Senior Oracle Database Engineer

Posted 5hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior Oracle security engineer hardening Azure-hosted Oracle 19c databases for an enterprise SaaS provider. Automating FedRAMP compliance, encryption, identity, backups, and disaster recovery through Terraform and Ansible.

Responsibilities:

  • Harden Oracle 19c databases running on Enterprise Linux (OEL/RHEL 8 & 9) in FIPS mode
  • Implement and maintain Oracle authentication integrated with Azure Entra ID, PIM, RBAC, and Linux VM SSO
  • Configure and manage TCPS (TLS), TDE with external key management through Azure Key Vault/Oracle Wallet, and encrypted RMAN backups
  • Deliver configuration and security remediation changes through production Terraform and Ansible pipelines with zero manual production changes
  • Run DISA STIG and Oracle DB-SAT scans, address vulnerabilities, and determine remediations or formal exceptions
  • Maintain and validate cross-region encrypted backup and recovery workflows, including key escrow and database cloning with re-keying procedures
  • Actively take tickets, raise merge requests, implement security baselines, and author production IaC
  • Bridge operating-system and database security across backup, cloning, and disaster-recovery pipelines
  • Produce direct compliance evidence for assessors

Requirements:

  • 8+ years as a hands-on Oracle DBA / Security Engineer working with Oracle 19c features
  • Hands-on experience delivering DISA STIG (Oracle 19c) and Oracle DB-SAT remediations, including formal risk-based exception determinations
  • Prior delivery experience within FedRAMP, DoD IL, CMMC, or equivalent regulated environments
  • Production experience with TDE, Oracle Wallet, TCPS certificate/trust store management, and encrypted RMAN backups using external key stores
  • Strong knowledge of Oracle authentication via Entra ID (Azure AD), Azure Key Vault, Blob Storage, managed disk encryption, and Azure PIM/RBAC
  • Deep fluency with Terraform and Ansible for environment deployment and configuration management via CI/CD pipelines
  • Experience administering OEL/RHEL 8/9 in FIPS mode
  • Ability to drive technical design and security decisions across DBA, Platform, and DevOps teams without formal line authority
  • Based in the UK or EU and able to contract within Europe
  • Available to start within 4 weeks
  • Desirable: Oracle Certified Professional (OCP), Oracle Database Security Specialist, or Azure Security Engineer (AZ-500)
  • Desirable: OpenSCAP in CI/CD pipelines with continuous drift detection
  • Desirable: Argo Workflows, Kubernetes-based CI/CD, or Helm charts
  • Desirable: Familiarity with FIPS 140-3 provider changes, Filebeat/Elastic setups on FIPS hosts, or Oracle option licensing exposure

Benefits:

  • Contract engagement for an initial 6 months, with a high likelihood of extension
  • Fully remote work
  • Competitive daily rate (DOE)