- Company Name
- Amazon Web Services (AWS)
- Job Title
- Senior Security Engineer, AWS Security
- Job Description
-
**Job Title**
Senior Security Engineer, AWS Security
**Role Summary**
Design, build, and operate services that detect, analyze, and automate mitigation of cybersecurity threats across the AWS global infrastructure. Collaborate with data scientists, software engineers, and other security teams to create proactive protection mechanisms for customers and internal systems. Provide technical leadership, mentor junior engineers, and influence security strategy at senior stakeholder levels.
**Expectations**
- Lead complex security investigations, penetration testing, and incident response for large‑scale environments.
- Own end‑to‑end solution development, from architecture to deployment and monitoring.
- Exhibit strong technical direction in security engineering and deliver secure, scalable code.
- Coach and develop junior staff, fostering a culture of knowledge sharing and continuous improvement.
**Key Responsibilities**
- Develop and maintain threat detection, analytics, and automation services for AWS operations.
- Integrate big‑data analytics and orchestration tools to address large‑scale security challenges.
- Conduct security investigations, penetration tests, and incident response across distributed systems.
- Design secure architecture for new and existing services, ensuring compliance with AWS security policies.
- Perform security code reviews and enforce secure coding practices.
- Mentor junior engineers; lead technical component reviews and knowledge‑sharing sessions.
- Collaborate with product, data science, and operations teams to embed security into the CI/CD pipeline.
- Represent AWS security to external stakeholders such as CISOs, CTOs, and senior leadership.
**Required Skills**
- Extensive experience in security investigations, penetration testing, and incident response.
- Deep understanding of cyber threats, defenses, and mitigation techniques.
- Proficiency in at least one modern programming language (Java, Go, TypeScript, Python, Rust).
- Hands‑on experience with big‑data analytics platforms, orchestration frameworks, and distributed systems.
- Knowledge of the MITRE ATT&CK framework and host/network telemetry (process lists, logs, NetFlow).
- Demonstrated technical leadership: designing security architecture, leading projects, and mentoring peers.
- Strong coding, testing, and security review skills; familiarity with secure software development lifecycle.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related STEM field.
- Relevant certifications such as CISSP, Security+, or equivalent are preferred but not mandatory.