Expoint - all jobs in one place

The point where experts and best companies meet

Limitless High-tech career opportunities - Expoint

Amazon Senior Security Engineer Proactive 
United States, Washington, Seattle 
331229361

01.05.2024
DESCRIPTION

AWS Security is looking for a Sr. Application Security Engineer to help validate that our services, applications, and websites are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios. You will have the opportunity to learn from, and be mentored by, those who are building and securing our cutting-edge services.
Key job responsibilities
* Application security reviews (includes architecture reviews, threat modeling, code reviews and security testing).
* Machine Learning Model and IoT security reviews.
* Project and research work as needed.
* Security training and outreach to internal development teams.
* Security guidance documentation.
* Security workflow automation.
* Security metrics delivery and process improvements.
* Assistance with recruiting activities.A day in the lifeDiverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.Work/Life Balance


BASIC QUALIFICATIONS

- BS in Computer Science or related field, or equivalent work experience.
- Minimum of 5 years of experience with security engineering (architecture reviews, threat modeling, secure coding etc.), system and network security, authentication and security protocols, cryptography or application security.
- Familiarity with common attack patterns and exploitation techniques for web & mobile applications and IoT devices.
- Knowledge of commonly found software security vulnerabilities (like OWASP top 10) and remediation techniques.
- Knowledge of basic networking and network security related concepts (TCP/UDP, Firewalls/Switches, Wi-Fi security, TLS, etc.)