Talent.com
Offensive Security Engineer

Offensive Security Engineer

OraclePolska
19 days ago
Job description

Job Description

Responsible for advanced security testing of Oracle applications and services (primarily SaaS-related) including but not limited to covert red team operations, security research and white box penetration testing, exploit development, and black box penetration testing.

Responsibilities

This team is responsible for ensuring the protection of Oracle's SaaS applications and services.

Oracle SaaS (a.k.a. Oracle Cloud applications), built on machine learning, offers the most complete application suite with the best technology, enabling fast innovation with a modern UX and customer-first approach and one of the top strategic cloud services for Oracle.

The SCS organization is responsible for securing enterprise-grade software services on behalf of our 25,000 customers, processing over 60 billion transactions per day. You will have the opportunity to work in a cloud-scale environment using the latest security technologies / tools and collaborate with the best minds in the industry, to collectively stay ahead of and respond to increasing threats to cloud services. And you will actively engage in conducting proactive security research and white box penetration testing, including the development of working proof of concept exploits; reactive security research based on industry trends as well as security incidents related to Oracle; covert red team operations; black box penetration tests; and other types of work involving collaboration with various security and engineering teams within Oracle SaaS.

About you :

Successful applicants will possess the knowledge necessary to conduct ethical hacking activities on :

  • SaaS applications
  • SaaS host and network environments
  • Web applications
  • APIs
  • Java-based technologies
  • Databases
  • AI / ML technologies
  • Internally facing tools
  • More…

The team that is hiring will have members who may possess different sets of advanced offensive security skills. Some of the advanced skills needed include :

  • Red team custom implant development primarily in a Linux environment (non-Linux OS environments also present but less numerous)
  • Red team campaign execution
  • Red team infrastructure support (i.e., Terraform, Ansible, cloud products, etc.)
  • Security research and code review
  • Proof of concept exploit / malware development
  • Minimum Qualifications :

  • 5+ years of experience in offensive security, with at least 3 years of recent experience with red team operations or security research
  • BS in Computer Science, or equivalent experience
  • Deep familiarity with Linux and attack tooling is required
  • Ability to work in a collaborative, cross-functional team environment
  • In depth knowledge of security vulnerabilities including a detailed understanding of the OWASP top 10, secure design and secure coding principles
  • Ability to prioritize and handle concurrent assignments or projects
  • Excellent team player, willing to share knowledge and skills with peers and team members
  • Strong presentation, written and verbal communication skills
  • Experience with security testing tools including static analysis, web application testing, infrastructure and network testing, and manual security testing required
  • Preferred Qualifications :

  • Proficient in multiple programming and scripting languages including any of the following : Java, C#, C, Go, Rust, Scala, Ruby, Python, Bash / sh, Powershell, JavaScript, or other object-oriented languages
  • Experience leading red team campaigns from start to finish with high success rate and low detection rate
  • Experience in building covert command and control (C2) implants designed to evade host-based and network-based detection capabilities
  • Proven ability (i.e., published CVEs, etc.) to discover and exploit complex security vulnerabilities and vulnerability chains to achieve remote code execution (RCE)
  • Experience with AI red teaming or penetration testing
  • Advanced security certifications relevant to white box penetration testing and red team operations such as : OSCP, OSCE, OSWE, OSEP, OSED, OSEE, OSCE3, CRTP, CRTE, CRTM, GXPN
  • Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans status or any other characteristic protected by law.

    Qualifications

    Career Level - IC4

    About Us

    As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector—and continue to thrive after 40+ years of change by operating with integrity.

    We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.

    Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.

    We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation- or by calling in the United States.

    Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

    Create a job alert for this search

    Security Engineer • Polska

    Related jobs
    • Promoted
    Security Engineer

    Security Engineer

    ArrivePolska
    We've signed up to an ambitious journey.As Arrive, we guide customers and communities towards brighter futures and more livable cities, it isn't a challenge just anyone could take on.Luckily, we ha...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer L4 / L5

    Application Security Engineer L4 / L5

    NetflixPolska
    Netflix is one of the world's leading entertainment services, with over 300 million paid memberships in over 190 countries enjoying TV series, films and games across a wide variety of genres and la...Show moreLast updated: 30+ days ago
    • Promoted
    Mid / Senior Software Engineer – Network & Security Focus @ CodiLime

    Mid / Senior Software Engineer – Network & Security Focus @ CodiLime

    CodiLimeRemote, Poland
    We create proofs-of-concept, help our clients build new products, nurture existing ones and provide services in production environments. Our clients include both tech startups and big players in var...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Specialist @ ABB

    Cyber Security Specialist @ ABB

    ABBRemote, Poland
    At ABB, we help industries outrun - leaner and cleaner.Here, progress is an expectation - for you, your team, and the world. As a global market leader, we’ll give you what you need to make it happen...Show moreLast updated: 19 days ago
    • Promoted
    OT Security Engineer

