The Amazon Security Enterprise Protection team builds tools and services for the monitoring and response to malicious activity on the Amazon internal network. We collect, process, and analyze data from all parts of Amazon's worldwide infrastructure to identify and reduce risks to Amazon. We are looking for a Security Engineer who is excited about designing and building secure solutions to solve challenging problems for mission critical systems that protect Amazon and our customer data.
As a Security Engineer, you will:
- Collaborate to ensure we keep our customers safe while developing novel tools and services
- Inspect application code for security issues
- Fine-tune designs for new tools alongside developers
- Design and develop new tools or services
- Work with internal service teams, IT services teams, Risk Assessment and Security Response teams
- Build detections and analytics to find and reduce insider risk
- Bring deep security knowledge to builder teams to help them build better controls and audit capabilities
- Develop detections and response plans
- Lead complex and ambiguous projects
- Contribute to "think big" ideas about radically changing our approach to this problem space
- Help drive feedback and prioritization models
- Lead calibration and review exercises across teams
The ideal candidate should have:
- Strong technical acumen with an ability to lead by influence and communicate clearly
- Comfort with a high degree of ambiguity
- Enthusiasm for solving problems that haven't been solved at scale before
- Ability to articulate risks to technical and non-technical audiences
- Skill in harmonizing disparate opinions while effectively prioritizing risks
Amazon Security values work-life harmony, offering flexible work hours and arrangements. The organization prizes its employees and invests in reducing on-call time and ensuring the team spends their time on high-value tasks. Join Amazon Security to work hard, have fun, and make history!
Basic Qualifications:
- Bachelor's degree in computer science or equivalent
- 3+ years of experience in threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration, or network security
- Common knowledge of security engineering, system and network security, authentication protocols, cryptography, or application security
- Experience reading and writing in at least one programming language
Preferred Qualifications:
- 3+ years of experience in at least two of: threat modeling, secure coding, identity management and authentication, software development, cryptography, penetration testing, cloud security, mobile security, and network security
- Strong application security background with a focus on scalable solutions
- Experience building and securing complex AWS architecture
- Excellent written and verbal communication skills
- Ability to identify and remove bottlenecks for teammates in process and technology
Amazon is committed to diversity and inclusion, providing equal opportunities regardless of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.