Oracle Compliance Program Manager Intern - Oracle Veteran Internship Program in Seattle, Washington

Compliance Program Manager Intern - Oracle Veteran Internship Program

Preferred Qualifications

Title: Oracle VeteranInternship Program

Compliance Program Manager Intern

Location: Seattle, WA (relocationand/or travel not available)

About the ComplianceProgram Manager Intern Position:

Oracle Cloud Infrastructure combines the elasticity and

utility of public cloud with the granular control, security, and predictability

of on-premises infrastructure to deliver high-performance, high availability

and cost-effective infrastructure services. The team is directly responsible

with leading all New Region Builds, Region Expansions, New Service Deployments,

and ongoing maintenance.

The veteran intern will be responsible for overseeing

OCI’s compliance program in the Datacenter Operations (DCO) space, primarily

working with 3rd party cloud colocation vendors to build out commercial,

government compliance requirements and physical security control frameworks.

The candidate will support DCO operations to validate compliance and monitor

remediation efforts for identified risks and practice gaps. This role is required

to plan, coordinate and execute physical security assessments, document

assessments, design and measure effectiveness of key controls, lead

cross-functional remediation teams in developing processes using requirements

gathered from outside audit feedback and timely compliance requirements. Will

foster and nurture trusted relationships with Compliance Teams, Internal Audit

and other Risk & Compliance Team Members to gain consensus approvals on

strategies, recommendations, findings, project plans, etc. Must be able to pass

US government background screening and citizenship requirements.

In this role the veteran intern may be responsible for

the following:

  • Assists and supports the organization in

complying with, as well as the ongoing preparation, testing and monitoring of

conformance to, the requirements of government regulations and/or regulatory


  • Performs evaluation of internal operations,

controls, communications, risk assessments and maintenance of documentation as

related to regulatory compliance and recommends appropriate changes

  • Conducts and facilitates internal and external

audits to identify, evaluate, disclose and appropriately remedy risks and


  • Coordinates the preparation of and may prepare

document packages for regulatory submissions from all areas of company as well

as for internal and external audits and inspections

  • May serve as point of contact for interactions

with regulatory agencies for defined matters

  • Support the creation of a comprehensive risk

management and regulatory oversight program, including specifications for

product and service design aligned with Oracle Software Security Assurance and

Security Architecture

  • Establish a baseline of physical security risk,

identify areas of potential exposure, develop and align vendor risk management

strategies with OCI goals and objectives, and execute program ensuring


  • Partner with business lines & internal

support functions to help ensure that all risk assessment and mitigation

requirements have been met; evidence is captured, monitored & mitigated

throughout testing/ development/ implementation and use

  • Support the development and implementation of a

common and consistent standard framework to effectively manage vendor risk in

accordance with contractual requirements

  • Manages and continuously updates effective

physical security program and controls framework for cloud environments

  • Develops and reviews / challenges physical

security assessments and reports on findings, consult on remediation plans,

track status, aggregate results and report to Management / Leadership

  • Educates DCO, Security and Compliance teams on

cloud compliance requirements on access control, data handling, drive

destruction, chain of custody, and security breaches

  • Establish milestones and deliverables meet any

identified contractual or compliance gaps

  • Lead assessment of vendor risk, develop

mitigation plan and partner with internal stakeholders to assign monitoring


  • Prepare and complete annual risk assessments and

assist with regulatory and accreditation audit preparation as needed

  • Ensure colocation vendor’s policies, procedures

and key controls are aligned with security standards, and regulatory

requirements by performing projects, applications and systems security risk and

compliance assessments

  • Mitigates Vendor Risks including vulnerability

and configuration deficiencies by conducting investigations of possible

security exceptions

  • Maintain awareness of existing and proposed

security standard setting groups, State and Federal legislation and regulations

pertaining to vendor risks associated with information security, data privacy

and retails and pharmacy operations

  • Develop communications and related campaigns for

practices according to Vendor Risk Management security standards as part of the

enterprise Security awareness program

  • Lead and perform periodic assessments of Vendor

information systems, people and processes to identify risks associated with

compliance gaps and security vulnerabilities, and develop and execute

remediation action plans to reduce or eliminate vendor risk exposure

Required Skillsand Experience:

  • MUST BE US Veteran transitioning from active


  • Bachelor Degree or equivalent

  • Tactical thinker who can develop, evangelize and

execute procedures in a high tempo operational environment

  • Experience in leveraging contract and statements

of work to hold vendors accountable to performance

  • 7-10 years related experience

  • 5 years program management experience

  • Formal training in project management

Preferred Education and Experience:

BS degree or equivalent experience relevant to functional

area. Project Management, Product Design or related experience

preferred including assisting with:

  • PMP, CISSP, or CPP preferred

  • Experience IT/Cloud auditing and controls,

preferably with FedRAMP, SOX, SSAE 16 - SOC 1 & SOC 2, PCI compliance,

NIST, DIACAP, ISO 27001 & ISO 27002

  • Fluency in risk management principles to

quantify threat, vulnerability and criticality of both physical and logical


  • Strong working knowledge of Cloud IT processes

and Cloud IT infrastructure

Knowledge, Skills andAbilities:

  • Proven ability to combine business acumen,

technical acumen and process expertise to define client (internal/external)

engagement and program execution

  • Proven ability to influence & gain buy-in at

multiple levels, across divisions, functions and cultures; comfort working with

executive level management

  • Ability to prioritize, manage, and deliver on

multiple projects simultaneously; highly motivated and able to work against

aggressive schedules

  • Strong bias toward action, flexible,

resourceful, and able to operate effectively within a dynamic, fast-paced


  • Superior communication skills (interpersonal,

verbal, presentation written, email)

  • Positive attitude, team player, self-starter; takes

initiative, ability to work independently

  • Display a demonstrated ability to think broadly

and strategically

  • Maturity, judgment, negotiation/influence

skills, analytical skills, and leadership skills

About the Company:

Oracle remains

the gold standard for database technology and applications in enterprises

throughout the world: With annual revenues greater than US$37.7 billion

and more than 430,000 customers— including 100 of the Fortune 100—Oracle is a

global provider of enterprise cloud computing. Deployed across industries in

more than 175 countries, Oracle empowers business of all sizes on their journey

to digital transformation. Oracle Cloud provides leading-edge capabilities in

software as a service (SaaS), infrastructure as a service (IaaS), and data as a

service (DaaS). For more than 35 years, Oracle is the enterprise technology

partner that positions companies for tomorrow, today.

About Oracle Veteran Internship Program:

Oracle is proud to sponsor an internship and integration program that

exposes transitioning military veterans to the corporate culture, provides

hands-on job-skill training and experience, and offers enhanced professional

and personal development. At Oracle,

we are committed to the development and professional growth of our veterans.

Our paid intern program is specifically designed to aid military

veterans injured during training missions and military campaigns worldwide in their transition to a career in the private or

public sector.

Veterans accepted into our program will work closely with

corporate leadership, military veteran coaches and HR professionals to help

prepare for a successful transition. Interns will engage in on-the-job training

and professional development in fields such as information technology,

technical/systems consulting, technical support, facilities, finance, human

resources, logistics, marketing, sales or developmental training in sales or

for customer support (as available).

Additional Information:

Hourly wage is $25 per

hour. This is a 40 hour per week


Detailed Description and Job Requirements

This job code is utilized for the majority of our temporary hires. The individual is performing hourly job duties as defined under the Fair Labor Standards Act.

Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans status or any other characteristic protected by law.

Job: All Roles

Location: US-WA,Washington-Seattle

Job Type: Temporary Employee Hire

Organization: Oracle