Security Engineer II, Vulnerability Management and Remediation Operations

Amazon.com, Inc.
Sydney, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Sydney, United States of America

Tech stack

Java
.NET
User Authentication
C++
DNS
Hypertext Transfer Protocols (HTTP)
Identity and Access Management
Python
Network Security
Network Protocols
Object-Oriented Software Development
Ruby
Secure Coding
Software Engineering
TCP/IP
Software Vulnerability Management
Software Security
Swift
Information Technology
Vulnerability Analysis
Go

Job description

Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations team!, Amazon Security is seeking an experienced and innovative Security Engineer to join our Vulnerability Management and Remediation Operations (VMRO) team in Sydney, Australia. The VMRO team is responsible for discovering, assessing, triaging, detecting, and driving the remediation of vulnerabilities across the Amazon ecosystem., Analyse public and private vulnerability disclosures and exploit code.

  • Deeply understand and assess the technical details and potential impact of vulnerabilities across Amazon's infrastructure, services, and applications.
  • Investigate and triage vulnerabilities, identifying severity and the scope of potential impact to Amazon.
  • Support response and remediation efforts, assisting builder teams to fix their security issues in a timely manner.
  • Engineer high quality, scalable, and accurate vulnerability detection mechanisms.
  • Design and implement automation, tools and workflows to enhance our operations capabilities.
  • Be part of a global team and participate in periodic on-call responsibilities to ensure the continuous monitoring and remediation of vulnerabilities.

Requirements

Bachelor's degree in computer science or equivalent

  • Knowledge of networking protocols such as HTTP, DNS and TCP/IP
  • 5 years security engineering experience in system, network, and/or application security and developing vulnerability assessment tests with Python or Java.
  • 5 years experience improving accuracy of vulnerability detection mechanisms across a diverse technical ecosystem., Experience with AWS products and services
  • Experience with any combination of the following: threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security
  • 5+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience

Apply for this position