Security Engineer, AWS Vulnerability Management, AWS Vulnerability Management Remediation

Amazon
Cupertino, CA, United States
$247.6K a year
Full-time

Description

Amazon Web Services (AWS) Security is looking for a passionate, innovative, and motivated Security Engineer for the AWS Security Vulnerability Management team.

Come and join a creative, diverse, and collaborative team that is changing how we think about security! At AWS, security is job zero, and our team is responsible for inventing new security services that enable and automate security solutions at AWS unprecedented scale.

We are data-driven, set big goals, and are always challenging ourselves to raise the security bar at AWS.

As a Senior Security Engineer with our team, you will dig in to our customers' most difficult requests, identify security risks, analyze and process big data, partner to build and improve tools that will improve our builders' experience with security.

In this role, you will be part of an agile team of security engineers solving complex security challenges that have direct and measurable impact on our customers.

Our programs stretch across all of AWS, giving you the opportunity to interact with product teams, industry specialists, security partners, and organization leaders.

Our programs and services protect the AWS cloud for all customers and preserve our customers trust in us. Youll get to use the full power and breadth of AWS technologies to build services that protect every single AWS customer, both internally and externally, from security threats not many teams can say that!

This position can be located in one of the following locations : Arlington VA, Austin TX, Cupertino, CA or Seattle WA.

Key job responsibilities

Who you are : You are a creative, collaborative person who likes to be close to the details. You like to get inside technology, understanding how things work, when to make subtle change, and when to disrupt the status quo to achieve the right results.

Youre someone who prioritizes effectively and often.

  • Build and implement solutions to identify software based risks in AWS services.
  • Perform vulnerability and impact assessments taking into account base, temporal, and environmental factors.
  • Query, analyze, and report on large datasets.
  • Work with a team of software and security engineers that design, build, and own software solutions that solve complex security challenges for AWS and our customers.

What you will do : You'll leverage your knowledge in multiple domains to investigate, understand, develop, and deliver elegant solutions to complex security questions.

You'll bring your high standards, applying the right technologies while following security engineering best practices. You will be a security thought leader for our team and AWS Security, owning a set of long-term security outcomes.

You're also someone who will be setting the bar high for your colleagues, serving as a mentor to your teammates.

A day in the life

Who we are : AWS Security is on the cutting edge of many security issues for a wide variety of platforms and technologies including cloud services, Internet of things (IoT), identity and access management, mobile devices, virtualization and custom hardware, all operating at massive scale.

  • Implement automation to improve operational throughput and efficiency.
  • Diving into large datasets to identify potential risks.
  • Perform severity assessments of software vulnerabilities.
  • Work with software builders to apply environmental context against findings to adjust risk scores.
  • Work with partner teams to propose and implement functionality to reduce risks at scale.

About the team

About Amazon Security

Diverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply.

If your career is just starting, hasnt followed a traditional path, or includes alternative experiences, dont let it stop you from applying.

Why Amazon Security?

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazons products and services.

We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture

In Amazon Security, its in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness.

Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

Were continuously raising our performance bar as we strive to become Earths Best Employer. Thats why youll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work / Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture.

When we feel supported in the workplace and at home, theres nothing we cant achieve.

We are open to hiring candidates to work out of one of the following locations :

Arlington, VA, USA Austin, TX, USA Cupertino, CA, USA Seattle, WA, USA

Basic Qualifications

  • Bachelors degree in Information Security, Computer Science or Engineering or related discipline, or additional equivalent technology experience
  • 10+ years of experience in identifying security issues and risks, and developing mitigation plans
  • 6+ years of experience in network, system, or software architecture; design, implementation, support, and evaluation of security-focused tools and services
  • 4+ years of coding experience in Ruby, Python, Shell / BASH scripting, Java, C / C++, C*, Perl, or other languages
  • 8+ years of experience in one or more of the following areas : identity and access management, cryptography, web and network protocols, data structures and algorithms, software development, threat modeling, or vulnerability assessments

Preferred Qualifications

  • Masters degree in Computer Science or an Engineering related degree
  • Excellent written and verbal communication skills with the ability to present complex technical information in a clear and concise manner to a variety of audiences
  • Experience of cloud computing services, and deployment architecture
  • Experience generating automated metrics to measure service and program effectiveness and consistency Experience in the influencing the development of security products or a security operator

Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.

For individuals with disabilities who would like to request an accommodation, please visit https : / / www.amazon.jobs / en / disability / us.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $136,000 / year in our lowest geographic market up to $247,600 / year in our highest geographic market.

Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.

Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and / or other benefits.

For more information, please visit https : / / www.aboutamazon.com / workplace / employee-benefits. This position will remain posted until filled.

Applicants should apply via our internal or external career site.

27 days ago
Related jobs
Promoted
Insight Global
San Jose, California
Remote

Lead Data Engineer (Databricks/AWS). In this role, the Data Engineer will be a member of the RISC team and will be a design, develop, and maintain scalable and efficient data pipelines for extracting, transforming, and loading (ETL) data from various sources into our data warehouse leveraging AWS, D...

Cisco
San Jose, California

We are seeking an enthusiastic and driven Senior Security Engineer who is passionate about information security engineering, with a focus on Identity and Access Management (IAM). You will work within our Cisco IT Security team focused on identity and access management. Experience with Cloud Computin...

Palo Alto Networks
Santa Clara, California

Palo Alto Networks is looking for a talented Senior Systems Engineer, Identity & Access Management  who will be responsible for maintainability, build and configuration of user identity & authentication services, single sign on (SSO) and access automation. Work with other Identity ...

Amazon Development Center U.S., Inc.
Palo Alto, California

Are you interested in building hyper-scale database services in the cloud? Do you want to revolutionize the way databases are built for the cloud? Do you want to have direct and immediate impact on hundreds of thousands of users who use AWS database services? Amazon Aurora MySQL offers MySQL compati...

Analog Devices
San Jose, California

This position requires a Master's degree in Electrical Engineering or related field (willing to accept foreign education equivalent) plus three (3) years of experience as an electrical engineer supporting automotive power management products or, alternatively, a Bachelor's degree in Electrical Engin...

Rambus
San Jose, California

Bench validation and debugging of Power Management IC. Work with IC design engineers, and marketing to define memory power solutions. With over 30 years of semiconductor experience, we are a leading provider of high-performance products and innovations that maximize the bandwidth, capacity and secur...

NVIDIA
Santa Clara, California
Remote

We are looking for expert engineers to come and help design rack level solutions for next generation scaling AI supercomputing platforms. Drive server management for large clusters and data centers deploying GPUs and Grace solution from Nvidia. Collaborate with other leads to design & build data...

QTC Management, inc
CA null, US

Collaborate with QTC Info Security team, develop and enforce AWS cloud security policies, ensuring compliance with industry regulations and company policies. AWS certifications (, AWS Certified Solutions Architect, AWS Certified SysOps Administrator) are highly desirable. Knowledge of AWS Well Archi...

Analog Devices
San Jose, California

Position: Senior Engineer, Product Line Management (San Jose, California). Duties: Strategic mindset: keep long term impact in mind when setting goals and driving new product requirements with engineering, application, and business teams. Cross functional interaction: collaborate and communicate the...

Elemental Technologies LLC
Santa Clara, California

AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. You’ll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You’ll collaborate with pe...