Security Engineer, AWS Security Incident Response
Amazon
Amazon
Join AWS Security Incident Response as a technical Security Engineer, contributing to customer security by learning new concepts and collaborating within a team. We seek individuals adept at navigating ambiguity to identify suspicious activities, lead security responses, and clearly communicate complex security concepts to diverse audiences.
AWS Global Services empowers customers to design, build, operate, and secure their cloud environments. Our diverse team of technical experts spans multiple countries, helping clients maximize their potential with the AWS cloud through innovative solutions and emerging technologies like Generative AI.
Be part of a team that invents elegant, simple solutions to complex technical and business challenges, shaping the mission to be Earth's most customer-centric company. We are on a journey of continuous invention and are looking for passionate engineers to join us.
- Respond effectively to threat findings indicating unauthorized activity. - Propose and implement solutions to enhance AWS Security Incident Response capabilities and automation. - Provide expert security engineering support during customer-facing incidents, focusing on proactive prevention. - Mentor information security engineers to elevate security postures and mitigate risks swiftly. - Identify, assess, and communicate security threats, risks, and vulnerabilities, recommending appropriate remediation strategies. - Monitor and report on the performance of AWS detective controls, including Amazon GuardDuty and third-party products. - Develop and refine processes and policies to boost security response efficiency. - Participate in on-call rotations, including weekends, to ensure continuous support.
- Hold a Bachelor's degree in Computer Science or a related field. - Possess a strong understanding of networking protocols like HTTP, DNS, and TCP/IP. - Demonstrate knowledge of industry-standard security vulnerabilities and effective remediation techniques. - Accumulate 4+ years of programming experience in languages such as Python, Ruby, Go, Swift, Java, .Net, or C++. - Accumulate 4+ years in any combination of threat modeling, secure coding, identity management, authentication, software development, cryptography, system administration, or network security. - Accumulate 4+ years of experience in troubleshooting system issues, analyzing logs, or automating tasks using command-line tools (non-internship).
Amazon
Cloud Computing