Job description
Amazon Security's Vulnerability Management and Response - Strategic Enablement team is looking for a Security Engineer II.
This team is revolutionizing vulnerability management through advanced remediation automation, innovative vulnerability detection solutions, data-driven insights, and more.
Be part of a dynamic group that bridges security operations and development, creating measurable impact across Amazon's vast ecosystem.
Key job responsibilities
-Develop and optimize security automation workflows to operationalize new capabilities, including integration with existing security tools and platforms across Amazon's infrastructure
-Design, script, and implement quick proof-of-concepts for vulnerability detection, assessment, and remediation across host and container environments, enabling rapid validation of new solutions and approaches
-Collaborate with TPMs and SDE teams to translate program requirements into technical specifications, ensure seamless integration with existing systems, and conduct user acceptance testing for new security capabilities
-Build queries and analyze data to extract actionable insights on vulnerability management effectiveness, supporting data-driven decision making and informed program improvements
-Conduct security research and analysis on emergent vulnerabilities to identify emerging threats, new detection opportunities, and methods to enhance existing vulnerability detection capabilities
-Mentor junior engineers and contribute to the technical growth and knowledge sharing within the team
A day in the life
Start your morning reviewing last night's vulnerability scan data and building SQL queries to analyze patterns across thousands of Amazon hosts.
Collaborate with VMR Operations on technical specifications for a new container vulnerability detection pattern, then code Lambda scripts to integrate new capabilities with the workflow management platform.
Mid-day brings a design review with SDE teams, ensuring custom detection logic scales seamlessly.
Mentor a junior engineer on API integration techniques, then end the day testing your automation workflow and preparing actionable insights for tomorrow's leadership review.
About the team
The VMR Strategic Enablement team bridges security operations and development, transforming vulnerability data into measurable security outcomes.
We embrace a Think Fast, Learn Faster culture where rapid prototyping validates new solutions and data drives every decision.
Our diverse team of security engineers and TPMs collaborates across the full vulnerability lifecycle, building custom detection capabilities, operationalizing security programs, and creating metrics that demonstrate real impact across Amazon's infrastructure.
BASIC QUALIFICATIONS
- 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
- Bachelor's degree in computer science or equivalent
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
PREFERRED QUALIFICATIONS
- 2+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Experience with AWS products and services
- Experience with programming languages such as Python, Java, C++
- Experience with data engineering concepts including data pipelines, ETL processes, and working with large-scale security datasets
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers.
Required Skill Profession
Computer Occupations