Senior Security Analyst
OracleAbout the role
Develops and executes programs and processes to reduce information security risk and strengthen Oracle’s security posture.
The successful candidate will be responsible for providing security analysis and Cybersecurity support for our federal clients. The cyber security analyst has experience with NIST 800-37,” Guide to Applying Risk Management Framework to Federal Information Systems,” NIST 800-53rev5 “Security and Privacy Controls for Information Systems and Organizations,” and NIST 800-171, “Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations,” Cyber Security Policy and security engineering principles. The successful candidate must be well versed in applicable laws and standards such as HIPPA, HITECH, and NIST 800-53, NIST 800-171 to implement secure applications, and networks. They must have familiarity and experience in the implementation of cyber security requirements to follow FISMA and FedRAMP guidelines
Career Level - IC3
Supports the strengthening of Oracle’s security posture, focusing on one or more of the following: risk management; regulatory compliance; threat and vulnerability management; incident management and response; security policy development and enforcement; privacy; information security education, training and awareness (ISETA); digital forensics and similar focus areas.
Risk Management: Brings advanced level skills to assess the information security risk associated with existing and proposed business operational programs, systems, applications, practices and procedures in very complex, business-critical environments. May conduct and document very complex information security risk assessments. May assist in the creation and implementation of security solutions and programs.
Regulatory Compliance: Brings advanced level skills to manage programs to establish, document and track compliance to industry and government standards and regulations, e.g. ISO-27001, PCI-DSS, HIPAA, FedRAMP, GDPR, etc. Researches and interprets current and pending governmental laws and regulations, industry standards and customer and vendor contracts to communicate compliance requirements to the business. Other responsibilities include:
• Assess the Cyber Security risk of application, technologies and networks migrating to Oracle Cloud Infrastructure and documenting in formal risk assessments and supporting artifacts associated with the Federal Assessment and Authorization process
• Identify security risks through the security impact analysis and system risk assessments
• Apply knowledge of security principles, policy, and regulations to daily tasking
• Provide IT security engineering support to cross-functional project teams to ensure that security policies, processes, and controls are adhered to, planned for, and implemented throughout the project lifecycle
• Knowledgeable working in the FedRAMP cloud environment understanding IaaS, PaaS, and SaaS in regard to cloud service provider security control responsibilities and customer responsibilities
• Effectively and efficiently communicate and collaborate with external and internal customers to analyze and monitor a project’s security posture and status
• Effectively following-up with key project team members
• Engage with client on security matters
Minimum of 5 years’ experience in information systems, business operations, or related fields, at least 3 years of which must be from at least one of the following:
o Risk Management Framework
o Authorization Requirements Process for Federal Government
o Information Assurance
o FISMA and/ or FedRAMP requirements
• Expert technical knowledge of risk management, and information security concepts and technologies
• Experience with Cyber Security document management and familiar with security and privacy rules
• Excellent verbal communication skills
• Excellent written skills for preparing reports and briefings
• Excellent analytical and problem-solving skills
Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from $41.83 to $85.63 per hour; from: $87,000 to $178,100 per annum. May be eligible for equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle’s differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the follow
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s