374,200open jobs
9,699companies
47,772added this week
Browse all
Salary
$115k – $235k per year
Location
In office (Nashville)
Seniority
Senior
Overview
Company
Impact
Profile match
Oracle is an American enterprise technology company founded in 1977 by Larry Ellison, Bob Miner and Ed Oates, and headquartered in Austin, Texas. It built its business on the Oracle Database, still the reference relational engine for large transactional systems, and has expanded into a full applications suite covering finance, human resources, supply chain and customer experience through Fusion Cloud and NetSuite. Its fastest growing segment is Oracle Cloud Infrastructure, which the company has positioned aggressively for AI training and inference workloads through large multi-year capacity contracts.

The Oracle Threat Intelligence Center (OTIC) is responsible for the tracking and monitoring of a range of threat actors from cybercrime to Advanced Persistent Threat (APT) groups impacting OCI and its customers. The scope and responsibility of this team includesattack analysis, tracking threat actor's indicators of compromise (IOCs) and their tactics, techniques, and procedures (TTPs), aiding in security incident response, executive communication, technical writing, and customer outreach.

As a Threat Intelligence Investigator, you will be responsible for tracking the activities of threat actors. This includes independently tracking numerous groups and leading operational activities during relevant situations. You will be expected to handle large and complex datasets and develop new solutions to enhance your tracking and analysis capabilities. You will also have a passion for cybersecurity, with a strong interest in researching and investigating current threat trends, emerging threats, and actors. This role requires the ability to produce intelligence products and adapt to an organic and fast-paced environment.

Key Responsibilities

  • Lead investigations through in depthanalysis and collection efforts of suspected adversary campaigns across the OCI environment to deliver timely, actionable intelligence and create effective remediation strategies within the OCI environment.

  • Provide detailed attribution analysis to identify threat actors and inform proactive defense strategies

  • Manage cross-company and executive communications, explaining intricate technical matters to non-technical audiences.

  • Facilitate post-incident reviews to extract lessons learned, document new threat intelligence, and drive resolution actions with impacted teams.

  • Stay up to date on emerging threats, vulnerabilities, security technologies, and global geopolitical issues to assess their potential impact and proactively enhance Oracle’s defenses.

  • Manage and maintain threat intelligence platforms (TIPs) and other cyber threat intelligence (CTI) related tools to enrich data and streamline workflows.

  • Collaborate with partner Cloud security teams during all phases of the incident response lifecycle to integrate intelligence findings into resolution and mitigation plans.

  • Cultivate strategic relationships with key members of the Threat Intelligence community to expand access to information and strengthen trust networks.

  • Develop and refine intelligence processes to ensure the timely and accurate delivery of strategic, operational, and tactical intelligence.

  • Elevate analytic quality and reporting standards by providing critical peer review and strategic feedback to fellow investigators.

  • Manage and execute a high volume of time-sensitive intelligence requests from internal and external customers by prioritizing, categorizing, and delivering timely and accurate information.

  • Deliver finished intelligence analysis and assessments to internal and external customers through written reports, demonstrating expertise and enabling informed decision-making.

Preferred Qualifications

  • 6-10+ years of industry experience in analytical and operational threat intelligence to perform case management and response against advanced persistent threats (APTs).

  • Investigative experience tracking distinct APT groups providing intelligence on their methodologies.

  • Expertise in one or more of the following areas: national security, defense, intelligence, law enforcement, or foreign area and language expertise relevant to threat analysis

  • Knowledge of cloud services such as storage, computing, networking

  • In-depth knowledge of multiple operating systems, including Windows, UNIX/Linux, and macOS, and familiarity with associated threat landscapes.

  • Skilled in conducting open-source intelligence (OSINT) research across a wide range of topics.

  • Strong verbal, written, and interpersonal communication skills, with demonstrated ability to convey complex technical information to diverse, non-technical stakeholders.

  • Prior experience in Incident Response, Security Operations Center (SOC), and/or Digital Forensics Analysis.

  • Experience with malware analysis is highly desirable.

  • Strong understanding of common attack types, vectors, and corresponding mitigations.

  • Proficient in using structured queries to extract data from logs and in developing detection signatures (e.g., YARA, Snort, Suricata, Bro/Zeek).

  • Bachelor or Master of Science degree in Computer Science, Computer Engineering, Information Systems, Cybersecurity, or equivalent practical experience.

  • Previous experience working on a global or geographically distributed security team is a plus.

  • Active TS/SCI security clearance

Disclaimer:

Certain U.S. based or U.S. customer or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates, and/or drug testing requirements.

Range and benefit information provided in this posting are specific to the stated locations only

US: Hiring Range in USD from: $114,600 to $234,600 per annum. May be eligible for bonus, equity, and compensation deferral.

Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.

Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.

Oracle US offers a comprehensive benefits package which includes the following:

1. Medical, dental, and vision insurance, including expert medical opinion

2. Short term disability and long term disability

3. Life insurance and AD&D

4. Supplemental life insurance (Employee/Spouse/Child)

5. Health care and dependent care Flexible Spending Accounts

6. Pre-tax commuter and parking benefits

7. 401(k) Savings and Investment Plan with company match

8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.

9. 11 paid holidays

10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.

11. Paid parental leave

12. Adoption assistance

13. Employee Stock Purchase Plan

14. Financial planning and group legal

15. Voluntary benefits including auto, homeowner and pet insurance

The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.

Career Level - IC4

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
374,200 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Nashville
$152k per year • Equity • Remote • 8+ years exp
Lua
Python
Ruby
Rust
YARA
Databases
ElasticSearch
DevOps
Amazon ECS
Splunk
Cybersecurity
Cyber Kill Chain
Scapy
Snort
Suricata
Tcpdump
Wireshark
YARA
Zeek
Apply
$32k – $72k per year (Estimated) • In office • Full-Time • 6+ years exp • Bengaluru
C++
Java
Python
YARA
Databases
Amazon Aurora
DevOps
Azure
GCP
Kubernetes
Cybersecurity
MITRE ATT&CK
Suricata
YARA
Zeek
Apply
$23k – $57k per year (Estimated) • Remote/Hybrid • Moscow
C++
Go
Python
YARA
DevOps
CI/CD
Cybersecurity
YARA
Apply
In office • Bachelor's Degree
YARA
DevOps
AWS
Azure
GCP
Cybersecurity
Cyber Kill Chain
MITRE ATT&CK
YARA
Apply
$67k – $171k per year (Estimated) • In office • Bachelor's Degree • Singapore
JavaScript
Python
SQL
YARA
DevOps
AWS
AWS Lambda
Azure
VMWare
Cybersecurity
Ghidra
IDA Pro
Wireshark
YARA
Apply
$97k – $306k per year • Equity • In office • Santa Clara
DevOps
API Gateway
Apply
In office • Buenos Aires
DevOps
CI/CD
Kubernetes
Platform Engineering
Service Mesh
Apply
In office
Apply
In office • Bachelor's Degree
Python
Apply
$133k – $338k per year • Remote/Hybrid • Full-Time • 8+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
AI/ML
Knowledge Graph
DevOps
AWS
Azure
GCP
Platform Engineering
SLI/SLO/SLA
Apply
$94k – $266k per year • Remote/Hybrid • Full-Time • 12+ years exp • Associate's Degree • Boston • Milwaukee • Dallas • Columbus • Kirkland
Python
AI/ML
Claude
Claude Code
CoreWeave
CUDA
CUDA Toolkit
NCCL
DevOps
Ansible
Configuration Management
HPC
Incident Management
Kubernetes
Rest API
SLURM
Terraform
Apply
$94k – $266k per year • Remote/Hybrid • Full-Time • 5+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
Databases
Databricks
Google BigQuery
SAP HANA
Snowflake
AI/ML
Knowledge Graph
DevOps
Azure
Apply
$133k – $366k per year • Remote/Hybrid • Full-Time • 12+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
JavaScript
Python
TypeScript
AI/ML
Anthropic
Edge AI
Gemini
OpenAI
Management
ServiceNow
Marketing
Salesforce
Apply
$172k – $237k per year • Remote • Full-Time • 10+ years exp • PhD • Charlotte • Louisville • Tampa • Fort Lauderdale • Washington
Databases
Databricks
Snowflake
AI/ML
Claude
Claude Code
Copilot
AI Agents
DevOps
AWS
Azure
GCP
Cybersecurity
HIPAA
Apply
See all jobs
This is one of many
374,200 more open roles from verified company boards, updated every day.