Principal Security Architecture Specialist jobs in United States
cer-icon
Apply on Employer Site
company-logo

Oracle · 3 months ago

Principal Security Architecture Specialist

Oracle is seeking a Principal Security Architecture Specialist to provide advanced skills and knowledge in the design and review of secure networks, applications, and systems. The role involves driving security tool development, consulting on secure system design, and ensuring compliance with security policies and regulations.

Data GovernanceData ManagementEnterprise SoftwareInformation TechnologySaaSSoftware
badNo H1BnoteSecurity Clearance Requirednote

Responsibilities

Drive and champion security tool development (e.g. scanning tools)
Consult software development teams in design and architecture of safe and secure systems through Threat Modeling and modeling exercises
Champion and consult on secure development lifecycle practices
Design and integrate verification and posture reporting mechanisms
Define security configuration and implementation best practices
Prototype, design, and implement security solutions for new and challenging problems
Evaluate, select, and deploy technical security controls and tools to enhance protection of networks, applications, and data
Conduct security risk assessments, threat modeling, and architecture reviews for critical systems and new initiatives
Collaborate with IT and business units to integrate security into project lifecycle, including cloud migrations, new application deployments, and third-party solutions
Define and maintain security policies, procedures, and technical documentation
Monitor emerging threats and technology trends; recommend controls and risk mitigation strategies
Participate in incident response activities, including investigation, remediation, and reporting on security incidents
Provide mentorship and technical leadership to junior security team members
Ensure compliance with relevant regulations (e.g., GDPR, HIPAA, PCI DSS, SOX) and internal security requirements

Qualification

Information Security ArchitectureSecurity Risk AssessmentsCloud Security TechnologiesSecurity CertificationsSecurity PrinciplesFrameworksAutomated Security SolutionsDevSecOps PracticesSecure SDLC MethodologiesAnalytical SkillsCommunication SkillsInterpersonal SkillsMentoring Experience

Required

Bachelor's or Master's degree in Computer Science, Information Security, or related field
7+ years of experience in information security, including architectural design
Strong understanding of security principles, frameworks (e.g., NIST, ISO 27001), and regulatory requirements
Hands-on experience with network, application, infrastructure, and cloud security technologies (e.g., firewalls, SIEM, IAM, encryption solutions, AWS/Azure/GCP)
Professional certifications such as CISSP, CISM, CCSP, or SABSA strongly preferred
Excellent analytical, communication, and interpersonal skills
Ability to translate complex security requirements into practical technical solutions
Experience building automated security solutions
Strong security experience, particularly with focus in one of the following areas: Defensive & Offensive Security, Service architecture and Design Patterns
Strong collaboration and communication skills

Preferred

Experience with DevSecOps practices and tools
Familiarity with secure software development lifecycle (SDLC) methodologies
Experience scaling operational activities via Python, Bash, and other tools
DevOps or SRE experience operating large, distributed, continuously deployed services
Knowledge on bridging security engineering requirements into the software development life cycle
Security training and mentoring experience
Experience with statistical/mathematical predictive modeling
Experience with machine learning / artificial intelligence
Experience designing resilient systems that support quick recovery
Experience with container orchestration and management
History of collaborating and integrating processes with software development teams, data scientists, business and other technical roles

Company

Oracle is an integrated cloud application and platform services that sells a range of enterprise information technology solutions.

Funding

Current Stage
Public Company
Total Funding
$25.75B
Key Investors
Sequoia Capital
2025-09-24Post Ipo Debt· $18B
2025-02-03Post Ipo Debt· $7.75B
1986-03-12IPO

Leadership Team

leader-logo
Esteban Rubens
Healthcare Field CTO
linkedin
G
Gerard Warrens
Field CTO, Business Strategy and Transformative Technologies
linkedin
Company data provided by crunchbase