Job was saved successfully.
Job was removed from Saved Jobs.

Job Details


Senior Principal Security Engineer/Technical Program Manager (210009NZ)


Program Manager



Boston, Massachusetts, United States

"**Senior Principal Security Engineer/Technical Program Manager****Preferred Qualifications****Summary**Oracles Hardware Development (OHD) team is seeking a Senior Principal Security Engineer/Technical Program Manager with a security background in x86 server platform architecture (CPU/chipset firmware and software), and specific experience with Intel/AMD processor security. The OHD team is responsible for design, development and delivery of secure server product offerings into Oracle's Cloud infrastructure Fleet, and into on-premise Engineered Systems. The successful candidate will work in a team-oriented environment to manage the response to key security vulnerabilities across hardware, CPU, chipset, UEFI, BMC firmware, device-driver and other firmware and software, from identification through patch creation and delivery, working across OHD and between OHD and key Oracle internal partners to co-ordinate Oracle messaging and mitigations. They will also have opportunities to innovate in security process and product security through architecture, design and implementation in order to meet Oracle's stringent product security requirements. These are exciting times in Oracle's Cloud and Engineered Systems development space where an individual can have a significant impact on Oracle's offerings, and have an abundance of opportunities to innovate.**Key Qualifications:**+ BS, MS or PhD in Electrical Engineering, Computer Engineering, Computer Science or equivalent practical experience+ Broad understanding of state-of-the-art security principles, theories, attacks and threat modeling methodologies: assets, security vulnerabilities and attack profile, threats mitigations etc.+ Knowledge of security technologies: authentication, applied cryptography, secure protocols+ Experience technically analyzing threats and vulnerabilities, and objectively prioritizing critical projects+ Experience working with platform firmware (Root of Trust, UEFI, BMC) or embedded platform environments+ Knowledge of UEFI and embedded firmware security features (TPM, Secure Boot, TXT, ROT)+ Knowledge of industry hardware bus architectures (PCI/PCIE, I2C, SPI, USB, UART)+ Knowledge of Intel/AMD and ARM64 computer architecture and low level chipset programming (CPU/chipset logic, firmware, and ingredients)+ Programming skills in C/C , Python scripting**Core Responsibilities:**+ Main responsibilities include identifying, analyzing, interpreting, prioritizing, and managing the mitigation of Intel/AMD and ARM64 platform security threats and vulnerabilities+ TPM responsibilities owning and managing platform security threats and the creation and delivery of mitigations to known vulnerabilities, objectively prioritizing these critical projects, driving cross-team and cross-functionally and communicating with senior management+ As Security delivery owner, partners with platform Security Architects and Managers and drives threats and vulnerabilities to closure. Builds timelines for each issue, objectively prioritizes critical projects, and consistently leads investigations & vulnerabilities to closure**Related Responsibilities:**+ Participates in evolution of OHD Security Development Lifecycle of our products+ Researches and integrates static and dynamic security tools, for penetration testing, DOS, and industry attacks, across Oracle platforms and extensible to future generations of CPUs and chipsets.+ Participates in platform hardware and firmware security reviews, and architectural risk assessments+ Collaborates across functional teams (HW, Diagnostics, UEFI, BMC, OS, fleet) in the assurance and evolution of product and process security+ Assists root cause analysis and corrective action of security issues reported in manufacturing, fleet and at customers+ Contributes to and reviews security requirement, design, and process specifications**Detailed Description and Job Requirements**Design, develop, troubleshoot and debug software programs for databases, applications, tools, networks etc.As a member of the software engineering division, you will take an active role in the definition and evolution of standard practices and procedures. Define specifications for significant new projects and specify, design and develop software according to those specifications. You will perform professional software development tasks associated with the developing, designing and debugging of software applications or operating systems.Provide leadership and expertise in the development of new products/services/processes, frequently operating at the leading edge of technology. Recommends and justifies major changes to existing products/services/processes. BS or MS degree or equivalent experience relevant to functional area. 8 or more years of software engineering or related experience.**Job:** Product Development**Location:** US-CA,California-Santa Clara**Other Locations:** US-MA,Mass-Burlington**Job Type:** Regular Employee Hire**Organization:** Oracle"