> Markdown version of [/jobs/ext/3019953-security-engineer-ii-specialized-businesses-security-external-vulnerability-operations](https://www.wearedevelopers.com/jobs/ext/3019953-security-engineer-ii-specialized-businesses-security-external-vulnerability-operations). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer II, Specialized Businesses Security, External Vulnerability Operations - **Company:** Amazon.com, Inc - **Location:** London, UK (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Software System Penetration Testing, User Authentication, Bash Shell, C++ (Programming Language), Cloud Computing Security, Code Review, Computer Programming, Software Debugging, Perl (Programming Language), Firmware, Hardware Security Module, Identity and Access Management, Python (Programming Language), Network Security, Red Team (Cyber Security), Ruby, Secure Coding, Mobile Security, Software Engineering, Scripting, Software Security, Cyber Threat Analysis - **Published:** September 21, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/security-engineer-ii-specialized-businesses-security-external-vulnerability-operations/47822843 ## About the Role under development, familiarity with flashing firmware, basic device debugging and familiarity with reading/pulling device logs, or experience scripting in one or more language (e.g. Bash, Python, Perl, Ruby)- Deep understanding of hardware security, firmware analysis, operating system internals, and low-level programmingPreferred qualification - Bachelor's degree in a STEM field (Science, Technology, Engineering, Mathematics)- 5+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience- Experience supporting Red Team, Penetration Testing, or Bug Bounty programsAmazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and ## Description This individual will be working with external security researchers and Amazon teams to secure Amazon's public-facing devices and services. In this role, you will be responsible for ensuring vulnerabilities are remediated with urgency by partnering with service teams, ensuring what is learned through disclosure and mitigation improves the security of Amazon's device and software development life cycle. This role will provide you with challenging leadership and technical opportunities and the chance to grow Amazon's Bug Bounty and Threat Intelligence programs into the best on planet Earth. You will be in direct contact with teams in a variety of business verticals, giving you firsthand knowledge about how Amazon is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Amazon to find new ways to drive improvements to Customer relationships, services, processes, and technologies throughout the company, with the goal of ensuring the, with builder teams for remediation - Automate manual processes to streamline security work - Lead improvements to Amazon programs and processes - Write and deliver high-quality documents for technical and non-technical audiences - Manage relationships with Customers and security researchers Basic qualifications- Experience in any combination of the following: application security frameworks, security code reviews, incident response, secure infrastructure, penetration testing, mobile security, cloud security, AI security, identity and access controls, threat modeling, cryptography, threat intelligence, or secure software development- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent- Experience in scripting, programming, or security code reviewing in a common language, such as Python, Java, or C++- Experience with AWS products and services- Experience working with device technologies ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [Agent Smith Gets Hardware: Autonomous IoT Hacking From Debug Port to Cloud API](https://www.wearedevelopers.com/videos/100258-agent-smith-gets-hardware-autonomous-iot-hacking-from-debug-port-to-cloud-api) - [Stranger Danger: Your Java Attack Surface Just Got Bigger](https://www.wearedevelopers.com/videos/346-stranger-danger-your-java-attack-surface-just-got-bigger) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)