Sr. Security Engineer, AWS Security

Amazon.com, Inc.
Seattle, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 227K

Job location

Seattle, United States of America

Tech stack

Java
Amazon Web Services (AWS)
Computer Security
Computer Engineering
Customer Data Management
Distributed Systems
Identity and Access Management
Python
Network Security
Pcap
NetFlow
Red Team (Cyber Security)
Runbook
Software Engineering
Web Applications
Computer Network Technologies
Information Technology
Cybercrime
Vulnerability Analysis
Go

Job description

Come help us secure critical Identity and Governance services in the AWS cloud and deliver world-class defense for AWS customers!

Amazon Web Services (AWS) Identity and Governance teams build and operate the identity, authentication, and authorization stack for the AWS cloud, and build services that enable customers to manage access and governance across their AWS environments at scale. AWS Identity and Governance services empower customers to confidently and securely execute their workflows with flexible controls which meet their individual security requirements.

As a Senior Security Engineer at Amazon, you will lead the design, development, and implementation of security solutions that protect our global infrastructure, products, and customer data. This role combines deep security expertise with advanced software engineering capabilities to build scalable security systems and frameworks. We are seeking an experienced software engineer who brings both skills and passion for raising the security bar., Lead complex security initiatives across multiple services teams and drive architectural decisions that impact organization-wide security posture

  • Build automated security testing frameworks and continuous security monitoring system
  • Build prototypes and proofs of concept to demonstrate feasibility for new, innovative security technologies
  • Design and implement scalable security solutions using Java, Python, Go, or other relevant languages
  • Provide technical mentorship to junior engineers and establish security engineering best practices
  • Partner with software development teams to build security controls directly into the development lifecycle
  • Lead security incident responses and drive root cause analysis for complex security events
  • Influence product roadmaps by providing security expertise during planning phases

A day in the life

  • Drive technical direction for security projects impacting multiple teams or organizations
  • Author and maintain technical design documents for security systems and controls
  • Review and approve security architecture proposals and technical implementation plans
  • Lead security reviews for critical systems and applications
  • Partner with Product, Operations, and Development teams to drive security improvements
  • Represent security engineering in senior-level technical discussions
  • Mentor junior security engineers and develop team capabilities
  • Drive security best practices across engineering organizations

About the team The Identity Security team partners with AWS Identity, Governance, and Infrastructure as Code services to reduce risk in our services as they're built and throughout their lifecycle. The team of security engineers collaborates directly with software engineers to prevent security issues from being introduced at the time of design and development. We proactively look for unknown threats in our services to identify and fix them before they can impact customers. When security issues are detected, we support teams with their response to minimize the impact to customers, while determining what can be done to prevent the issue from happening again. In addition to diving deep with individual services, we also own security efforts that raise the security bar across a broad range of services, such as contingent authorization, auth correctness, and service credential management. We instill a high security bar in our services, working alongside service teams to foster a culture of security and continuous learning.

If you enjoy analyzing the security of web applications and services, driving the delivery of large-scale security solutions, fostering a culture of security across engineering teams, learning and applying new skills on a daily basis, and helping to protect some of the most mission-critical systems in AWS, then join us our challenging endeavor!

Requirements

Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, or other related discipline

  • Experience operating as a software developer of highly scaled distributed systems.
  • Experience in security engineering and network technologies (PCAP, Netflow), Operating Systems and network security, common attack patterns and exploitation techniques.
  • Experience with Security Operations, Incident Response, Threat Hunting and Assurance methodologies.
  • Experience with common attack patterns and exploitation techniques. - Practical knowledge of system security analysis techniques such as threat modeling, attack graphs.
  • Expertise in writing run-books, and complexity analysis, execute vulnerability scans and reviews vulnerability assessment reports.
  • 5+ years of software development or security engineering, Experience effectively communicating complex concepts through written and verbal communication
  • Masters or PhD in Computer Science or related field
  • Experience on a Red Team or implementing proactive security practices in a professional setting
  • Experience leading large-scale security projects
  • Sharp analytical abilities and proven system design skills
  • Ability to accomplish stretch goals in a highly innovative and fast paced environment
  • Excellent leadership, teamwork and collaboration skills.
  • Strong sense of ownership and drive

Benefits & conditions

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.

USA, WA, Seattle - 178,400.00 - 226,700.00 USD annually

Apply for this position