Expoint - all jobs in one place

מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

Limitless High-tech career opportunities - Expoint

Amazon Security Engineer II Amazon Stores AppSec 
United States, New York, New York 
441890455

27.01.2025
DESCRIPTION


Key job responsibilities
* Creating, updating, and maintaining threat models for a wide variety of software projects
* Manual and Automated Secure Code Review, primarily in Java, Python and Javascript
* Development of security automation tools
* Adversarial security analysis using tools to augment manual effort
* Security training and outreach for internal development teams
* Security architecture and design guidance
* Independently solve security problems that require novel methods or approaches
* Influence your team’s and partners’ process, priorities, and choices to improve outcomesAbout the team
About Amazon Security:
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.Work/Life Balance

BASIC QUALIFICATIONS

- Bachelor's degree in computer science or equivalent
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
- 3+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Experience programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language


PREFERRED QUALIFICATIONS

- Experience with AWS products and services
- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent