Job Description About the Role Main duties / Must have: Security events and incidents triage and investigation Investigation evidence gathering and analysis Logs management, analysis and correlation Building incident timeline Event and incident impact and risk assessment, categorisation and prioritisation False / true positives identification and trend analysis. False positives root cause identification Incident management performance tracking, metrics and reporting, trend analysis, problem root cause analysis, improvements proposals. Alerting and detection fine tuning Remediation / resolution advice Incident escalations and resolution tracking Partner with architects to improve detections and alerting fidelity and quality Partner with security operations and engineering teams to improve automation and tooling Continuously improve systems, reporting mechanisms, and security processes Technical knowledge sharing, education and coaching for the team members Nice to have / Desirable: Threat intelligence management experience Threat hunting experience Automation experience, ideally for security operations and incidents management or logs management. Python coding skills Experience of working with significant volumes of data - processing, analysis and inspection Exposure to AI research, experimentation with language models, or large-scale predictive/generative systems. Insights on AI behaviour, interpretability, and limitations to improve tooling accuracy and automation. Strong interest in AI and ML, particularly language models, generative AI, and predictive systems. Ability to reason critically about AI behavior, limitations, and emergent properties. Experience or interest in applying AI/ML techniques to security tooling, automation, or program analysis. Comfort exploring abstract computational concepts such as feedback loops and probabilistic reasoning. Interest in the intersection of human cognition, learning systems, and algorithmic reasoning. Strong analytical and communication skills Experience working with geographically distributed teams. Experience of leading / coordinating the work of a small group of engineers / analysts Master's or PhD in Computer Science, Information / Cyber Security, AI Must be eligible to work in UK without sponsorship. Responsibilities Security events and incidents triage and investigation Incident management performance tracking, metrics and reporting, trend analysis, problem root cause analysis, improvements proposals. Partner with architects to improve detections and alerting fidelity and quality Partner with security operations and engineering teams to improve automation and tooling Continuously improve systems, reporting mechanisms, and security processes May be involved in threat intelligence management or threat hunting May be working with AI / ML models to enhance detection, inspection and investigation capabilities Career Level - IC3 About Us As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40 years of change by operating with integrity. We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling 1 888 404 2494 in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.