MNC InsiderMNC Insider
Oracle logo

Lead Principal Security Engineer

Oracle

Lead Principal Security Engineer

full-timePosted: Jun 26, 2026Updated: Aug 27, 2026Deadline: Dec 23, 2026United States

Job Description

The Oracle Cloud Infrastructure (OCI) team can provide you the opportunity to build and operate a suite of massive scale, integrated cloud services in a broadly distributed, multi-tenant cloud environment. OCI is committed to providing the best in cloud products that meet the needs of our customers who are tackling some of the world’s biggest challenges. As a Consulting Hardware Security Engineer you will be involved in ensuring that the compute hardware that is used in the Oracle Cloud Infrastructure meets the security bar to ensure compliance with our security posture. You will define security requirements for hardware ensuring hardware does not preclude inclusion of security controls essential to meet or exceed our posture. You will work closely across Oracle, with third party vendors, and with standards organization to influence the next generation of hardware platform security. You will also works closely with OCI's operations and engineering teams, constantly striving to improve Oracle Cloud's overall operational security posture by defining the supply chain and operational requirements to establish best practices for managing security for devices in our cloud infrastructure. Our consulting hardware security engineers have a blend of hardware, firmware and security skills, enabling them to help design and assess our most complex compute systems. Key ResponsibilitiesDefinition of security requirements for hardware enabling OCI security posture aligning business needs and technology trendsProvide independent design consulting for complex compute systems, balancing business objective and security risks to implement:requirements specified by the hardware security teamfeatures required to achieve security baroperations (provisioning, re-use, decommissioning) inline with security posture Hands on security assessments of complex compute systems to ensure they meets requirements.adversarial assessments to ensure they can’t be compromised.Breakdown complex systems for analysis, assign parts to other members of the team, collaborate on synthesizing the inputs and forming a holistic assessment, contextualized to cloud environmentsUnderstand business objectives/requirements and assess risk from findings/threat models and identify proper risk mitigation controlsWork across to teams to ensure requirements, findings and recommendations are implemented inline with expected outcomesCommunicate risks and options to mitigate to senior leadership, balancing security, technology and business goalsIdentify opportunities for security and process improvements and drive them across the organizationAdvance state of the industry security knowledge through individual research contributionFollow developments and trends in their area of subject matter expertise and educate the business and security organization of the developmentsMentor junior engineersMinimum QualificationsBachelor's degree in Electrical Engineering, Computer Science or related field or equivalent experience10+ years of experience in hardware security architecture / engineering / validation / planning or related areaDemonstrated competency in hardware/firmware with a focus on securityCompetency with computer architectureSubject Matter Expertise in two or more of the following areas: Root Of Trust (TCG SRTM, DRTM) x86 (Intel, AMD), ARM server platform architecture, UEFIGPU platforms, rackscale systems, clustering Baseboard Management ControllersSmartNICs (DPUs) Storage devices Security concepts and standards associated Attestation (Ex: SPDM), cryptography, Secureboot, DICE etc.Ability to work with most common programming languages (C, C++, Java, Python, Ruby, Go, Rust)Ability to read and review complex hardware system/platform level schematics for security concernsExperience with reversing tools and ability to reverse engineerExtensive research or experience with multiple classes of security bugsSpecification and/or design of hardware security features Preferred QualificationsAbility to read and understand x86 and/or ARM assembly languageKnowledge of vendor-specific TEE technologies such as Intel SGXFamiliarity with common embedded communications interfaces (SPI, I2C, RS232-style serial)Knowledge of host and network virtualization technologies and how to use them securelyKnowledge of enterprise and/or datacenter networking architectureExperience operating in a large-scale DevOps or CICD environmentAbility to write clear and concise product security requirements Ability to effectively assess risk from findings and threat models and identify proper risk mitigation controlsAbility to succeed individually or collaboratively, whether working internally or with external organizations and individualsSignificant experience working effectively in a large and distributed companyExcellent organizational, verbal and written communication skillsConducting training / thought leadership / conference talks / publications Disclaimer:Certain U.S. based or U.S. customer or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates, and/or drug testing requirements.Range and benefit information provided in this posting are specific to the stated locations onlyUS: Hiring Range in USD from: $130,000 to $306,400 per annum. May be eligible for bonus, equity, and compensation deferral.Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.Oracle US offers a comprehensive benefits package which includes the following:1. Medical, dental, and vision insurance, including expert medical opinion2. Short term disability and long term disability3. Life insurance and AD&D4. Supplemental life insurance (Employee/Spouse/Child)5. Health care and dependent care Flexible Spending Accounts6. Pre-tax commuter and parking benefits7. 401(k) Savings and Investment Plan with company match8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.9. 11 paid holidays10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.11. Paid parental leave12. Adoption assistance13. Employee Stock Purchase Plan14. Financial planning and group legal15. Voluntary benefits including auto, homeowner and pet insuranceThe role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.Career Level - IC5

