Principal Security Analyst
1 week ago
At Oracle Cloud Infrastructure (OCI) we build the future of the cloud for Enterprises. We act with the speed and attitude of a start-up along with the scale and customer focus of the leading enterprise software company in the world.
About the team:
The Enterprise Engineering SRE team is tasked with ensuring the security and compliance of internal systems by conducting regular audits, identifying potential gaps in existing standards and proactively improving the organization's overall security posture. The team plays a critical role in safeguarding the integrity, confidentiality and availability of all systems while driving risk management initiatives across departments including disaster recovery planning and execution. We are also responsible for liaising with various internal teams during audits, ensuring data sharing is concise, accurate and aligned for successful audit outcomes.
Ideally, the candidate will possess several of the following skills:
Supports the strengthening of Oracle's security posture, focusing on one or more of the following: regulatory compliance; risk management; incident management and response; security policy development and enforcement; Threat and Vulnerability Management; Incident Management and response and similar focus areas.
- Regulatory Compliance: Brings advanced level skills to manage programs to establish, document and track compliance to industry and government standards and regulations, e.g. ISO-27001, PCI-DSS, HIPAA, FedRAMP, CMMC, GDPR, etc. Researches and interprets current and pending governmental laws and regulations, industry standards and customer and vendor contracts to communicate compliance requirements to the business. Participates in industry forums monitoring developments in regulatory compliance
- Risk Management: Brings advanced level skills to assess the information security risk associated with existing and proposed business operational programs, systems, applications, practices and procedures in very complex, business-critical environments. Conduct and document very complex information security risk assessments and assist in the creation and implementation of security solutions and programs
- Cloud Security: In-dept knowledge of cloud security principles and best practices, including securing cloud infrastructure, services, and applications in platforms, OCI experience is a plus
- Threat and Vulnerability Management: Brings advanced level skills to research, evaluate, track, and manage information security threats and vulnerabilities in situations where in-depth analysis of ambiguous information is required
- Incident Management and response: Brings advanced level skills to respond to security events and responding in line with Oracle incident response playbooks to mitigate vulnerabilities
- Mentors and trains other team members
- Compiles information and reports for management
Qualifications:
- Bachelor's degree in computer science, Information Security, or a related field. Master's degree preferred
- 8+ years of experience in information systems, business operations, or related fields,
- 3+ years of experience in security operations, with a focus on incident detection, response, and vulnerability remediation
- Relevant certifications such as CISSP, CISM, CISA, or GIAC certifications are preferred
- Solid understanding of networking protocols, operating systems (Linux, Windows), MiddleTier, Database, cloud computing and end point computing management
- Excellent communication skills with the ability to effectively communicate technical concepts to both technical and non-technical stakeholders
- Proven leadership abilities with experience leading security projects and initiatives independently
- Experience with security tools such as SIEM platforms, intrusion detection/prevention systems, and endpoint security solutions
- Ability to work independently and collaboratively in a fast-paced environment
- Strong analytical and problem-solving skills with a keen attention to detail
Career Level - IC4
Responsibilities- Oversee and manage internal audit processes to ensure adherence to security and compliance standards
- Act as the primary liaison between internal teams, facilitating effective communication and collaboration to ensure audits are completed efficiently and accurately
- Assess the effectiveness of security controls and ensure auditing requirements are clearly documented, defined and communicated to necessary teams
- Ensure the timely and accurate sharing of data across departments to support successful audit outcomes
- Continuously assess and enhance the organization's security posture by addressing any identified weaknesses
- Lead and manage departmental risk management programs, ensuring alignment with broader organizational risk mitigation strategies
- Facilitate and drive disaster recovery (DR) planning and preparedness across departments to minimize operational disruptions in case of incidents
- Collaborate with cross-functional teams to establish and maintain robust security policies and procedures, ensuring alignment with industry best practices
- Make recommendations and provide guidance/consultation regarding process improvements necessary for remediating internal control gaps. Engage with required teams to close the gap
- Develop and maintain cybersecurity documentation such as the System Security Plan (SSP), Privacy Impact Assessment (PIA), Configuration Management Plan (CMP), Plan of Action and Milestones (POA&M), and Standard Operating Procedures (SOP) as necessary
- Develop, implement, and maintain industry best practices and regulatory security policies, procedures, and system standards (servers, databases, endpoints, and application design)
- Engagement in cloud security technologies and protocols, including cloud security architecture, identity and access management, and data protection
- Write stakeholder reports to explain the assessment, audit results, and recommendations. Create and provide metrics for cybersecurity leadership. Brief executive leadership on compliance matters
-
Principal Product Marketing Manager
1 week ago
Bengaluru, Karnataka, India Skyhigh Security Full time ₹ 12,00,000 - ₹ 36,00,000 per yearJob Title:Principal Product Marketing Manager - CybersecurityAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since...
