Security Engineer 5
Oracle · Atlanta, GA
$139,400–$306,400from the description
Jul 9, 2026
Atlanta, GA
Jul 21, 2026
What this job asks for AI summary
A senior individual-contributor role on Oracle's Threat and Vulnerability Management team, responsible for researching and remediating security weaknesses across cloud and enterprise infrastructure at scale. Day-to-day work spans architecture risk assessments, threat modelling, zero-day response, and building security tooling and automation. Suits an experienced cloud security engineer comfortable influencing engineering teams and contributing to long-term security strategy.
Senior level · 10+ years · Remote · Full-time
Advertised as Principal, but the requirements read as Senior.
“or” means any one of them counts — you don't need all of them.
Posted 9 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
The title reads 'Senior Principal' — Oracle's internal career level is IC5, which maps to a very senior individual contributor. The advertised seniority is reported as Principal (the title's explicit claim), but the actual scope and requirements (10+ years total, 6+ years cloud security, deep technical hands-on work without stated org-wide authority) are consistent with a Senior IC band rather than a true Principal/Distinguished/Fellow level.
The role is genuinely ambiguous between Information Security Analysts (15-1212) and Software Developers (15-1252): the JD emphasises threat/vulnerability management, security architecture, and risk assessment (security analyst work), but also requires programming/scripting, building tools, and automation at scale (developer work). Security analysis is the primary framing, so 15-1212 is chosen with 15-1252 as the runner-up.
No specific work location is stated in the posting beyond 'US'; the compensation range is US-specific but no city or metro is identified. CBSA fields are left blank accordingly.
Python, Java, and Go are listed together as interchangeable examples of required programming languages; Python is used as the primary name with Java and Go in alternatives.
AWS, Azure, GCP, and OCI are listed together as interchangeable examples under Preferred Qualifications; AWS is used as the primary name with the others in alternatives.
CISSP, OSCP, and GIAC are listed as interchangeable preferred certifications; CISSP is used as the primary name with the others in alternatives.
Compliance frameworks (ISO/IEC 27001, SOC 2, PCI-DSS, HITRUST, FedRAMP, UK Cyber Essentials) and risk/incident frameworks (ISO/IEC 27005, NIST 800-30, NIST 800-61, MITRE ATT&CK) all appear under Preferred Qualifications. Representative entries are captured; SOC 2, PCI-DSS, HITRUST, FedRAMP, ISO/IEC 27005, and NIST 800-30 are omitted to avoid over-listing near-duplicate compliance framework entries — the key frameworks are represented.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): security architecture, reverse engineering.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.