Talent.com
Senior Principal Offensive Security Engineer
Senior Principal Offensive Security EngineerOracle • Manchester, UK
Senior Principal Offensive Security Engineer

Senior Principal Offensive Security Engineer

Oracle • Manchester, UK
30+ days ago
Job type
  • Full-time
Job description

The Oracle Cloud Infrastructure (OCI) Offensive Security team provides OCI with the capabilities to ensure our systems and services meet the security objectives we communicate to customers. The Offensive Security group performs security assessments, vulnerability research, static and dynamic analysis research, penetration testing, red-teaming, and security tool development. We ensure the security of the software and hardware that runs our cloud infrastructure and strive for continuous improvement. The OCI Offensive Security group works as a team. We don't fit people into predefined roles. We bring together the right people who enhance team capability and build roles around each team member's skills and interests.

Offensive Security Engineer

Oracle Cloud Infrastructure Group

The Oracle Cloud Infrastructure (OCI) Offensive Security team provides OCI with the capabilities to ensure our systems and services meet the security objectives we communicate to customers. The Offensive Security group performs security assessments, vulnerability research, static and dynamic analysis research, penetration testing, red-teaming, and security tool development. We ensure the security of the software and hardware that runs our cloud infrastructure and strive for continuous improvement. The OCI Offensive Security group works as a team. We don't fit people into predefined roles. We bring together the right people who enhance team capability and build roles around each team member's skills and interests.

Values are OCI's foundation and how we deliver excellence. We strive for equity, inclusion, and respect for all. We are committed to the greater good in our products and our actions. We are continually learning and taking opportunities to grow our careers and ourselves. We challenge each other to stretch beyond our past to build our future. You can learn more about us by visiting https : / / cloud.oracle.com / cloud-infrastructure .

Are you interested in building large-scale distributed security systems and tools for the cloud? Do you love the idea of working in an environment with the excitement of a start-up, but the financial backing of a Fortune 100 company? This role offers huge upside potential, high visibility, and fast career growth without the risks of a typical start-up. We are growing fast, maturing, and working on results-oriented initiatives. A security-focused leader can have significant technical and business impact. This is a unique opportunity to work with smart people to solve complex problems in distributed systems, security, and multi-tenant Infrastructure-as-a-Service (IaaS) operating at massive scale. The biggest challenges for the team is the dynamic and fast growth of the business, driving us to improve our systems, tools, and automation to scale to our security expertise several orders of magnitude greater than what we can support today. We understand that software is living and needs investment. The challenge is making the right tradeoffs, communicating those decisions effectively, and crisp execution. We hope you like working at scale as much as we do because Oracle has no shortage of it! Craft the future of one of the largest clouds on earth with us!

Our ideal candidate is a hardworking and hands-on engineer who cares about security and improves their knowledge every day. We're looking for hands-on cloud hackers with expertise and passion in identifying and exploiting complex security problems in distributed, multi-tenant services and infrastructure. We operate distributed systems at a high scale, worldwide. These are the foundations of our cloud environment. Our customers run their businesses on our cloud, and our mission is to provide them with a best-in-class and ever-expanding set of cloud-based services.

A security-focused engineer at any level can have significant technical and business impact. Come shape the future of one of the largest clouds on earth with us. To get you excited, here is a list of some of the projects over the last year this team has worked on :

  • Big iron - ExaLogic, ExaData, UltraSPARC, InfiniBand
  • Firmware reverse engineering of various hardware components
  • Developing custom fuzzing platforms for code-coverage analysis
  • Several different hypervisors
  • Linux and Windows kernel mode non-sense
  • The list goes on and on!

This role is for a hands-on cloud hacker on the Offensive Security Team.

Responsibilities

  • You enjoy diving into complex source code audits to reveal subtle security vulnerabilities
  • Writing new tools such as fuzzers in languages such as C / C++, Python, Ruby, Go or Java,
  • Tearing apart an undocumented file format or network protocol
  • Coming up with novel techniques to solve unique and interesting security problems
  • Review new services, including their integration points with existing services
  • Guide security projects beyond the scope of performing assessment work
  • Identify and disclose vulnerabilities to 3rd party vendors
  • Design complex systems and services that improve quantity or quality of offensive security output
  • You'll reviews new features of moderate complexity in existing systems, identifying areas of new risk created; work with service teams to explore and recommend mitigations; and collaborate across service teams and security stakeholders.
  • Review new services, including their integration points with existing services
  • Guide security projects beyond the scope of performing assessment work : identifying and disclosing vulnerabilities to 3rd party vendor or design of complex systems and services that improve quantity or quality of offensive security output
  • You'll drive organization wide improvement in the form of engineering practices, security architecture, operation practices or development practices.
  • You'll reviews new services and their integration points with other services; guides security assessments of our most complex or important products, and is independently capable of balancing business and security risk; and apply your expertise in business-critical security area to advance the business relative to the industry.
  • Qualifications