-
Principal Information Security Analyst
6 days ago
Bengaluru, Karnataka, India Skyworks Solutions, Inc. Full time ₹ 12,00,000 - ₹ 36,00,000 per yearIf you are looking for a challenging and exciting career in the world of technology, then look no further. Skyworks is an innovator of high performance analog semiconductors whose solutions are powering the wireless networking revolution. At Skyworks, you will find a fast-paced environment with a strong focus on global collaboration, minimal layers of...
-
Principal Analyst
4 days ago
Bengaluru, Karnataka, India Optiv Full time ₹ 12,00,000 - ₹ 36,00,000 per yearThe Principal Analyst will lead advanced threat detection and analysis efforts by leveraging enterprise-scale data sources, audit logs, and monitoring tools. This role involves deep-dive investigations into suspicious activity, identifying hidden threats, and proactively hunting for adversaries across customer environments. The Principal Analyst will work...
-
Principal Analyst
2 weeks ago
Bengaluru, Karnataka, India Optiv Full time ₹ 12,00,000 - ₹ 36,00,000 per yearThe Principal Analyst will provide deep-level analysis for client investigations utilizing customer-provided data sources, audit, and monitoring tools at both the government and enterprise levels. The Principal Analyst will work closely with our Technology Engineers, Architects, and Threat Analysts to service customers.How You'll Make An ImpactOperate...
-
RSA Principal Product Manager, Authentication
2 weeks ago
Bengaluru, Karnataka, India RSA Security Full time ₹ 1,20,000 - ₹ 2,60,000 per yearRSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in financial services, healthcare, energy, technology services, and other industries to thrive in a...
-
Principal Analyst
1 week ago
Bengaluru, Karnataka, India Optiv Full time ₹ 12,00,000 - ₹ 24,00,000 per yearThe Principal Analyst will lead advanced threat detection and analysis efforts by leveraging enterprise-scale data sources, audit logs, and monitoring tools. This role involves deep-dive investigations into suspicious activity, identifying hidden threats, and proactively hunting for adversaries across customer environments. The Principal Analyst will work...
-
Principal Analyst
1 week ago
Bengaluru, Karnataka, India Optiv Full time ₹ 20,00,000 - ₹ 25,00,000 per yearThe Principal Analyst will provide deep-level analysis for client investigations utilizing customer-provided data sources, audit, and monitoring tools at both the government and enterprise levels. The Principal Analyst will work closely with our Technology Engineers, Architects, and Threat Analysts to service customers. How you'll make an impactOperate...
-
Principal Engineer
7 days ago
Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAt SAFE Security, our mission is bold and ambitious: We Will Build CyberAGI — a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...
-
Security Analyst
7 days ago
Bengaluru, Karnataka, India Oracle Financial Services Software Ltd Full time ₹ 1,00,00,000 - ₹ 2,00,00,000 per yearSenior Security Analyst Oracle is seeking a Security Operations Center (SOC) analyst with experience protecting critical infrastructure to help us defend Oracle cloud infrastructure. Our team is skilled in threat hunting, analyzing indicators of compromise (IOCs), investigating adverse security events, security incident management, and digital forensics...
-
RSA Principal Technical Support Engineer
4 days ago
Bengaluru, Karnataka, India RSA Security Full time ₹ 20,00,000 - ₹ 25,00,000 per year*RSA - Principal Technical Support Engineer*RSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in financial services, healthcare, energy, technology...