Security Engineer II
Job Description
The Security Engineer II role at Amazon focuses on designing and building scalable LOAF-based security detection and prevention capabilities while embedding security into developer workflows.
Responsibilities
- Design and develop scalable systems to detect, classify, and prevent security escapes across Amazon
- Enhance LOAF's neural network powered detection capabilities, improving precision and expanding coverage across vulnerability classes
- Architect shift-left tooling that integrates directly into developer workflows to catch vulnerabilities before production
- Own critical LOAF platform components end-to-end, from design through deployment and ongoing operational excellence
- Collaborate with security teams across Amazon to identify escape patterns and translate them into automated detection and prevention mechanisms
- Develop APIs and integrations that allow engineering teams to consume LOAF's unified escape data and prevention tooling
- Define and instrument metrics that quantify real reductions in escape volume, guiding prioritization of engineering investment
- Explore novel vulnerability patterns and prototype detection approaches to broaden LOAF's coverage to new escape classes
Requirements
- 3+ years of programming experience in Python, Ruby, Go, Swift, Java, .Net, C++, or other object-oriented languages
- 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience
- 2+ years of troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non-internship) experience
- Bachelor's degree in computer science or equivalent
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
- 4+ years of experience across combinations of: application security frameworks, identity and access controls, incident response, mobile security, cloud security, AI security, threat intelligence, and penetration testing
- Knowledge of domains such as access-control systems, network security, development security, security architecture and models, cryptography, and operations security
Technologies
- Python
- Ruby
- Go
- Swift
- Java
- .Net
- C++
- LOAF
- AWS
- HTTP
- DNS
- TCP/IP
Benefits
- Sign-on payments
- Restricted stock units (RSUs)
- Health insurance (medical, dental, vision, prescription, Basic Life & AD&D, with option for supplemental life plans, EAP, mental health support, medical advice line, FSA, adoption and surrogacy reimbursement)
- 401(k) matching
- Paid time off
- Parental leave
About the Team
The team embraces diverse experiences. Amazon Security values varied backgrounds and encourages applicants who may not meet every listed qualification. If your career is just starting, follows a nontraditional path, or includes alternative experiences, you are invited to apply.
Why Amazon Security?
Security is central to earning customer trust and delivering exceptional experiences. The security organization sets and sustains a high bar across Amazon's products and services, offering opportunities to build expertise across cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
Amazon Security emphasizes continuous learning and curiosity. Ongoing DEI events and learning experiences encourage embracing diverse ideas, perspectives, and voices to tackle the toughest security challenges.
Training & Career Growth
The organization strives to elevate performance and reach Earth’s Best Employer status, providing extensive knowledge sharing, training, and career-advancing resources to support professional development.
Work/Life Balance
Flexibility is valued to help maintain harmony between work and home life. A supportive workplace culture aims to enable success without compromising personal well-being.