    OT Security Engineer

    RambollPolska
    We invite you to bring your skills into play as you contribute to the safety of our client's automation systems.To succeed in this role, you must have experience with Cyber / OT security and manageme...Show moreLast updated: 28 days ago
    • Promoted
    Security Engineer @ Appfire

    Security Engineer @ Appfire

    AppfireRemote, Poland
    Appfire is seeking a highly skilled Security Engineer to join our Appfire Information Security team.This Security Engineer role will report to our Deputy CISO and work within our Security Engineeri...Show moreLast updated: 21 days ago
    • Promoted
    Security Lead / Architect

    Security Lead / Architect

    RELOUT sp. z o.o.Łódź, Łódź, Poland
    We are currently looking for a Security Lead / Architect, willing to join a project for our strategic client – one of the largest manufacturing companies from Sweden, offering IoT solutions and asset...Show moreLast updated: 26 days ago
    • Promoted
    Application Product Security Engineer

    Application Product Security Engineer

    ABB Business ServicesŁódź, Łódź, Poland
    We are an international pioneering technology leader that is writing the future of industrial digitalization.At the forefront is our Corporate Technology Center which provides industry leading soft...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    AppfireŁódź, Łódź, Polska
    Appfire is seeking a highly skilled Security Engineer to join our Appfire Information Security team.This Security Engineer role will report to our Deputy CISO and work within our Security Engineeri...Show moreLast updated: 30+ days ago
    • Promoted
    Security engineer

    Security engineer

    Bending SpoonsŁódź, Województwo łódzkie, Polska
    At Bending Spoons, we’re striving to build one of the all‑time great companies.A company that serves a huge number of customers, where team members grow to their full potential, and that operates w...Show moreLast updated: 3 days ago
    • Promoted
    MC Security & Network Engineer @ Nordcloud

    MC Security & Network Engineer @ Nordcloud

    NordcloudRemote, Poland
    We’re on the hunt for a skilled Network & Security Cloud Engineer to join our team at Nordcloud, a leading European cloud solutions provider and an IBM company. If you’re passionate about cloud ...Show moreLast updated: 20 days ago
    • Promoted
    Remote Senior Cloud Infrastructure & Security Engineer @ Wyden AG

    Remote Senior Cloud Infrastructure & Security Engineer @ Wyden AG

    Wyden AGRemote, Poland
    We are seeking an experienced Senior Cloud Infrastructure & Security Engineer to design, secure, and operate Wyden’s core infrastructure. This role blends cloud engineering / SRE responsibilities ...Show moreLast updated: 24 days ago
    • Promoted
    Penetration Tester / Security Engineer @ 1dea

    Penetration Tester / Security Engineer @ 1dea

    1deaRemote, Poland
    Dla naszego Klienta poszukujemy Security Engineer / Penetration Tester.Stawka : B2B do 160 zł net + vat.Poszukujemy doświadczonego Penetration Testera / Ethical Hackera, który dołączy do zespołu cyb...Show moreLast updated: 28 days ago
    • Promoted
    Senior Tech Support Engineer @ Fudo Security

    Senior Tech Support Engineer @ Fudo Security

    Fudo SecurityRemote, Poland
    The possibility to work on a unique product with international outreach.One week per quarter we all work from the office. General onboarding program and Fudo Buddy who will help you in your first st...Show moreLast updated: 19 days ago
    • Promoted
    Senior IT Security Engineer @ Simon-Kucher Core Business Services Sp. z o. o.

    Senior IT Security Engineer @ Simon-Kucher Core Business Services Sp. z o. o.

    Simon-Kucher Core Business Services Sp. z o. o.Remote, Poland
    Become part of a unique entrepreneurial team.Think independently, use your initiative, and take some risks.Entrepreneurship is a powerful force that drives the growth not only of our firm but our c...Show moreLast updated: 30+ days ago
    • Promoted
    Google SecOps Security Architect

    Google SecOps Security Architect

    Sii Sp. z o.o.Łódź, Łódź, Poland
    We are looking for an experienced Security Architect with strong expertise in Google SecOps (formerly Google Chronicle) to lead and support our SIEM Transformation initiative.The successful candida...Show moreLast updated: 26 days ago
    • Promoted
    Security Engineer

    Security Engineer

    ExadelPolska
    We’re an AI-first global tech company with 25+ years of engineering leadership, 2,000+ team members, and 500+ active projects powering Fortune 500 clients, including HBO, Microsoft, Google, and Sta...Show moreLast updated: 30+ days ago
    • Promoted
    Infrastructure Security Engineer (Security) @ JetBrains

    Infrastructure Security Engineer (Security) @ JetBrains

    JetBrainsRemote, Poland
    At JetBrains, we are passionate about creating software tools for individual developers and teams that help them work more productively and enjoyably. Our Security team is currently looking for an e...Show moreLast updated: 11 days ago