  • 6+ years of experience in vulnerability discovery / security engineering / application security
  • Threat modeling experience of microservice architectures
  • Experience working in a large cloud or software company
  • Extensive research or experience with multiple classes of security bugs
  • Evidence of contribution to the security community in the form of conducting training / thought leadership / conference talks / publications
  • Improve security throughout the organization, identifying areas of risk or opportunities for improvement and piloting them
  • Be a subject matter expert in at least one business-critical area (e.g. cryptography, hardware security, operating systems, authentication protocols, fuzzing, DoS mitigation, networks, distributed systems)
  • Collaborative track record working between internal teams and external organizations
  • Excellent organizational, verbal and written communication skills
  • Intermediate knowledge of Linux OS Internals
  • Advanced knowledge of one programming language and ability to read two high level programming language such as Java
  • Preferred Qualifications

  • Undergraduate or Graduate degree in Electrical Engineering, Computer Science, or another related field or equivalent work experience.
  • Hands-on experience developing services on a public cloud platform (e.g., AWS, Azure, Oracle)
  • Building continuous integration / deployment pipelines with robust testing and deployment schedules
  • Experience working with internal customers and translating requests into prioritized work or features
  • Expertise in applying risk identification techniques to develop security solutions
  • Experience and understanding of Cryptographic algorithms, standards, implementation and application
  • Experience and understanding of threat modeling, penetration testing, reverse engineering and attacks on software
  • Experience working with large enterprise customers
  • Create a job alert for this search

    Senior Security Engineer • Manchester, UK

    Similar jobs
    Fire & Security Engineer

    Fire & Security Engineer

    Rise Technical Recruitment • Manchester, Greater Manchester, UK
    Full-time
    DOE + Training + Staying Away + Company Van + Expenses Card + Excellent Company Benefits.Nationwide Patch, Ideally Located : York, Leeds, Hull, Wakefield, Huddersfield, Bradford, Manchester, Liverpo...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Engineer (Projects)

    Cyber Security Engineer (Projects)

    Hays • Manchester, ENG, UK
    Full-time
    Cyber Security Engineer (Projects).Up to £58,000 plus great pension and holiday entitlement.Hybrid - 2 days on site - Manchester. I'm working with a Manchester-based organisation who are seeking a c...Show more
    Last updated: 30+ days ago • Promoted
    Fire And Security Engineer

    Fire And Security Engineer

    Progroup Recruitment Limited • Manchester, Greater Manchester, UK
    Full-time
    Fire & Security Engineers – Manchester As we move into the New Year, we’re speaking with experienced Fire & Security Engineers across Manchester about opportunities expected in 2026.Ou...Show more
    Last updated: 24 days ago • Promoted
    Fire & Security Engineer

    Fire & Security Engineer

    Rise Technical Recruitment Limited • Manchester, ENG, GB
    Full-time
    Overtime + Door to Door Travel + Successful Nationwide Business + Company Vehicle + Phone + Fuel Card + Long-Term Career Prospects + Training + Company Benefits. Excellent opportunity for a Fire &am...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    Anson Mccade • Manchester, Greater Manchester, UK
    Permanent
    Manchester, North West - United Kingdom.Security Engineer - API, IAM & Automation.Locations : Glasgow, Greater Manchester or Northampton (Hybrid). Salary : Up to £67,000 base + bonus (DOE).We're looki...Show more
    Last updated: 2 days ago • Promoted
    CYBER SECURITY ENGINEER

    CYBER SECURITY ENGINEER

    Secure Recruitment • Manchester, Greater Manchester, UK
    Full-time
    Bonus + Excellent Staff Benefits.Strong Career Growth Opportunities.Strategically Partnered with a Multi-Award-Winning Technology Organisation. As one of the UKs Largest Independent Software Based B...Show more
    Last updated: 6 days ago • Promoted
    Security Installation Engineer

