Security Engineer II, Specialized Businesses Security, External Vulnerability Operations
Summary
Security Engineer partners with external researchers and Amazon teams to identify, disclose, and remediate vulnerabilities in Amazon’s public-facing systems, improving security across the development lifecycle.
You will be in direct contact with teams in a variety of business verticals, giving you firsthand knowledge about how Amazon is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Amazon to find new ways to drive improvements to Customer relationships, services, processes, and technologies throughout the company, with the goal of ensuring the continued safety and security of our customers.
You will use your technical skills to triage disclosed risks and collaborate with customers and security researchers to maintain and raise Amazon’s high security bar. You’ll be backed up by a team of highly skilled security engineers all working with a singular focus of maintaining customer trust and security. You must demonstrate resilience and navigate ambiguous situations with composure and tact. Above all else, a strong sense of Customer Obsession is necessary to focus on the goal of keeping Amazon and its customers secure with the highest priority.
Key job responsibilities
- Triage externally disclosed hardware and service security issues, suggest fixes, and collaborate with builder teams for remediation
- Identify risk trends in Amazon devices and services, and collaborate with builder teams for remediation
- Automate manual processes to streamline security work
- Lead improvements to Amazon programs and processes
- Write and deliver high-quality documents for technical and non-technical audiences
- Manage relationships with Customers and security researchers