Principal Security Analyst (2022p)

Year    Andhra Pradesh, India

Job Description


Develops and executes programs and processes to reduce information security risk and strengthen Oracle\xe2\x80\x99s security posture.

Supports the strengthening of Oracle\xe2\x80\x99s security posture, focusing on one or more of the following: risk management; regulatory compliance; threat and vulnerability management; incident management and response; security policy development and enforcement; privacy; information security education, training and awareness (ISETA); digital forensics and similar focus areas.
Risk Management: Brings advanced level skills to assess the information security risk associated with existing and proposed business operational programs, systems, applications, practices and procedures in very complex, business-critical environments. May conduct and document very complex information security risk assessments. May assist in the creation and implementation of security solutions and programs.
Regulatory Compliance: Brings advanced level skills to manage programs to establish, document and track compliance to industry and government standards and regulations, e.g. ISO-27001, PCI-DSS, HIPAA, FedRAMP, GDPR, etc. Researches and interprets current and pending governmental laws and regulations, industry standards and customer and vendor contracts to communicate compliance requirements to the business. Participates in industry forums monitoring developments in regulatory compliance.
Threat and Vulnerability Management: Brings advanced level skills to research, evaluate, track, and manage information security threats and vulnerabilities in situations where in-depth analysis of ambiguous information is required.
Incident Management and response: Brings advanced level skills to respond to security events, identifying possible intrusions and responding in line with Oracle incident response playbooks. May operate as Incident Commander on serious incidents.
Digital Forensics: Brings advanced level skills to conduct data collection, preservation and forensic analysis of digital media independently, where an advanced understanding of forensic techniques is required.
Other areas of focus may include duties providing advanced level skills and knowledge to manage Information Security Education, Training and Awareness programs. In a Corporate Security role, may manage the creation, review and approval of corporate information security policies.
Mentors and trains other team members.
Compiles information and reports for management.

Minimum of 8 years experience in information systems, business operations, or related fields, at least 5 years of which must be from at least one of the following: Information security risk management; information security program management; Industry/Government security compliance program management (ISO-27001, GDPR, HIPAA, FedRamp, etc.); threat and vulnerability management; incident management and response; security policy development and enforcement; privacy, information security education, training and awareness (ISETA), information security solutions development, etc. required.
Strong knowledge of: Cloud architecture and security principles. Risk Management Frameworks. *nix and Windows system administration.
Experience with: Logging and log analysis. Identity management principles and technology.
Preferred but not required qualifications include: Bachelor-level university degree in a relevant field from an accredited university, or equivalent. CISSP, CISM, CISA, CIPP or other equivalent certification. Comprehensive knowledge of security design for networks, databases, infrastructure, and cloud computing. Experience writing security incident and vulnerability reports for leadership and other stakeholders. Ability to effectively communicate and influence secure product and network design in a collaborative environment. Comprehensive knowledge of digital forensics. Strong knowledge of web technologies, middleware, database, OS, firewalls, network communication protocols and methods. Knowledge of encryption technologies and architectures. Expert level experience in evaluating and assessing security threats across a variety of environments and industries. Expert level understanding of secure networking principles, routers, switches and load balancers.

As a world leader in cloud solutions, Oracle uses tomorrow\xe2\x80\x99s technology to tackle today\xe2\x80\x99s problems. True innovation starts with diverse perspectives and various abilities and backgrounds. When everyone\xe2\x80\x99s voice is heard, we\xe2\x80\x99re inspired to go beyond what\xe2\x80\x99s been done before. It\xe2\x80\x99s why we\xe2\x80\x99re committed to expanding our inclusive workforce that promotes diverse insights and perspectives. We\xe2\x80\x99ve partnered with industry-leaders in almost every sector\xe2\x80\x94and continue to thrive after 40+ years of change by operating with integrity. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer a highly competitive suite of employee benefits designed on the principles of parity and consistency. We put our people first with flexible medical, life insurance and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We\xe2\x80\x99re committed to including people with disabilities at all stages of the employment process. If you would like accessibility assistance or accommodation for a disability at any point, let us know at +91-XXXXXXXXXX, Option 1. Disclaimer: Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates. Oracle is an Equal Employment Opportunity Employer*. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans\xe2\x80\x99 status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law. * Which includes being a United States Affirmative Action Employer

Oracle Managed Cloud Services (OMCS) team is responsible for providing highly scalable technical services to customer application & software hosted in Oracle clouds. We apply the best practice to leverage cloud to help customers to deploy, run and manage their application & software across different Oracle technology stack.

Driving adoption of Oracle Cloud Infrastructure (OCI) and Oracle applications for our customer are our key objectives. We accelerate these adoptions by showcasing the power of Oracle\xe2\x80\x99s cloud technology, full application stacks as well as our valued added engineering solutions that provides highly differentiated service experience to our customers in cloud.

MCS team is seeking a talented Security Engineer adept at solving complex technical problems that span multiple areas combining security, software and distributed systems. You will need to have knowledge and experience in software development, automation, devop, agile and cloud technologies. You should be able to identify security issues and creatively automate solutions working with different internal engineering teams and external customer requirements.

Oracle Managed Cloud Services (OMCS) team is responsible for providing highly scalable technical services to customer application & software hosted in Oracle clouds. We apply the best practice to leverage cloud to help customers to deploy, run and manage their application & software across different Oracle technology stack.

Driving adoption of Oracle Cloud Infrastructure (OCI) and Oracle applications for our customer are our key objectives. We accelerate these adoptions by showcasing the power of Oracle\xe2\x80\x99s cloud technology, full application stacks as well as our valued added engineering solutions that provides highly differentiated service experience to our customers in cloud.

MCS team is seeking a talented Security Engineer adept at solving complex technical problems that span multiple areas combining security, software and distributed systems. You will need to have knowledge and experience in software development, automation, devop, agile and cloud technologies. You should be able to identify security issues and creatively automate solutions working with different internal engineering teams and external customer requirements.

Beware of fraud agents! do not pay money to get a job

MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD2999311
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Andhra Pradesh, India
  • Education
    Not mentioned
  • Experience
    Year