Based onsite in Seattle, WA, the Application Security Engineer analyzes application security, conducts architecture reviews and threat modeling, performs security testing, and develops security automation while mentoring others within AWS Security. The role offers a yearly salary range of USD 136,000 to 184,000.
Responsibilities
- Conduct application security reviews, including architecture assessments, threat modeling, code reviews, and security testing.
- Undertake project and research work as needed.
- Provide security training and outreach to internal development teams.
- Develop and maintain security guidance documentation.
- Automate security workflows to improve efficiency.
- Deliver security metrics and drive process improvements.
- Support recruiting activities as needed.
Requirements
- Bachelor's degree in computer science or equivalent.
- Experience in application security frameworks.
- Experience in security code reviews.
- Experience in incident response.
- Experience in secure infrastructure.
- Experience in penetration testing.
- Experience in mobile security.
- Experience in cloud security.
- Experience in AI security.
- Experience in identity and access controls.
- Experience in threat modeling.
- Experience in cryptography.
- Experience in threat intelligence.
- Experience in secure software development.
- Experience in networking fundamentals.
- Experience in security.
- Experience in relational and/or NoSQL databases.
- Experience in operating systems (Unix, Linux, and/or Windows).
- Strong analytical skills and attention to detail.
- Effective communication abilities.
- 2+ years experience in web application development.
- 2+ years experience in penetration testing.
- 2+ years experience in mobile security.
- 2+ years experience in cryptography.
- 2+ years experience in public key infrastructure.
- 2+ years experience in forensic security.
- 2+ years experience in IP security.
- 2+ years experience in SSL/TLS.
- 2+ years experience in computer viruses and malware.
- 2+ years experience in network security.
- 2+ years experience in trusted security.
- 2+ years experience in trusted execution.
- 2+ years experience in threat intelligence.
- 2+ years experience in IoT security implications.
- 2+ years experience in authentication.
Benefits
- Health insurance including medical, dental, vision, prescription; Basic Life and AD&D insurance and option for Supplemental life plans; EAP; mental health support; Medical Advice Line; Flexible Spending Accounts; Adoption and Surrogacy Reimbursement coverage.
- 401(k) matching.
- Paid time off.
- Parental leave.
- Sign-on payments and restricted stock units (RSUs).
About the Team
Diverse experiences are valued in Amazon Security. We encourage candidates to apply even if you do not meet every qualification. If your career is just starting, has not followed a traditional path, or includes alternative experiences, you should not let that stop you from applying.
Why Amazon Security
Security is central to maintaining customer trust and delivering reliable experiences. The team is responsible for creating and maintaining a high bar for security across all Amazon products and services, offering opportunities to build experience across cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, learning and curiosity are core traits. Ongoing DEI events and learning experiences inspire continuous development and the celebration of diverse ideas, perspectives, and voices to address tough security challenges.
Training & Career Growth
We maintain a strong focus on performance and development, providing knowledge sharing, training, and career-advancing resources to help you grow into a well-rounded security professional.
Work/Life Balance
Flexible work hours and arrangements support work-life harmony, ensuring success at work without compromising home life.