AWS Managed Services (AMS) Security is looking for technical Security Engineers that are passionate about learning new concepts and work well within a team environment to keep customers secure. We value engineers that can work through ambiguity to identify suspicious activity, lead security response, and can explain technical security concepts to non-technical audiences.
Key job responsibilities
- Identify, evaluate and communicate security threats, risks and vulnerabilities, and propose recommended remediation for security issues.
- Contribute to the development of security automation and security posture improvements.
- Track and report on the effectiveness of AWS detective controls such as Amazon GuardDuty, Amazon Macie, and other new security products.
- Develop processes and policies to increase security response effectiveness.
- On-call support: This role requires periodic on-call responsibilities including weekends.
A day in the life
As a Security Engineer in AWS Managed Services (AMS), your responsibilities include monitoring networks and systems for potential threats, performing triage for security alerts, documenting suspicious activity, and reporting issues so they can be adequately handled. You will work alongside our security engineers and partner teams to perform daily threat detection and incident response, using the full capability of AWS technologies and services to detect and mitigate cyber threats at a massive scale and help protect AWS Customers. You should also enjoy learning about the most up-to-date new technologies and procedures to protect information systems and data.
About the team
AMS provides 24/7 threat monitoring, investigation, and response across for customer’s AWS environments. AMS enhances existing security capabilities by supporting security monitoring for all native AWS services and supports vendor agnostic detective and protective controls to provide holistic security controls for customers. This is done by leveraging data on common attack techniques to enhance detective controls and incident response, then building auto-remediation capabilities to minimize disruption to customer workloads. When a security event does happen, you will be there provide guidance.
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
- Experience applying threat modeling or other risk identification techniques or equivalent
- Experience with programming languages such as Python, Java, C++
- 3+ years performing security investigations, detection engineering, and/or security incident response.
- Knowledge of the adversary techniques, tactics, and common methods to identify and disrupt the attack lifecycle.
- Experience with AWS products and services
- Information security professional certification, or Bachelor's degree
- Excellent verbal and written skills, communicating complex technical security concepts to a non-technical audience.
Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice (https://www.amazon.jobs/en/privacy_page) to know more about how we collect, use and transfer the personal data of our candidates.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit https://www.amazon.jobs/content/en/how-we-hire/accommodations.