As a Sr. Security Engineer in AWS Vulnerability Management, you will work on a team of security engineers, software developers, and technical program managers. You will interpret and triage vulnerability disclosures, collaborate with subject matter experts across AWS on technical solutions, and drive remediation activities across AWS’s unprecedented scale.
Key responsibilities include:
- Become a subject matter expert for a technology domain in AWS Vulnerability Management.
- Own and coordinate large-scale remediation or triage campaigns, including reporting to AWS Security leadership.
- Be a VM technical lead, providing support and mentorship to less experienced team members in day to day operations
- Research and interpret vulnerability disclosures and intelligence.
- Author risk assessment statements, remediation guidance, and status reports
- Partner with product teams across Amazon to develop scalable solutions to security vulnerabilities
- Design and develop tooling to automate and refine vulnerability management processes
- Periodic on-call responsibilities.
**We can hire you into our Arlington, VA office.**
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
BASIC QUALIFICATIONS
- BS degree in Computer Science, Computer Engineering, Information Systems or related degree; or 6+ years equivalent technology experience
- 4 years experience in system, network, and/or application security
- 4 years experience in threat modeling and interpreting vulnerability disclosures
- 4 years experience building automated tools in C, C++, Java, Python, Perl, PowerShell, or Ruby
PREFERRED QUALIFICATIONS
- Experience in vulnerability management or security operations.
- Experience acting a subject matter expert and mentor for junior analysts
- Experience affecting change across complex environments.
- Strong understanding of Windows and Linux internals and system design.
- Experience with AWS services.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit https://www.amazon.jobs/en/disability/us.