Oracle Software Developer 4 in Cambridge, Massachusetts

Design, develop, troubleshoot and debug software programs for databases, applications, tools, networks etc.

As a member of the software engineering division, you will take an active role in the definition and evolution of standard practices and procedures. You will be responsible for defining and developing software for tasks associated with the developing, designing and debugging of software applications or operating systems.

Work is non-routine and very complex, involving the application of advanced technical/business skills in area of specialization. Leading contributor individually and as a team member, providing direction and mentoring to others. BS or MS degree or equivalent experience relevant to functional area. 7 years of software engineering or related experience.

The primary responsibility of this position is to conduct securitycompliance assessments and penetration tests, follow up remediation ofidentified vulnerabilities, participate in incident response and proactivelyresearch future threats.


Perform application-layer penetration testing againstCorporate and customer software applications and webservices

Conduct network and server layer penetration testingagainst Corporate Internet-facing and internal systems

Document technical issues identified during securityassessments and incidents, and author formal reports

Follow up on implementation of corrective actions fromassessments and incidents

Research security threats and attack vectors

Manage network forensics and incident response whenassigned

Assist other GIS staff on specific projects andincidents as required

Perform special security projects on an ad-hoc basis

Perform other duties as assigned



Universitydegree from an accredited college, university, or equivalent

Professional certification: minimum OSCP/ CREST CRT or equivalent, CREST CCT Inf/App or equivalent preferred

Experience inInformation Security and technical aspects thereof, CISSP certificationpreferred

Priorexperience with systems development, systems administration, or networkadministration, 5 years minimum preferred

Previous hands-on experience in penetration testing and vulnerabilityassessment required, 5 years minimum preferred

Previous experience of automated web application testing, infrastructuretesting, and manual exploitation testing required, 5 years minimum preferred

Knowledgeof Oracle internal systems and networks is an advantage

Knowledgeof web technologies and network communication methods

Familiaritywith general application and network security concepts

Knowledge of InformationSecurity standards and access controls such as ISO27001/2 and PCI DSS

Strong organizationalskills and detail-oriented, able to handle concurrent assignments

Strong presentation,written and verbal communication skills

Strong negotiationskills

Self-starter andself-sufficient, doesn t need to be micro-managed

Excellent teamplayer, willing to share knowledge and skills with peers

