- 
        Sr. Security Engineer, Vulnerability Management…
- Amazon (Austin, TX)
- 
             Description Amazon develops products and services that transform the way customers live. Across teams and geographies, we strive to delight customers and earn their trust. Members of the Stores Security team are guardians of that trust. From drones to grocery stores and everything in between, our mission is to assess risk, classify data and systems, detect potential intrusion, and respond quickly to security events across Amazon’s critical business functions, including Retail, Customer Service, Worldwide Operations, Consumer Payments, Physical Stores, and Healthcare. Within Stores Security, the Vulnerability Management and Remediation Operations (VMR Operations) organization is responsible for all aspects of the Vulnerability Management lifecycle across Amazon including intake, assessment, discovery, and remediation. The VMR Operations organization is looking for a Senior Security Engineer with deep technical expertise in security operations and vulnerability management to join us in building and maturing our VMR Operations programs. In this role, you will be responsible for defining and holding the security bar for VMR’s Campaign Management Program, which enables builders and drives remediation actions across Amazon. You will leverage relationships with engineers across Stores Security, business teams, and leaders throughout Amazon to ensure security, compliance, and privacy risks are correctly assessed and mitigations properly designed. You will build trust with senior engineers and leaders by leveraging your technical expertise to understand technical challenges, design improved solutions, and hold a high program bar. Finally, you will use your information security expertise to champion and drive risk-based decisions across complex, multi-disciplinary programs to ensure Amazon properly manages security risk. Key job responsibilities You will be responsible for defining and enforcing the quality bar for all security, privacy, and compliance campaigns launched across Amazon. You will leverage relationships with engineers and managers across Stores Security to intake, prioritize, and launch security campaigns. You will build trust with Amazon builders by ensuring all campaigns we launch are of the highest quality bar, including clear descriptions of the security risk, steps for remediation, and insight to prevent future issues. You will partner with your peers to continuously improve the Campaign Management Program, with an emphasis on constant improvement through small, iterative changes to our processes and tooling. About the team Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying. Why Amazon Security At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. Inclusive Team Culture In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices. Mentorship and Career growth We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional. \#joindefsec Basic Qualifications - Bachelor's Degree in Computer Science, Computer Engineering, Software Engineering, Cybersecurity, or related technical degree; or 4+ years equivalent technology experience. - 7 years engineering experience in system, network, and/or application security or the development of security products. - 5 years experience improving accuracy of vulnerability detection mechanisms across a diverse technical ecosystem. - 5 years experience and deep knowledge of vulnerabilities, exploits and vulnerability management systems. Experience building applications or systems on cloud-based services. Preferred Qualifications - Understanding of networking, operating system internals, and system design. - Experience across the vulnerability management and remediation lifecycle from assessment through remediation. - Experience with developing exploits, host-based, and container-based detections. - Experience with AWS services. Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner. Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $143,300/year in our lowest geographic market up to $247,600/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits . This position will remain posted until filled. Applicants should apply via our internal or external career site. 
 
 
- 
        
Recent Jobs
- 
                
                    Sr. Security Engineer, Vulnerability Management and Remediation Operations
                
                - Amazon (Austin, TX)
- 
                
                    Lead Data Scientist Statistician - AV Safety Data Analysis (Gpssc)
                
                - General Motors (Denver, CO)