Expoint – all jobs in one place
Finding the best job has never been easier
Limitless High-tech career opportunities - Expoint

Amazon Sr Security Engineer Vulnerability Management Remediation Operations 
United States, Texas, Austin 
811509737

Today
DESCRIPTION

The VMR Operations organization is looking for a Senior Security Engineer with deep technical expertise in security operations and vulnerability management to join us in building and maturing our VMR Operations programs. In this role, you will be responsible for defining and holding the security bar for VMR’s Campaign Management Program, which enables builders and drives remediation actions across Amazon. You will leverage relationships with engineers across Stores Security, business teams, and leaders throughout Amazon to ensure security, compliance, and privacy risks are correctly assessed and mitigations properly designed. You will build trust with senior engineers and leaders by leveraging your technical expertise to understand technical challenges, design improved solutions, and hold a high program bar. Finally, you will use your information security expertise to champion and drive risk-based decisions across complex, multi-disciplinary programs to ensure Amazon properly manages security risk.Key job responsibilities
You will be responsible for defining and enforcing the quality bar for all security, privacy, and compliance campaigns launched across Amazon.You will leverage relationships with engineers and managers across Stores Security to intake, prioritize, and launch security campaigns.You will build trust with Amazon builders by ensuring all campaigns we launch are of the highest quality bar, including clear descriptions of the security risk, steps for remediation, and insight to prevent future issues.You will partner with your peers to continuously improve the Campaign Management Program, with an emphasis on constant improvement through small, iterative changes to our processes and tooling.About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture.
Mentorship and Career growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

BASIC QUALIFICATIONS

- Bachelor's Degree in Computer Science, Computer Engineering, Software Engineering, Cybersecurity, or related technical degree; or 4+ years equivalent technology experience.
- 7 years engineering experience in system, network, and/or application security or the development of security products.
- 5 years experience improving accuracy of vulnerability detection mechanisms across a diverse technical ecosystem.
- 5 years experience and deep knowledge of vulnerabilities, exploits and vulnerability management systems. Experience building applications or systems on cloud-based services.


PREFERRED QUALIFICATIONS

- Understanding of networking, operating system internals, and system design.
- Experience across the vulnerability management and remediation lifecycle from assessment through remediation.
- Experience with developing exploits, host-based, and container-based detections.
- Experience with AWS services.