Amazon is seeking a Security Engineer to join the AVM (AWS Vulnerability Management) organization. Our organization is accountable for the endtoend software vulnerability lifecycle across all aspects of AWS. We are responsible for building the platform that monitors intelligence detects vulnerabilities drives remediation response and drives innovation to meet the scale and demand of all AWS customers. Working with teams such as EC2 S3 RDS CloudHSM Containers and Amazon Linux requires us to dive deep into all aspects of first and thirdparty software across AWS including Operating Systems firmware databases service/system hardening cryptography and audit analysis. We are passionate about diving deep to identify and build solutions that keep our customers safe.
As a security engineer you will help define and execute shortterm and longterm strategy for vulnerability remediation. Youre wellknown for your excellent prioritization skills as well as your ability to communicate at all levels of an organization (technical and nontechnical). The successful candidate must be autonomous comfortable operating in highly ambiguous situations and relish the idea of solving security problems at scale.
The successful candidate is one who loves working directly with software developers to understand their needs and design security systems and solutions that enable developers to operate more effectively securely and safely. You will have the opportunity to engage with systems that are at the cutting edge of technology. You will work directly with AWS service teams partner security teams and administrative teams to identify opportunities to improve our security posture. You will build tooling drive process improvements and work with service owners and cuttingedge technology to develop innovative solutions to complex technical challenges.
The role can be located in Seattle WA
Key job responsibilities
Research and interpret vulnerability disclosures and intelligence
Own and coordinate vulnerability assessment and triage activities with subjectmatter experts across AWS
Own workstreams during largescale remediation or triage campaigns.
Author risk assessment statements remediation guidance and status reports
Partner with product teams across Amazon to develop scalable solutions to security vulnerabilities
Develop tooling to automate and refine vulnerability management processes
Periodic oncall responsibilities.
A day in the life
AWS Security is on the cutting edge of many security issues for a wide variety of platforms and technologies including cloud services Internet of things (IoT) identity and access management mobile devices virtualization and custom hardware all operating at massive scale. Our team drives large scale longterm programs across all of AWS.
About the team
Our organization is accountable for the endtoend software vulnerability lifecycle across all AWS.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description we encourage candidates to apply. If your career is just starting hasnt followed a traditional path or includes alternative experiences dont let it stop you from applying.
Why Amazon Security
At Amazon security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazons products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud devices retail entertainment healthcare operations and physical stores.
Inclusive Team Culture
In Amazon Security its in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas perspectives and voices.
Training & Career Growth
Were continuously raising our performance bar as we strive to become Earths Best Employer. Thats why youll find endless knowledgesharing training and other careeradvancing resources here to help you develop into a betterrounded professional.
Work/Life Balance
We value worklife harmony. Achieving success at work should never come at the expense of sacrifices at home which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home theres nothing we cant achieve.
BS degree in Computer Science Computer Engineering Information Systems or related degree; or 4 years equivalent technology experience
3 years experience in system network and/or application security
3 years experience in threat modeling and interpreting vulnerability disclosures
2 years experience building automated tools in C C Java Python Perl PowerShell or Ruby
Strong understanding of Windows and Linux internals and system design.
2 years of any combination of the following: threat modeling experience secure coding identity management and authentication software development cryptography system administration and network security experience
Experience with AWS products and services
Experience with programming languages such as Python Java C
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race national origin gender gender identity sexual orientation protected veteran status disability age or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process including support for the interview or onboarding process please visit
for more information. If the country/region youre applying in isnt listed please contact your Recruiting Partner.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $136000/year in our lowest geographic market up to $212800/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on jobrelated knowledge skills and experience. Amazon is a total compensation company. Dependent on the position offered equity signon payments and other forms of compensation may be provided as part of a total compensation package in addition to a full range of medical financial and/or other benefits. For more information please visit This position will remain posted until filled. Applicants should apply via our internal or external career site.