Sr. DDOS Software Engineer
Oracle Cloud Infrastructure
Overview
Join OCI to design and deliver cloud-scale DDoS protection as part of our edge security platform.
You’ll design and ship high-performance detection and mitigation systems, automate operations end-to-end, and help define the technical foundation for customer-facing DDoS capabilities.
What you’ll do
- Design and build low-latency backend services for DDoS detection, classification, and mitigation across OCI’s global edge.
- Implement scalable data and control planes (policy, signaling, telemetry, orchestration) with strong fault isolation and resiliency.
- Develop traffic engineering capabilities (anycast, BGP signaling, routing policy) and integrate with OCI networking, DNS, and edge services.
- Own operational readiness: SLOs/SLAs, on-call health, incident response, runbooks, and post-incident improvements.
- Build automation-first workflows: CI/CD pipelines, test frameworks, canary/blue-green releases, and infrastructure-as-code.
- Create robust observability (metrics, logs, traces) and capacity/scale modeling for high-throughput, high-availability systems.
- Partner with product, SRE, and network engineering to deliver roadmap features from concept to GA with security-by-design.
- Contribute to threat modeling, architecture reviews, and compliance/audit readiness for Tier 0 services.
Basic qualifications
- 6+ years building production backend systems (at least 3 years in high-scale or low-latency environments).
- Proficiency in one or more: Java/Python/C++/Rust/Go
- Strong preference for Java for control-plane/services.
- Strong systems design skills: concurrency, memory management, performance tuning, API design, and distributed systems fundamentals.
- Experience with DevOps at scale: CI/CD, automated testing, canarying, rollout/rollback, and configuration management.
- IaC expertise (e.g., Terraform) and solid cloud infrastructure fundamentals.
- Familiarity with DDoS or network security services and related attack/defense patterns.
- Solid networking knowledge: TCP/IP, IPv4/IPv6, BGP fundamentals; DNS/DHCP understanding.
- Observability experience (metrics, tracing, alerting) and operational excellence mindset.
Preferred qualifications
- Experience with anycast routing, traffic steering, and multi-region service readiness.
- Exposure to SDN, programmable data planes, or hardware mitigation platforms.
- Advanced telemetry/streaming pipelines for near-real-time detection (e.g., high-rate packet/flow analytics).
- Background in resilience engineering, chaos testing, and capacity planning at hyperscale.
- Containerization/orchestration experience and secure service-to-service communication (mTLS, policy).
- Familiarity with zero trust principles, segmentation, and modern security architectures.
How you’ll have impact
- Ship core DDoS detection/mitigation capabilities that protect OCI’s Infrastructure availability.
- Enable new customer-facing DDoS offerings with self-service policy and visibility.
- Raise engineering quality, automation, and compliance maturity across the stack.
Ways of working
- Security and privacy by design; auditable controls and policy adherence from day one.
- Data-driven delivery with clear KPIs, SLOs, and stage gates from prototype to GA.
- Collaborative, inclusive engineering culture with code reviews, design docs, and knowledge sharing.
Only Oracle brings together the data, infrastructure, applications, and expertise to power everything from industry innovations to life-saving care. And with AI embedded across our products and services, we help customers turn that promise into a better future for all. Discover your potential at a company leading the way in AI and cloud solutions that impact billions of lives.
True innovation starts when everyone is empowered to contribute. That’s why we’re committed to growing a workforce that promotes opportunities for all with competitive benefits that support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We’re committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling 1-888-404-2494 in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
You’ll design and ship high-performance detection and mitigation systems, automate operations end-to-end, and help define the technical foundation for customer-facing DDoS capabilities.
Disclaimer:
Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.
Range and benefit information provided in this posting are specific to the stated locations only
US: Hiring Range in USD from: $79,200 to $178,100 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC3
- Design and build low-latency backend services for DDoS detection, classification, and mitigation across OCI’s global edge.
- Implement scalable data and control planes (policy, signaling, telemetry, orchestration) with strong fault isolation and resiliency.
- Develop traffic engineering capabilities (anycast, BGP signaling, routing policy) and integrate with OCI networking, DNS, and edge services.
- Own operational readiness: SLOs/SLAs, on-call health, incident response, runbooks, and post-incident improvements.
- Build automation-first workflows: CI/CD pipelines, test frameworks, canary/blue-green releases, and infrastructure-as-code.
- Create robust observability (metrics, logs, traces) and capacity/scale modeling for high-throughput, high-availability systems.
- Partner with product, SRE, and network engineering to deliver roadmap features from concept to GA with security-by-design.
- Contribute to threat modeling, architecture reviews, and compliance/audit readiness for Tier 0 services.