EngineerJobs.io
← Back to all jobs

Job Description

The role of Security Engineer II, Stores Application Security at Amazon.com Services LLC is based in Washington, DC with remote options and offers a salary range of USD 159,300 - 202,400 per year. The position collaborates with software development teams to identify security risks, perform threat modeling and secure code reviews, and drive security automation across the software development lifecycle.

Responsibilities

  • Create, update, and maintain threat models for a broad set of software projects.
  • Lead first-party application security research efforts.
  • Perform manual and automated secure code reviews, with emphasis on Java, Python, and JavaScript.
  • Identify and mitigate security issues at scale across systems and services.
  • Develop security automation tools to streamline security workflows.
  • Use adversarial security analysis with innovative tooling to augment manual assessment.
  • Provide security guidance and partner with internal development teams to secure applications.
  • Independently solve security challenges requiring novel methods or approaches.
  • Influence team and partner processes, priorities, and decisions to improve outcomes.

Requirements

  • Experience delivering security activities across one or more SDLC phases, including security design reviews, threat modeling, secure code reviews, and security testing.
  • Bachelor's degree in computer science or equivalent, or 3+ years of IT security experience.
  • Experience with network architecture, enterprise IT systems, and cloud environments such as AWS.
  • Proficiency in programming or scripting languages (for example Java, Python, Perl, Bash, Ruby, PowerShell).
  • Ability to convey complex technical risks in clear terms for non-technical stakeholders.
  • Experience working with AWS services, network architecture, and enterprise IT systems.
  • Experience driving continuous, scalable improvements in security controls and practices, and collaborating with security stakeholders to implement security strategies.
  • 3+ years of experience in any combination of threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration, or penetration testing.

Technologies

  • Java
  • Python
  • JavaScript
  • Perl
  • Bash
  • Ruby
  • PowerShell
  • AWS

Benefits

  • Health insurance
  • Basic Life and AD&D insurance
  • Supplemental life plans
  • Employee Assistance Program (EAP)
  • Mental health support
  • Medical advice line
  • Flexible spending accounts
  • Adoption and surrogacy reimbursement
  • 401(k) matching
  • Paid time off
  • Parental leave
  • Sign-on payments
  • Restricted stock units

About the Team

Amazon Security values diverse experiences and encourages applicants even if not all qualifications are met. If your career is just starting, has not followed a traditional path, or includes alternative experiences, your application is welcome.

Why Amazon Security

Security is central to maintaining customer trust and delivering reliable experiences. The Security organization sets a high standard across Amazon’s products and services and offers opportunities to broaden expertise across areas such as cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Work/Life Balance

The culture supports work-life harmony with flexible hours and arrangements. When employees feel supported at work and at home, they can achieve more.

Inclusive Team Culture

Learning and curiosity are valued in Amazon Security. Ongoing DEI events and learning opportunities encourage diverse ideas, perspectives, and voices to tackle security challenges.

Mentorship and Career Growth

Continuous performance improvement and access to knowledge-sharing, training, and career-advancing resources help professionals grow into well-rounded experts.

#JOINSTORESAPPSEC

#JOINSTORESAPPSEC

Similar Jobs