招聘
Amazon Security is seeking a Security Engineer who thrives in ambiguity and is motivated to build scalable security solutions. The Secure Third Party Tools (S3T) team has bold ambitions to redefine how Amazon protects customer trust across all third-party interactions — shifting from reactive assessments to proactive, automated protection at global scale. Security Engineers are integral to this mission, combining deep technical review expertise with a builder's mindset to influence the AI-powered tooling that scales our impact. They must demonstrate excellent written and verbal communication skills, strong ownership on review engagements, integrating GenAI to improve operationally efficiency, and solid understanding of vendor security risk and effective controls.
- Key job responsibilities
- Perform technical deep-dive security reviews of third-party services across diverse and ambiguous use cases, including AI/ML integrations, cloud architectures, and services handling sensitive customer data
- Identify and trace data flows through complex systems, evaluating where security controls are lacking or require supplementation
- Evaluate vendor penetration test reports, assessing finding applicability and severity within the context of each engagement
- Threat model third-party use cases to rapidly surface sharp edges and drive risk-proportionate decisions
- Influence and contribute to AI-powered security tooling that automates and scales review decisions across the organization
- Clearly communicate identified risks and recommendations to service teams and leadership, driving resolution through escalation when needed
- Author and improve security baselines, decision rubrics, and implementation patterns for novel third-party use cases
A day in the life
Security Engineers work backwards from customer risk to identify what matters most in a third-party engagement — there is no checklist. You'll apply threat modeling, architecture analysis, and enterprise security control knowledge to bottom out on key risks quickly, then translate findings into clear, actionable guidance. When barriers arise, you focus on solutions: scripting, leveraging AI tools, and codifying decisions in S3T tooling so the next review is faster and more accur.
About the team
Security is central to maintaining customer trust and delivering delightful customer experiences. Our vision is that Builders raise the Amazon security bar when they use our recommended tools and processes, with no overhead to their business. S3T scales through software, not people — using high-judgment engineers to codify security decisions into automation that protects Amazon customers worldwide.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience across cloud, AI/ML, retail, and more.
Inclusive Team Culture:
In Amazon Security, it's in our nature to learn and be curious. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Work/Life Balance
We value work-life harmony. Flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Basic Qualifications
- 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
- Experience working in identifying security issues and risks, and developing mitigation plans
- Experience in risk assessment and enabling organizations to make security decisions
Preferred Qualifications
- Knowledge of command line tools to troubleshoot protocols, analyze log outputs, or automate basic tasks
- Experience with AWS products and services
- Experience performing security activities across one or more phases of the software development lifecycle (SDLC), such as security design review, threat modeling, secure code review, and security testing
- Experience in identifying security risks in AI applications
- Experience in using or developing AI tooling for risk assessment and enabling organizations to make security decisions
- 2+ years of troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non-internship) experience
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, VA, Arlington - 159,300.00 - 202,400.00 USD annually
总浏览量
0
申请点击数
0
模拟申请者数
0
收藏
0
相似职位

Cloud Security Engineer
AES Corporation · 2 Locations

Cybersecurity Engineer II - Onsite El Segundo, CA
Raytheon (RTX) · US-CA-EL SEGUNDO-E01 ~ 2000 E El Segundo Blvd ~ BLDG E01

Security Host/Hostess - Full-Time, $29.00/Hour
ESPN (Disney) · kapolei

PKI Engineer
Booz Allen Hamilton · Arlington, VA

Cybersecurity Analyst
Booz Allen Hamilton · Arlington, VA
关于Amazon

Amazon
PublicAmazon.com, Inc. is an American multinational technology company engaged in e-commerce, cloud computing, online advertising, digital streaming, and artificial intelligence.
10,001+
员工数
Seattle
总部位置
$1.5T
企业估值
评价
2.9
10条评价
工作生活平衡
2.8
薪酬
3.7
企业文化
2.5
职业发展
2.3
管理层
2.1
35%
推荐给朋友
优点
Good pay and compensation
Strong benefits package
Flexible scheduling options
缺点
Poor management and leadership
Limited growth and promotion opportunities
High stress and demanding work environment
薪资范围
4个数据点
L2
L3
L4
L5
L6
L2 · Cybersecurity Analyst L2
0份报告
$234,132
年薪总额
基本工资
$93,653
股票
$117,066
奖金
$23,413
$163,892
$304,372
面试经验
10次面试
难度
3.7
/ 5
时长
21-35周
录用率
20%
体验
正面 10%
中性 10%
负面 80%
面试流程
1
Application Review
2
Recruiter Screen
3
Online Assessment
4
Technical Phone Screen
5
Onsite/Virtual Loop
6
Team Matching
7
Offer
常见问题
Coding/Algorithm
System Design
Behavioral/STAR
Leadership Principles
Technical Knowledge
新闻动态
Amazon vs. Walmart: This Isn't Even Close - The Motley Fool
The Motley Fool
News
·
3d ago
'Kevin' Review: Jason Schwartzman, Aubrey Plaza in Amazon Cat Cartoon - The Hollywood Reporter
The Hollywood Reporter
News
·
3d ago
Amazon's best weekend deals: Apple, Clinique, Yeti and more — save up to 70% - Yahoo
Yahoo
News
·
3d ago
Amazon Delivery Drones Involve a Perilous 10-Foot Drop. Users Are Posting the Apparent Results - Gizmodo
Gizmodo
News
·
3d ago