Security Engineer, AWS AppSec

Amazon.com, Inc.
Herndon, VA, United States
7 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Compensation
$136,000.0 - $184,000.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Amazon Web Services Software System Penetration Testing C++ (Programming Language) Code Review Cyber Security Information Systems Security Architecture Professional Python (Programming Language) Mobile Security Software Engineering Software Security Information Technology
+1 more
Software Coding

Job description

AWS Security is looking for an Application Security Engineer to help validate that our services, applications, and websites are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios. You will have the opportunity to learn from, and be mentored by, those who are building and securing our innovative services.

A Security Engineer at Amazon is expected to be strong in multiple domains and provide significant contributions to the AWS IT Security team and to multiple groups throughout Amazon. Security engineers are expected to develop elegant solutions to complex business problems and apply appropriate technologies while following security engineering best practices.

A Security Engineer must foster constructive dialogue and seek resolution when confronted with discordant views. Engineers in this role are expected to participate fully in the planning of the AWS IT Security team’s work and constantly seek opportunities for process improvement. They should also have a deep understanding of at least one specialty for which they are a sought out resource (both within AWS IT Security and by groups throughout Amazon), while having an understanding of the application of Information Security in a broad range of technical areas.

You will have the combination of troubleshooting, technical, and communication skills, as well as the ability to handle a mix of disparate tasks which may include project and software development work. This role will provide career growth opportunities as you gain new security skills in the course of your duties.

Key job responsibilities

  • Application security reviews

  • Mobile security reviews

  • Secure architecture design

  • Threat modeling

  • Projects and research work as needed

  • Security training and outreach to internal development teams

  • Security guidance documentation

  • Security tool development

  • Security metrics delivery and improvements

A day in the life

You’ll collaborate with engineering teams to help them build secure services from the start. On any given day, you might be threat modeling a new architecture, reviewing code for security issues, building automation to scale security practices, or guiding a partner team through a secure design decision. Senior engineers on your team will help you develop depth in application security and sharpen your ability to communicate risk clearly. Over time, you’ll own relationships with partner teams and become their trusted security resource., At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture

In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Requirements

  • Bachelor’s degree in Engineering, Computer Science, or a related field
  • Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent
  • Experience in application security architecture, security code reviews, security testing, incident response, or security infrastructure
  • Experience with web protocols, common security attacks, and remediation (non-internship)
  • Experience solving basic problems by writing code or scripts with some assistance, * Experience with AWS services or other cloud offerings
  • Experience with AWS products and services
  • Experience programming in Java, C++, Python or related language

Benefits & conditions

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits .

USA, VA, Herndon - 136,000.00 - 184,000.00 USD annually

USA, WA, Seattle - 136,000.00 - 184,000.00 USD annually

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:15 min

Scaling DevSecOps and researching mobile application security standards

Moataz Nabil Moataz Nabil · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all