Application Security Engineer
Job Description
Application Security Engineer at Amazon.com Services LLC, onsite in New York, responsible for validating the security of applications and services, performing security reviews and penetration tests, building security automation, and mentoring teams.
Responsibilities
- Lead and perform application security reviews for software and services
- Execute penetration testing to uncover vulnerabilities and verify remediation
- Contribute to projects and conduct research as needed
- Deliver security training and engage internal development teams
- Author and maintain security guidance documentation
- Develop security tooling and automation to improve processes
- Provide security metrics and drive continuous improvement
- Assist with recruiting activities and handle administrative duties as required
Requirements
- 3+ years of professional programming experience in Python, Ruby, Go, Swift, Java, .NET, C++, or other object oriented languages
- 2+ years of scripting, programming, and security code review in a non internship role
- 2+ years troubleshooting systems issues, analyzing logs, or automating tasks via command line tools
- Bachelor's degree in a STEM field, or 2+ years of IT security experience
- Knowledge of networking protocols such as HTTP, DNS, and TCP/IP
- Understanding of industry based security vulnerabilities and remediation techniques
Technologies
- Python, Ruby, Go, Swift, Java, .NET, C++
- HTTP, DNS, TCP/IP, HTTP(S)
- AWS products and services
Benefits
- Health insurance including medical, dental, vision, and prescription coverage
- Basic Life and AD&D insurance with option for supplemental plans
- Flexible Spending Accounts
- Employee Assistance Program and Mental Health Support
- Medical Advice Line
- Adoption and Surrogacy Reimbursement
- 401(k) with company match
- Paid time off and parental leave