI/CD pipelines, infrastructure‑as‑code (Terraform, Ansible).
- Knowledge of core networking protocols: IPv4, IPv6, TCP, BGP, OSPF, IS‑IS, MPLS, RSVP‑TE, VxLAN, EVPN, DNS, DHCP.
- Familiarity with GPU/RDMA, HPC, InfiniBand, Linux systems administration, and network telemetry/monitoring.
- Strong communication, stakeholder management, and incident post‑mortem skills.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Computer Science, Engineering, or related field (or equivalent professional experience).
- Certifications are not mandatory but may include CISSP, CISM, CCSP, OSCP, or other relevant security credentials.