Expoint - all jobs in one place

The point where experts and best companies meet

Limitless High-tech career opportunities - Expoint

Amazon Security Engineer II Physical Operations Incident 
United States, Washington, Seattle 
17034278

12.08.2024
DESCRIPTION

At AWS, we obsess over our customers and maintaining their trust. To earn that trust in an environment as vast and varied as ours, requires broad technical and industry skills to drive emergent response and tackle never-before-seen challenges at accelerated scales.Security is our highest priority. As an AWS Security Operations Center (SOC) team member, you will help secure that environment for our customers while working on cutting edge security products across a variety of platforms and technologies. This role requires engineers to work tactically, with both internal and external stakeholders, to solve security challenges at scale, and to think strategically to develop and implement changes that drive automation, scalability and continuous progress for the team.Key job responsibilities
* Own and manage in-flight security issues.
* Triage/assess security issues and engage with internal service teams to ensure prompt mitigation and remediation of issues, escalating internally as necessary to ensure the right level of urgency and engagement.
* Communicate the state of these issues to technical and non-technical stakeholders, in varying levels and roles.
* Act as a technical escalation and quality assurance focal for the team, providing broad and deep solutions that achieve outcomes while maintain an acceptable level of risk.
* Deliver working mechanisms/solutions spanning the full incident lifecycle, working backwards from both our internal needs and those of our customers.
* Demonstrate technical proficiency in the fields of security operations, incident response, and emergent security intelligence.
* Explore building and improving our tooling to improve global operational efficiency.* Demonstrate a high proficiency for context switching which enables you to manage incidents, act as an escalation point to the team, communicate to senior leaders, and deliver projects/process improvement results.A day in the life
In the morning you will take handover from the prior site. You will accept ownership of security issues presently in-flight. The issues could relate to a range of physical, logical, or technical products and services, so you will often need to learn on the go. You will engage various stakeholders, such as internal service teams, along with AWS Security Leadership, Legal, and the leadership from the impacted service team. As the day progresses, new issues will be assigned to you based on your workload and you will be responsible for triaging them, determining their level of impact, and work towards resolving them at the appropriate pace. At the end of the day, you will document all the issues you are tracking so they can be taken over by the site relieving you. In addition to the day to day incident response work, you will act as an escalation point for the team, ensuring we are driving the appropriate outcomes. As capacity allows, you will work on strategic projects. You will support our 24x7x365 global response team with oncall coverage as required.About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.Work/Life Balance

BASIC QUALIFICATIONS

- Bachelor's degree in computer science or equivalent
- 3+ years operating in an enterprise incident response or security operations team
- Ability to work any shift pattern within the 24/7/365 operation including days, nights, holidays and weekends.


PREFERRED QUALIFICATIONS

- Experience with AWS products and services
- Experience implementing security solutions at the business division level or equivalent
- Experience applying threat modeling or other risk identification techniques or equivalent
- Experience with security incident response processes, tools, techniques and strategies
- CCSP (Certified Cloud Security Professional) or CEH (Certified Ethical Hacker) or CFR (CyberSec First Responder) or Cloud+ or CySA+ (CompTIA Cybersecurity Analyst) or GCED (GIAC Certified Enterprise Defender) or GICSP (Global Industrial Cyber Security Professional) or PenTest+