Talent.com
Offensive Security Engineer

Offensive Security Engineer

OraclePolska
8 dni temu
Opis pracy

Job Description

Responsible for advanced security testing of Oracle applications and services (primarily SaaS-related) including but not limited to covert red team operations, security research and white box penetration testing, exploit development, and black box penetration testing.

Responsibilities

This team is responsible for ensuring the protection of Oracle's SaaS applications and services.

Oracle SaaS (a.k.a. Oracle Cloud applications), built on machine learning, offers the most complete application suite with the best technology, enabling fast innovation with a modern UX and customer-first approach and one of the top strategic cloud services for Oracle.

The SCS organization is responsible for securing enterprise-grade software services on behalf of our 25,000 customers, processing over 60 billion transactions per day. You will have the opportunity to work in a cloud-scale environment using the latest security technologies / tools and collaborate with the best minds in the industry, to collectively stay ahead of and respond to increasing threats to cloud services. And you will actively engage in conducting proactive security research and white box penetration testing, including the development of working proof of concept exploits; reactive security research based on industry trends as well as security incidents related to Oracle; covert red team operations; black box penetration tests; and other types of work involving collaboration with various security and engineering teams within Oracle SaaS.

About you :

Successful applicants will possess the knowledge necessary to conduct ethical hacking activities on :

  • SaaS applications
  • SaaS host and network environments
  • Web applications
  • APIs
  • Java-based technologies
  • Databases
  • AI / ML technologies
  • Internally facing tools
  • More…

The team that is hiring will have members who may possess different sets of advanced offensive security skills. Some of the advanced skills needed include :

  • Red team custom implant development primarily in a Linux environment (non-Linux OS environments also present but less numerous)
  • Red team campaign execution
  • Red team infrastructure support (i.e., Terraform, Ansible, cloud products, etc.)
  • Security research and code review
  • Proof of concept exploit / malware development
  • Minimum Qualifications :

  • 5+ years of experience in offensive security, with at least 3 years of recent experience with red team operations or security research
  • BS in Computer Science, or equivalent experience
  • Deep familiarity with Linux and attack tooling is required
  • Ability to work in a collaborative, cross-functional team environment
  • In depth knowledge of security vulnerabilities including a detailed understanding of the OWASP top 10, secure design and secure coding principles
  • Ability to prioritize and handle concurrent assignments or projects
  • Excellent team player, willing to share knowledge and skills with peers and team members
  • Strong presentation, written and verbal communication skills
  • Experience with security testing tools including static analysis, web application testing, infrastructure and network testing, and manual security testing required
  • Preferred Qualifications :

  • Proficient in multiple programming and scripting languages including any of the following : Java, C#, C, Go, Rust, Scala, Ruby, Python, Bash / sh, Powershell, JavaScript, or other object-oriented languages
  • Experience leading red team campaigns from start to finish with high success rate and low detection rate
  • Experience in building covert command and control (C2) implants designed to evade host-based and network-based detection capabilities
  • Proven ability (i.e., published CVEs, etc.) to discover and exploit complex security vulnerabilities and vulnerability chains to achieve remote code execution (RCE)
  • Experience with AI red teaming or penetration testing
  • Advanced security certifications relevant to white box penetration testing and red team operations such as : OSCP, OSCE, OSWE, OSEP, OSED, OSEE, OSCE3, CRTP, CRTE, CRTM, GXPN
  • Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans status or any other characteristic protected by law.

    Qualifications

    Career Level - IC4

    About Us

    As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector—and continue to thrive after 40+ years of change by operating with integrity.

    We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.

    Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.

    We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation- or by calling in the United States.

    Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

    Utwórz powiadomienie o ofertach pracy dla tego wyszukiwania

    Security Engineer • Polska

    Powiązane stanowiska
    • Promowane
    Security Engineer

    Security Engineer

    ArrivePolska
    We've signed up to an ambitious journey.As Arrive, we guide customers and communities towards brighter futures and more livable cities, it isn't a challenge just anyone could take on.Luckily, we ha...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Cyber Security Engineer @ Link Group

    Cyber Security Engineer @ Link Group

    Link GroupRemote, Poland
    At Link Group, we build tech teams for Fortune 500 companies and the world’s most innovative startups.Our mission is to connect talented professionals with opportunities that align with their exper...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Software Engineer with Cyber Security @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    Software Engineer with Cyber Security @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    AVENGA (Agencja Pracy, nr KRAZ : 8448)Remote, Poland
    We are looking for a skilled engineer to join our team developing vehicle characteristics applications used across various truck divisions. The applications are primarily built using back-end techno...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    OT Security Engineer

    OT Security Engineer

    RambollPolska
    Ramboll is a global architecture, engineering, and consultancy company.As a foundation‑owned people company founded in Denmark, we believe that the purpose of sustainable change is to create a thri...Pokaż więcejOstatnia aktualizacja: 16 dni temu
    • Promowane
    Security Engineer @ Appfire

    Security Engineer @ Appfire

    AppfireRemote, Poland
    Appfire is seeking a highly skilled Security Engineer to join our Appfire Information Security team.This Security Engineer role will report to our Deputy CISO and work within our Security Engineeri...Pokaż więcejOstatnia aktualizacja: 10 dni temu
    • Promowane
    Application Product Security Engineer

    Application Product Security Engineer

    ABB Business ServicesŁódź, Łódź, Poland
    We are an international pioneering technology leader that is writing the future of industrial digitalization.At the forefront is our Corporate Technology Center which provides industry leading soft...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Security Engineer

    Security Engineer

    AppfireŁódź, Łódź, Polska
    Appfire is seeking a highly skilled Security Engineer to join our Appfire Information Security team.This Security Engineer role will report to our Deputy CISO and work within our Security Engineeri...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Security Engineer

    Security Engineer

    DropboxPolska
    The Dropbox team is growing, and we're looking for a security engineer to join our team.In this role, you'll be part of a small team dedicated to performing Vulnerability Management at Dropbox.We a...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Security Engineer

    Security Engineer

    TechTreePolska
    Our client is a global leader in data center and cloud infrastructure.Security Engineer focusing on IAM automation, secure app development, and enhancing security solutions for a global data center...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Application Security Engineer / DevSecOps @ Moondigo Sp. z o.o.

    Application Security Engineer / DevSecOps @ Moondigo Sp. z o.o.

    Moondigo Sp. z o.o.Remote, Poland
    Dołączysz do dużej organizacji z.Stabilna, długoterminowa współpraca.Prywatna opieka medyczna (Luxmed).Doświadczenie w pracy z narzędziami do analizy bezpieczeństwa kodu i zależności (np.CodeQL, De...Pokaż więcejOstatnia aktualizacja: 24 dni temu
    • Promowane
    Security Engineer

    Security Engineer

    Zazmic IncPolska
    We are seeking a skilled and motivated Security Engineer to join our team.This hands-on, technical role focuses on penetration testing, threat hunting, and advanced security engineering practices.Y...Pokaż więcejOstatnia aktualizacja: 8 dni temu
    • Promowane
    Remote Senior Cloud Infrastructure & Security Engineer @ Wyden AG

    Remote Senior Cloud Infrastructure & Security Engineer @ Wyden AG

    Wyden AGRemote, Poland
    We are seeking an experienced Senior Cloud Infrastructure & Security Engineer to design, secure, and operate Wyden’s core infrastructure. This role blends cloud engineering / SRE responsibilities ...Pokaż więcejOstatnia aktualizacja: 13 dni temu
    • Promowane
    Cybersecurity Engineer / Cloud & Application Security Engineer @ Devire

    Cybersecurity Engineer / Cloud & Application Security Engineer @ Devire

    DevireRemote, Poland
    Clients - leading IT Companies bringing innovations and the newest resolutions to market.Our client is a multinational nutrition leader with global brands and > . Europe, with EMEA tech hubs and end-...Pokaż więcejOstatnia aktualizacja: 24 dni temu
    • Promowane
    Cloud Security Engineer - 100% remote @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    Cloud Security Engineer - 100% remote @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    AVENGA (Agencja Pracy, nr KRAZ : 8448)Łódź, Poland
    We are seeking a highly skilled Cloud Security Engineer with deep expertise in Amazon Web Services (AWS) to support our digital transformation. As a Cloud Security Engineer, you will be responsible ...Pokaż więcejOstatnia aktualizacja: 27 dni temu
    • Promowane
    Penetration Tester / Security Engineer @ 1dea

    Penetration Tester / Security Engineer @ 1dea

    1deaRemote, Poland
    Dla naszego Klienta poszukujemy Security Engineer / Penetration Tester.Stawka : B2B do 160 zł net + vat.Poszukujemy doświadczonego Penetration Testera / Ethical Hackera, który dołączy do zespołu cyb...Pokaż więcejOstatnia aktualizacja: 17 dni temu
    • Promowane
    Security Engineer

    Security Engineer

    ExadelPolska
    We’re an AI-first global tech company with 25+ years of engineering leadership, 2,000+ team members, and 500+ active projects powering Fortune 500 clients, including HBO, Microsoft, Google, and Sta...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Security Engineer – IAM Saviynt

    Security Engineer – IAM Saviynt

    Sii Sp. z o.o.Łódź, Łódź, Poland
    We are looking for a talented and motivated Identity Governance & Administration (IGA) Engineer to join our team.The ideal candidate will have hands-on experience with the Saviynt Enterprise Identi...Pokaż więcejOstatnia aktualizacja: 22 dni temu
    • Promowane
    Offensive Security Engineer, Purple Team

    Offensive Security Engineer, Purple Team

    CD PROJEKT REDPolska
    To create revolutionary, story-driven RPGs which go straight to the hearts of gamers - this is our mission.Want to dive deeper into our company's culture? Explore our social media and check out our...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu