Senior Oracle Database Engineer
Posted 5hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior Oracle security engineer hardening Azure-hosted Oracle 19c databases for an enterprise SaaS provider. Automating FedRAMP compliance, encryption, identity, backups, and disaster recovery through Terraform and Ansible.
Responsibilities:
- Harden Oracle 19c databases running on Enterprise Linux (OEL/RHEL 8 & 9) in FIPS mode
- Implement and maintain Oracle authentication integrated with Azure Entra ID, PIM, RBAC, and Linux VM SSO
- Configure and manage TCPS (TLS), TDE with external key management through Azure Key Vault/Oracle Wallet, and encrypted RMAN backups
- Deliver configuration and security remediation changes through production Terraform and Ansible pipelines with zero manual production changes
- Run DISA STIG and Oracle DB-SAT scans, address vulnerabilities, and determine remediations or formal exceptions
- Maintain and validate cross-region encrypted backup and recovery workflows, including key escrow and database cloning with re-keying procedures
- Actively take tickets, raise merge requests, implement security baselines, and author production IaC
- Bridge operating-system and database security across backup, cloning, and disaster-recovery pipelines
- Produce direct compliance evidence for assessors
Requirements:
- 8+ years as a hands-on Oracle DBA / Security Engineer working with Oracle 19c features
- Hands-on experience delivering DISA STIG (Oracle 19c) and Oracle DB-SAT remediations, including formal risk-based exception determinations
- Prior delivery experience within FedRAMP, DoD IL, CMMC, or equivalent regulated environments
- Production experience with TDE, Oracle Wallet, TCPS certificate/trust store management, and encrypted RMAN backups using external key stores
- Strong knowledge of Oracle authentication via Entra ID (Azure AD), Azure Key Vault, Blob Storage, managed disk encryption, and Azure PIM/RBAC
- Deep fluency with Terraform and Ansible for environment deployment and configuration management via CI/CD pipelines
- Experience administering OEL/RHEL 8/9 in FIPS mode
- Ability to drive technical design and security decisions across DBA, Platform, and DevOps teams without formal line authority
- Based in the UK or EU and able to contract within Europe
- Available to start within 4 weeks
- Desirable: Oracle Certified Professional (OCP), Oracle Database Security Specialist, or Azure Security Engineer (AZ-500)
- Desirable: OpenSCAP in CI/CD pipelines with continuous drift detection
- Desirable: Argo Workflows, Kubernetes-based CI/CD, or Helm charts
- Desirable: Familiarity with FIPS 140-3 provider changes, Filebeat/Elastic setups on FIPS hosts, or Oracle option licensing exposure
Benefits:
- Contract engagement for an initial 6 months, with a high likelihood of extension
- Fully remote work
- Competitive daily rate (DOE)













