Talent.com
Sr. Security Engineer, Vulnerability Management and Remediation Operations

Sr. Security Engineer, Vulnerability Management and Remediation Operations

Amazon.com LLCAustin, Texas, USA
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Amazon develops products and services that transform the way customers live. Across teams and geographies, we strive to delight customers and earn their trust. Members of the Stores Security team are guardians of that trust. From drones to grocery stores and everything in between, our mission is to assess risk, classify data and systems, detect potential intrusion, and respond quickly to security events across Amazon’s critical business functions, including Retail, Customer Service, Worldwide Operations, Consumer Payments, Physical Stores, and Healthcare. Within Stores Security, the Vulnerability Management and Remediation Operations (VMR Operations) organization is responsible for all aspects of the Vulnerability Management lifecycle across Amazon including intake, assessment, discovery, and remediation.

The VMR Operations organization is looking for a Senior Security Engineer with deep technical expertise in security operations and vulnerability management to join us in building and maturing our VMR Operations programs. In this role, you will be responsible for defining and holding the security bar for VMR’s Campaign Management Program, which enables builders and drives remediation actions across Amazon. You will leverage relationships with engineers across Stores Security, business teams, and leaders throughout Amazon to ensure security, compliance, and privacy risks are correctly assessed and mitigations properly designed. You will build trust with senior engineers and leaders by leveraging your technical expertise to understand technical challenges, design improved solutions, and hold a high program bar. Finally, you will use your information security expertise to champion and drive risk-based decisions across complex, multi-disciplinary programs to ensure Amazon properly manages security risk.

Key job responsibilities

You will be responsible for defining and enforcing the quality bar for all security, privacy, and compliance campaigns launched across Amazon.

You will leverage relationships with engineers and managers across Stores Security to intake, prioritize, and launch security campaigns.

You will build trust with Amazon builders by ensuring all campaigns we launch are of the highest quality bar, including clear descriptions of the security risk, steps for remediation, and insight to prevent future issues.

You will partner with your peers to continuously improve the Campaign Management Program, with an emphasis on constant improvement through small, iterative changes to our processes and tooling.

About the team

Diverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why Amazon Security

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Work / Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture.

Inclusive Team Culture

In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Mentorship and Career growth

We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

joindefsec

BASIC QUALIFICATIONS

  • Bachelor's Degree in Computer Science, Computer Engineering, Software Engineering, Cybersecurity, or related technical degree; or 4+ years equivalent technology experience.
  • 7 years engineering experience in system, network, and / or application security or the development of security products.
  • 5 years experience improving accuracy of vulnerability detection mechanisms across a diverse technical ecosystem.
  • 5 years experience and deep knowledge of vulnerabilities, exploits and vulnerability management systems. Experience building applications or systems on cloud-based services.

PREFERRED QUALIFICATIONS

  • Understanding of networking, operating system internals, and system design.
  • Experience across the vulnerability management and remediation lifecycle from assessment through remediation.
  • Experience with developing exploits, host-based, and container-based detections.
  • Experience with AWS services.
  • Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

    Our inclusive culture empowers Amazonians to deliver the best results for our customers.

    serp_jobs.job_alerts.create_a_job

    Sr Security Engineer • Austin, Texas, USA