Santa Clara, California

Job Description

Critical hire: Organizational Driver for analyzing and managing vulnerability disclosures & mitigation patches across Intel/AMD/Ampere CPU partners, and Oracle PSW internal vulnerabilities. This role requires Senior Principal Engineer and Technical Program Manager skills, Intel/AMD platform firmware/software (UEFI, chipset, BMC, device driver/OS) and hardware security experience, and broad knowledge of major operating systems (Oracle Linux, Virtualization, VMware, Windows). Domain experience in x86 processor security, interfacing with and manage Intel and additionally AMD, Ampere security threats and vulnerabilities.

Summary

Oracle's Hardware Development (OHD) team is seeking a Senior Principal Security Engineer with Technical Program Manager skilles, and a security background in x86 server platform architecture (CPU/chipset firmware and software), and experience with Intel/AMD processor and platform security. The OHD team is responsible for design, development and delivery of secure server product offerings into OCI (Oracle Cloud infrastructure) Fleet, and into on-premise Engineered Systems. The successful candidate will work in a team-oriented environment to manage the response to key security vulnerabilities across hardware, CPU, chipset, UEFI, BMC firmware, device-driver and other firmware and software, from identification through patch creation and delivery, working across OHD and between OHD and key Oracle partners to co-ordinate Oracle messaging and mitigations. These are exciting times in Oracle's OCI and Engineered Systems development space where an individual can have a significant impact on Oracle's offerings, and an abundance of opportunities to innovate.

Key Qualifications:
  • BS, MS or PhD in Electrical Engineering, Computer Engineering, Computer Science or equivalent practical experience
  • Broad understanding of state-of-the-art security principles, theories, attacks and threat modeling methodologies: assets, security vulnerabilities and attack profile, threats mitigations etc.
  • Knowledge of security technologies: authentication, applied cryptography, secure protocols
  • Experience technically analyzing threats and vulnerabilities, and objectively prioritizing critical projects
  • Knowledge of UEFI and embedded firmware (UEFI, BMC) and security features (TPM, Secure Boot, TXT, ROT)
  • Knowledge of Intel/AMD and ARM64 computer architecture and low level chipset programming (CPU/chipset logic, firmware, and ingredients), and hardware bus architectures
Core Responsibilities:
  • Main responsibilities include identifying, analyzing, interpreting, prioritizing, and managing the mitigation of Intel/AMD and ARM64 platform security threats and vulnerabilities
  • Technical Program Management responsibilities owning and managing platform security threats, and the delivery of mitigations to known vulnerabilities, objectively prioritizing these critical projects, driving cross-team and cross-functionally, and communicating with senior management
  • As Security delivery owner, partners with platform Security Architects and Managers and drives threats and vulnerabilities to closure. Builds timelines for each issue, objectively prioritizes critical projects, and consistently leads investigations & vulnerabilities to closure
Related Responsibilities:
  • Participates in evolution of OHD Security Development Lifecycle of our products
  • Participates in platform hardware and firmware security reviews, and architectural risk assessments
  • Collaborates across functional teams (HW, Diagnostics, UEFI, BMC, OS, Devops) in the assurance and evolution of product and process security

Design, develop, troubleshoot and debug software programs for databases, applications, tools, networks etc.

As a member of the software engineering division, you will take an active role in the definition and evolution of standard practices and procedures. Define specifications for significant new projects and specify, design and develop software according to those specifications. You will perform professional software development tasks associated with the developing, designing and debugging of software applications or operating systems.

Provide leadership and expertise in the development of new products/services/processes, frequently operating at the leading edge of technology. Recommends and justifies major changes to existing products/services/processes. BS or MS degree or equivalent experience relevant to functional area. 8 or more years of software engineering or related experience.

About Us

Innovation starts with inclusion at Oracle. We are committed to creating a workplace where all kinds of people can be themselves and do their best work. It's when everyone's voice is heard and valued, that we are inspired to go beyond what's been done before. That's why we need people with diverse backgrounds, beliefs, and abilities to help us create the future, and are proud to be an affirmative-action equal opportunity employer.

Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans status, age, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

Santa Clara, California

For over three decades, Oracle has been the center of innovation for business software—birthplace of the first commercially available relational database, the first suite of internet-based applications, and the next-generation enterprise-computing platform, Oracle Fusion. Today, Oracle provides the world's most complete, open, and integrated business software and hardware systems, with more than 370,000 customers—including 100 of the Fortune 100—representing a variety of sizes and industries in more than 145 countries around the globe. And Oracle's 104,500 global employees—including 30,000 developers working full-time on Oracle products—are critical to that success.

Oracle recruiters are always searching for brilliant employees with an entrepreneurial spirit, looking for a work culture where innovation is the goal, hard work is expected, and creativity is rewarded. Oracle employees enjoy competitive salaries, excellent health benefits, and a network of like-minded co-workers that drive innovation across the entire technology industry.

Similar jobs