    Security Installation Engineer

    Smart Search Technical Ltd • Manchester, ENG, UK
    Permanent
    Security Installation Engineer.Location : London & South East.Salary : £34,000 £45,000 basic DOE.Excellent earnings potential & Company van provided. Im currently recruiting on behalf of a wel...Show more
    Last updated: 4 days ago • Promoted
    Fire & Security Engineer

    Fire & Security Engineer

    Venatu Recruitment Group • Stoke-on-Trent, ENG, UK
    Full-time +1
    Venatu Recruitment are proud to announce that a new client of ours are now in the market for a new Fire & Security professional to join them! They're a very well established, leading constructi...Show more
    Last updated: 4 days ago • Promoted
    Security Commissioning Engineer

    Security Commissioning Engineer

    HP4 Recruitment Ltd • Manchester, Greater Manchester, UK
    Full-time
    Install & Commissioning Engineer – Enterprise Security Systems CCTV | Access Control | IP Security Up to £45,000 + Company Car + Full Benefits Location : Manchester / Northwest We are...Show more
    Last updated: 28 days ago • Promoted
    Senior Infrastructure Cyber Security Engineer Contract

    Senior Infrastructure Cyber Security Engineer Contract

    Morson Edge • Manchester, Greater Manchester, UK
    Temporary
    Senior Cyber Security Infrastructure Engineer.Remote with travel to Manchester for first day.January 2026 start, to end of March 2026. Our public sector client, is looking for an experienced senior ...Show more
    Last updated: 5 days ago • Promoted
    Fire and Security Installation Engineer

    Fire and Security Installation Engineer

    EDSB • Manchester, Greater Manchester, UK
    Full-time
    EDSB Integrated Solutions are national providers of Fire & Security, Electrical, Mechanical and Building Services.From Design and Specification through to Installation and Maintenance, our focus is...Show more
    Last updated: 30+ days ago • Promoted
    NMC Cyber Security Engineer

    NMC Cyber Security Engineer

    Police Digital Services • Manchester, ENG, UK
    Permanent
    Join Police Digital Service as NMC Cyber Security Engineer.FT, Permanent, Hybrid / Wigan Salary starting at £50,000 per annum. The new National Management Centre (NMC) in Wigan is part of Police Digit...Show more
    Last updated: 4 days ago • Promoted
    Cyber Engineer Honeypots and Deception £85k

    Cyber Engineer Honeypots and Deception £85k

    Circle Group • Manchester, Greater Manchester, UK
    Full-time
    Cyber Security Engineer - Deception & Honeypot Specialist.UK (fully remote - work from anywhere, including overseas).We're looking for a Cyber Security Engineer with deep expertise in.This is a han...Show more
    Last updated: 2 days ago • Promoted
    Security & Entrance Systems Engineer

    Security & Entrance Systems Engineer

    TDRS Recruitment Limited • Manchester, ENG, UK
    Full-time
    Security & Entrance Systems Engineer.An international supplier of high security entry systems is currently going through a period of substantial growth and is, therefore, looking to expand its ...Show more
    Last updated: 18 days ago • Promoted
    Fire & Security Engineer

    Fire & Security Engineer

    Johnson Controls • Stoke-on-Trent, ENG, UK
    Full-time
    Join the Team Thats Redefining Fire & Security Engineering.Were hiring Fire & Security Engineers UK wide and we want to hear from you!. Whether youre a seasoned pro in.With industry-leading ...Show more
    Last updated: 13 days ago • Promoted
    Fire and Security Engineer

    Fire and Security Engineer

    Infinity Resource Solutions • Manchester, Greater Manchester, UK
    Full-time
    Fire and Security Engineer Covering Greater Manchester and surrounding areas Up to £38,000 OTE - £43k ote Company Van, Overtime, Holidays Fire and Security Engineer Required.Covering Ma...Show more
    Last updated: 30+ days ago • Promoted
    Fire And Security Engineer

    Fire And Security Engineer

    RCC Connect Ltd • Manchester, Greater Manchester, UK
    Full-time +1
    Fire & Security Engineer Location : Manchester Salary : £30,000 – £38,000 DOE Full-time, Permanent An established and growing independent fire and security company is looking to r...Show more
    Last updated: 28 days ago • Promoted
    Fire and Security Engineer

    Fire and Security Engineer

    ThriveSW Limited • Manchester, ENG, UK
    Full-time
    Are you a Fire and Security Engineer based within commuting distance to Bristol and happy to cover both Service and Maintenance but mix it up with some installation works?.Due to a number of contra...Show more
    Last updated: 10 days ago • Promoted