The Oracle Health Security Architecture team creates a secure, resilient, and trustworthy digital environment for our clients and products. The heathcare sector faces escalating threats of sophisticated cyber attacks. Grow your career as you navigate a complex ecosystem that includes Oracle Health's software, systems, and services, using an array of security tools, controls, and processes.
Responsibilities
Reviews networks, applications, systems, infrastructure, environments, and security systems, ensuring designs and implementations align with Oracle information security policies, processes, and standards.
Proposes technical architectures for security risk reduction and identifies security controls to mitigate risks.
Provides subject matter expertise and internal consultation to support the design and development of secure architecture.
Assists in evaluations of security architecture that may include design assessment, risk assessment, and threat modeling.
Assists in design guidance for toolsets to implement security controls and monitor the security of networks, systems, and applications.
may identify and prioritize security design issues and vulnerabilities.
Conducts security research regarding threats and vulnerabilities, troubleshoots issues and manages upgrades on security platforms.
Provides specialized advice on data security issues, compliance, and privacy requirements.
Skills, Experience, and Qualifications
Minimum of five years related experience in an information security role, supporting security programs and security engineering/architecture in complex enterprise environments, including cloud. Hands on experience with enterprise security architecture, engineering and implementation required.
Knowledge of compliance programs and security control sets such as ICO 27001, SOC1, SOC 2, HITRUST, NIST SP 800-53, and FedRAMP, as applied to cloud SaaS, PaaS, IaaS, and on-prem environments.
Familiarity with SDLC principles and DevSecOps.
Ability to take unclear, loosely defined concepts and transform them into defined requirements and actionable plans.
A team-first orientation while excelling in independent work.
Preferred but not strictly required qualifications
Bachelor-level university degree in a relevant field from an accredited university or equivalent professional certifications.
Demonstrable experience in developing secure, scalable cloud architectures and distributed systems.
Experience at a high-level with software design and development and the design, use, and deployment of automation and orchestration frameworks.
Demonstrable scripting or programming experience.
Oracle Cloud Infrastructure experience.
Experience with Linux system administration.
Experience in a healthcare context, including knowledge of HIPAA and medical device regulations.
Career Level - IC3