What are the responsibilities and job description for the Senior Security Engineer, AWS Proactive Security Builder Efficiency position at Amazon?
Senior Security Engineer, AWS Proactive Security Builder Efficiency
Our mission is to uphold the AWS security bar at the lowest cost to AWS builders.
We are seeking a talented Security Engineer to help us achieve this mission through strategic and technical leadership. This is a high impact leadership position where you will work across AWS security and service teams to increase builder efficiency as it relates to security.
AWS Security holds a high security bar to ensure AWS services meet our customers' expectations at launch and in production.
You will help us understand how AWS service teams build new features and services and identify opportunities to inject security into their workflows to reduce the effort service teams spend on security.
Opportunities could range from process improvements, automation solutions, and secure-by-default mechanisms.
Key Responsibilities
- Understand builder workflows to identify think big opportunities that inject security earlier in the Software Development Lifecycle
- Propose and design secure-by-default solutions
- Ensure we uphold the AWS Security Bar while increasing efficiency for builders
- Represent the team to AWS service teams and security leadership
- Prepare and present detailed, written technical information for internal and external audiences
- Define and monitor security metrics
About Us
The Proactive Security Builder Efficiency team is comprised of product managers, program managers, and security engineers, all focused on improving the lives of AWS Builders.
We have an opportunity to make a large impact by influencing teams across AWS to build and adopt solutions that increase builder efficiency.
Requirements
- Bachelor's degree (or higher) in Computer Science, Cyber Security or related field, or equivalent work experience
- 5 years of experience in identifying security issues and risks, and developing mitigation plans
- 5 years of experience in network, system, and/or application security
- 5 years of experience in one or more of the following areas: cryptography, web and network protocols, data structures and algorithms, software development, threat modeling, pen tests, or vulnerability assessments