Amazon
AWS Security Engineer - Vulnerability Management
Amazon, Washington, District of Columbia, us, 20022
Join the Amazon Development Center U.S., Inc. as an AWS Security Engineer in Vulnerability Management. In this pivotal role, you will be part of the AVM (AWS Vulnerability Management) organization responsible for overseeing the entire software vulnerability lifecycle across AWS.
Our mission is to create a platform that monitors intelligence, detects vulnerabilities, and drives remediation responses to safeguard our customers at scale. You will collaborate with teams like EC2, S3, RDS, CloudHSM, Containers, and Amazon Linux to deeply engage with various software, including operating systems, firmware, databases, hardening services, cryptography, and audit analysis.
Key Responsibilities:
Research and interpret vulnerability disclosures and intelligence.
Lead and coordinate vulnerability assessments and triage activities with AWS subject-matter experts.
Own workstreams during large-scale remediation and triage campaigns.
Craft risk assessment statements, remediation guidance, and detailed status reports.
Partner with product teams across Amazon to develop and implement scalable solutions for security vulnerabilities.
Develop automation tools to streamline and enhance vulnerability management processes.
Participate in periodic on-call responsibilities.
Basic Qualifications:
BS degree in Computer Science, Computer Engineering, Information Systems, or related field; or 4+ years equivalent experience.
3 years of expertise in system, network, and/or application security.
3 years of experience with threat modeling and vulnerability disclosures.
2 years of experience in building automated tools using languages such as C, C++, Java, Python, Perl, PowerShell, or Ruby.
Strong familiarity with Windows and Linux internals and system design.
Preferred Qualifications:
2+ years in any of the following areas: threat modeling, secure coding, identity management, software development, cryptography, system administration, and network security.
Experience utilizing AWS products and services.
Proficiency in programming languages like Python, Java, or C++.
This role is located in Seattle, WA. At Amazon, we are committed to fostering a diverse and inclusive workplace, ensuring that all individuals are treated equally. If you require accommodations during the application and hiring process, please reach out for support.
Our compensation packages are competitive, reflecting labor costs across various US markets, ranging from $136,000/year to $212,800/year depending on location and individual qualifications. Beyond base pay, we offer total compensation that may include equity, sign-on bonuses, and a comprehensive range of benefits.