Locations

  • United States
  • Switzerland

Salary

130,000 - 306,400 USD / yearly

Skills Required

  • twointermediate
  • reversing toolsintermediate
  • multiple classes of security bugsintermediate
  • vendor-specific TEE technologies such as Intel SGXintermediate
  • common embedded communications interfacesintermediate
  • hostintermediate
  • enterprise and/or datacenter networking architectureintermediate

Required Qualifications

  • Bachelor's degree in Electrical Engineering, Computer Science or related field or equivalent experience (experience)
  • 10+ years of experience in hardware security architecture / engineering / validation / planning or related area (experience, 10 years)
  • Demonstrated competency in hardware/firmware with a focus on security (experience)
  • Competency with computer architecture (experience)
  • Subject Matter Expertise in two or more of the following areas: Root Of Trust (TCG SRTM, DRTM) x86 (Intel, AMD), ARM server platform architecture, UEFIGPU platforms, rackscale systems, clustering Baseboard Management ControllersSmartNICs (DPUs) Storage devices (experience)
  • Security concepts and standards associated Attestation (Ex: SPDM), cryptography, Secureboot, DICE etc. (experience)
  • Ability to work with most common programming languages (C, C++, Java, Python, Ruby, Go, Rust) (experience)
  • Ability to read and review complex hardware system/platform level schematics for security concerns (experience)
  • Experience with reversing tools and ability to reverse engineer (experience)
  • Extensive research or experience with multiple classes of security bugs (experience)
  • Specification and/or design of hardware security features (experience)

Preferred Qualifications

  • Ability to read and understand x86 and/or ARM assembly language (experience)
  • Knowledge of vendor-specific TEE technologies such as Intel SGX (experience)
  • Familiarity with common embedded communications interfaces (SPI, I2C, RS232-style serial) (experience)
  • Knowledge of host and network virtualization technologies and how to use them securely (experience)
  • Knowledge of enterprise and/or datacenter networking architecture (experience)
  • Experience operating in a large-scale DevOps or CICD environment (experience)
  • Ability to write clear and concise product security requirements (experience)
  • Ability to effectively assess risk from findings and threat models and identify proper risk mitigation controls (experience)
  • Ability to succeed individually or collaboratively, whether working internally or with external organizations and individuals (experience)
  • Significant experience working effectively in a large and distributed company (experience)
  • Excellent organizational, verbal and written communication skills (experience)
  • Conducting training / thought leadership / conference talks / publications (experience)

Responsibilities

  • Definition of security requirements for hardware enabling OCI security posture aligning business needs and technology trends
  • Provide independent design consulting for complex compute systems, balancing business objective and security risks to implement:requirements specified by the hardware security teamfeatures required to achieve security baroperations (provisioning, re-use, decommissioning) inline with security posture
  • Hands on security assessments of complex compute systems to ensure they meets requirements.adversarial assessments to ensure they can’t be compromised.
  • Breakdown complex systems for analysis, assign parts to other members of the team, collaborate on synthesizing the inputs and forming a holistic assessment, contextualized to cloud environments
  • Understand business objectives/requirements and assess risk from findings/threat models and identify proper risk mitigation controls
  • Work across to teams to ensure requirements, findings and recommendations are implemented inline with expected outcomes
  • Communicate risks and options to mitigate to senior leadership, balancing security, technology and business goals
  • Identify opportunities for security and process improvements and drive them across the organization
  • Advance state of the industry security knowledge through individual research contribution
  • Follow developments and trends in their area of subject matter expertise and educate the business and security organization of the developments
  • Mentor junior engineers

Target Your Resume for "Lead Principal Security Engineer" , Oracle

Get personalized recommendations to optimize your resume specifically for Lead Principal Security Engineer. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Lead Principal Security Engineer" , Oracle

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Information SecurityInformation Security

Answer 10 quick questions to check your fit for Lead Principal Security Engineer @ Oracle.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.