Logo
Amazon

Security Engineer II, Offensive Security Penetration Testing

Amazon, Arlington, Virginia, United States, 22201


Security Engineer II, Offensive Security Penetration Testing

Job ID: 2816038 | Amazon.com Services LLCAmazon’s Information Security Penetration Testing Team is seeking a Security Engineer to help keep Amazon secure for its customers. In this role, you will attack Amazon’s services, applications, and websites to discover security issues and report them to our internal technology teams. This position will provide you with challenging opportunities, both technologically and as a leader, but will also be a great deal of fun if hacking Amazon alongside a team of highly skilled individuals sounds exciting to you.

A Security Engineer at Amazon is expected to be strong in multiple domains. Engineers in this role work closely with teams throughout the Amazon Security organization, as well as provide technical leadership and advice to teams and leaders throughout Amazon. You will be in direct contact with teams in a variety of business verticals, giving you first hand knowledge about how Amazon is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Amazon to find new ways to break services and technologies throughout the company.

Engineers in this role must show exemplary judgment in making technical trade-offs between short-term fixes and long-term security and business goals. You will demonstrate resilience and navigate ambiguous situations with composure and tact. You will be expected to provide thought leadership for the organization as you discover, invent, and innovate throughout the course of your duties. Above all else, a strong sense of customer obsession is necessary to focus on the ultimate goal of keeping Amazon and its customers secure.

Key job responsibilities

Conducting high quality application penetration tests independently, or as part of a teamCreating detailed engagement plans and thoroughly documenting findings, gaps, and remediation recommendationsContributing to team tooling, innovation, and process improvementsCommunicating and collaborating with partner security teams, service owners, and senior leadership to influence and prioritize the resolution of discovered security findings

BASIC QUALIFICATIONS

3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experienceBachelor's degree in computer science or equivalent3+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience3+ years of experience in a penetration testing or similar offensive security rolePREFERRED QUALIFICATIONS

Experience with AWS products and services1+ years experience with GenAI application penetration testing (prompt testing), network penetration testing, and/or mobile penetration testingAmazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.

#J-18808-Ljbffr