Arlington, VA, US
22 hours ago
Security Engineer, AWS AppSec Vendor Security
Cloud security is our highest priority at AWS. AWS customers benefit from an environment built to meet the requirements of the most security-sensitive organizations. As an AWS Security team member, you will help secure that environment for our customers while working on security products for a variety of platforms and technologies, all operating at AWS scale.

AWS Vendor Security team is on the forefront of security issues for a wide variety of AWS and external platforms and technologies. This includes cloud services, Internet of things (IoT), identity and access management, mobile devices, virtualization and custom hardware, all operating at massive scale.

Amazon is looking for an experienced Application Security Engineer to help validate that our external-interfacing AWS services, applications, and websites are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios.

Our highly collaborative team is committed to each team member’s growth You will have the opportunity to learn from, and be mentored by, those who are building and securing innovative services.

AWS Security Engineers provide significant contributions to the AWS IT Security team and to multiple groups throughout Amazon. They are expected to develop elegant solutions to complex business problems and apply appropriate technologies while following security engineering best practices. A Security Engineer must foster constructive dialogue and seek resolution when confronted with discordant views.

A Security Engineer for this role is expected to have expertise in common application security risks and mitigations. They are expected to participate fully in the planning of the AWS IT Security team's work and constantly seek opportunities for process improvement.

A successful candidate will need a combination of troubleshooting, technical, and communication skills, as well as the ability to handle a mix of disparate tasks which may include project and software development work. This role will provide career growth opportunities as you gain new security skills in the course of your duties.

Key job responsibilities
- Manage security reviews and processes to qualify AWS vendors worldwide and validate the effectiveness of durable technical security controls specific to the use case

- Identify technical risks and work with peer security experts to implement security programs and processes to offer mitigations

- Work with stakeholders to ensure new and existing processes are secure

- Calibrate with broader team on security findings

- Review processes to ensure secure mechanisms exist and validate security controls

- Establish mechanisms to introduce security controls reducing individual reviews


A day in the life
On a day to day basis a Security Engineer on the AWS vendor security teams works with a team of Security Engineers and Technical Program Managers to perform deep dive technical analysis on third party engagement requests across the AWS organization to uphold the Amazon Security Bar. A Security Engineer helps to define the Security Bar and mitigating controls which drive creation of technical runbooks to scale third party reviews for a wide range of technologies and security knowledge domain areas, including server hardware, AI/ML, quantum computing, telecommunications, and infrastructure supply chain.

About the team
About Amazon Security

Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Por favor confirme su dirección de correo electrónico: Send Email