This role combines ethical hacking, vulnerability research, and clean-room reverse-engineering practices to understand how systems work, identify security weaknesses, and help engineering teams remediate them responsibly along with future proofing.
This role works closely with product, infrastructure, security, hardware, and platform teams, as well as external silicon and hardware vendors. You will be deeply hands-on, owning early prototypes through production-ready platform software and technical standards.
Preferred Qualifications:
Experience in embedded security, hardware hacking, firmware analysis, reverse engineering, penetration testing, or vulnerability research.
Demonstrated commitment to ethical hacking and authorized research.
Proficiency in C programming and kernel-level debugging.
Several years of hands-on Unix/Linux kernel development experience preferred.
Knowledge of security technologies including TPM, Secure Boot, kernel signing, and encryption frameworks.
Working knowledge of hardware interfaces and protocols, including UART, JTAG, SPI, I²C, USB, Bluetooth, Wi-Fi, Zigbee, or proprietary RF.
Ability to communicate technical findings to both engineering and non-technical stakeholders.
In depth knowledge of ARM, Intel, and AMD platforms and what chipsets do.
Responsibilities:
Perform authorized security assessments of embedded, IoT, and hardware-based products.
Reverse engineer firmware, binaries, bootloaders, protocols, and device interfaces.
Analyze hardware using UART, JTAG/SWD, SPI, I²C, logic analyzers, oscilloscopes, and related lab tools.
Extract and assess firmware; identify attack surfaces, vulnerabilities, and insecure design patterns.
Conduct protocol, RF, wireless, and physical security testing, where authorized.
Develop proof-of-concept demonstrations in controlled environments and provide practical remediation guidance.
Reconstruct system behavior, document interfaces, and support clean room re implementations for interoperability or security research.
Build scripts and tooling to automate firmware analysis, testing, and repeatable security checks.
Produce clear technical reports with reproduction steps, severity, impact, and mitigation recommendations.
Work with engineering and product security teams to improve secure design, threat modeling, and product hardening.
Collaborate with silicon vendors on reference code, firmware updates, and firmware enablement.
Mentor engineers participate in design reviews, and define standards for maintainable, supportable, production-grade firmware across teams.
Certain U.S. based or U.S. customer or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates, and/or drug testing requirements.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from: $110,100 to $234,600 per annum. May be eligible for bonus, equity, and compensation deferral.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4

