Security Engineer
Posted today
visionary innovative technology solutionsPhoenix (AZ)
Information Security EngineersComputer Systems Design Services
SENIORITY
Lead
About the role
Hi,Please go through the job description:Title: Security EngineerLocation: Phoenix, AZ(Hybrid)Duration: 6+ monthsJob Description:If you cant find OCI or GCPas an alternative please find a candidate who is really strong in Hashi Sentinel, Terraform, native policy implementation with deep understanding of Public Cloud Security capability implementation.Looking for someone with a strong Oracle foundation and security knowledge with policy as code development and implementation skills as well as hands on Hashi Sentinel for Policy as Code. Please find some additional details below:Oracle Policy-as-Code EngineerHands-on engineering role requiring:Oracle Cloud expertiseStrong engineering backgroundPolicy-as-Code implementationSentinel/Open Policy Agent (OPA) or similar technologiesSecurity automationRole PurposeThe Cloud Security Engineer performs security reviews of Oracle Cloud Infrastructure (OCI) services, Oracle SaaS platforms, and third-party SaaS solutions to ensure alignment with enterprise security standards, regulatory requirements, and risk management practices.This role evaluates cloud and SaaS solutions across infrastructure, platform, application, and data layers, providing actionable security guidance to support secure-by-design adoption, governance, certification, and onboarding processes.The position also provides engineering support for OCI security capabilities and SaaS security governance programs, helping to establish security guardrails, automate controls, and improve consistency and scalability across cloud and SaaS environments.Key ResponsibilitiesCloud & SaaS Security Assessment• Conduct security reviews of OCI services, SaaS applications, architectures, integrations, and configurations.• Identify security risks, control gaps, and remediation opportunities.• Evaluate solutions against enterprise security standards, policies, and regulatory requirements.• Provide security guidance for secure deployment and adoption of cloud and SaaS services.Security Domains Reviewed• Identity & Access Management (IAM)• Network Security• Data Protection & Encryption• Logging & Monitoring• Compute & Container Security• API Security• SaaS Security Posture Management (SSPM)• AI / GenAI Security• Third-Party & Vendor RiskSecurity Standards & Governance• Map OCI and SaaS implementations to enterprise controls and industry frameworks (NIST, ISO 27001, CSA CCM, CIS).• Validate compliance with secure configuration baselines and reference architectures.• Support development and maintenance of OCI and SaaS security standards, guardrails, and onboarding requirements.• Assess new cloud and SaaS capabilities and provide security recommendations.Cloud & SaaS Security Engineering• Support implementation of OCI-native security controls and governance capabilities.• Assist with security automation through Infrastructure-as-Code (Terraform) and policy-as-code frameworks.• Support deployment and integration of security monitoring, posture management, and compliance capabilities.• Partner with platform engineering teams to embed security into deployment and operational processes.SaaS Security Governance• Perform SaaS onboarding assessments and certification reviews.• Evaluate SaaS architectures, integrations, data flows, and security controls.• Conduct SaaS posture reviews and assess configuration drift, identity governance, and data protection controls.• Support SaaS inventory management, Shadow IT discovery, and vendor security assessments.Collaboration & Stakeholder Engagement• Partner with cloud engineering, architecture, DevOps, security operations, compliance, procurement, and risk teams.• Document findings, recommendations, and evidence to support governance and certification decisions.• Provide security expertise during design reviews, onboarding activities, exception management, and remediation efforts.Required Experience & Skills• Experience performing cloud security assessments within OCI or comparable cloud platforms.• Strong understanding of:o Identity & Access Managemento Network Securityo Data Protectiono Cloud Logging & Monitoringo Container & Platform Security• Experience conducting SaaS security reviews and certifications.• Familiarity with:o OCI security serviceso SSPM platformso CASB technologieso Cloud governance frameworks• Experience reviewing Infrastructure-as-Code (Terraform) and cloud architecture designs.• Knowledge of cloud shared responsibility models and secure-by-design principles.• Strong written and verbal communication skills.Preferred Experience• Oracle Cloud Infrastructure certifications• Experience with:o OCI Cloud Guardo Security Zoneso Oracle SaaS platformso SaaS Security Posture Management (SSPM)o Policy-as-Code and automated compliance toolingo SSPM platformso CASB technologies• Experience supporting AI/Gen AI security assessments• Experience working with Github, CI/CD pipelines, and cloud security auto
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
