Senior Security Engineer, Amazon

AppSec, Ads Security

$143.3-247.6k

AWS
Python
Java
Ruby
C++
Perl
Senior level
Boston
New York
Amazon

The largest online retailer and technology provider

Job no longer available

Amazon

The largest online retailer and technology provider

1001+ employees

B2CB2BMarketplaceCloud ComputingeCommerce

Job no longer available

$143.3-247.6k

AWS
Python
Java
Ruby
C++
Perl
Senior level
Boston
New York

1001+ employees

B2CB2BMarketplaceCloud ComputingeCommerce

Company mission

Amazon aims to be Earth’s most customer centric company. Their mission is to continually raise the bar of the customer experience by using the internet and technology to help consumers find, discover and buy anything, and empower businesses and content creators to maximise their success.

Role

Who you are

  • The ideal candidate will have a robust background in security program management, experience in establishing security standards for cross-cloud deployments, and a deep understanding of cloud security, particularly within AWS platforms
  • 5+ years of experience in application security, threat modeling, secure coding, software development, secure software or system design
  • 3+ years of experience in a development or security role working with development team(s) that delivered commercial software or software-based services
  • Advanced knowledge and understanding of any combination of the following: security engineering, system and network security, authentication and security protocols, cryptography, network and web related protocols, or application security
  • Experience with multiple programming languages (such as, Java, C++, Ruby, Python, Perl, etc.)

Desirable

  • Experience managing and delivering security solutions at scale
  • Knowledge of Advertisement domain
  • Experience with any combination of the following: AWS or similar enterprise cloud computing platforms, service-oriented architecture and web services security, DevOps (Software Build and Deployment Systems)
  • Experience with the application of threat modeling or other risk identification techniques
  • Demonstrated experience collaborating with other security engineers and developers to deliver complex projects
  • Excellent written and verbal communication skills with the ability to convey technical information to a wide variety of audiences

What the job involves

  • You will conduct independent security reviews, oversee penetration tests as necessary, and provide guidance to stakeholders on remediation strategies and best practices for integrating security into their application platforms
  • Your role will be pivotal in ensuring the protection of customer data and critical infrastructure within the Ads organization
  • As a Senior Security Engineer within Amazon’s Ads Security team, you will play a crucial role in ensuring that applications across numerous Ads platforms are designed and executed with the highest security standards to maintain customer trust
  • You will tackle a diverse array of security challenges, ranging from novel threats in Ads services to selecting and implementing scalable and secure features such as key management solutions and encrypted storage
  • Additionally, you will serve as a subject matter expert, providing guidance to developers on building secure products and fostering a security-conscious culture within the organization
  • Collaborate directly with service and platform owners to advise on security best practices and tool implementation
  • Perform comprehensive security assessments on SaaS implementations, data management systems, and reporting frameworks being used internally by Amazon Ads teams or externally by Amazon Ads customers
  • Coordinate and oversee penetration testing activities for platforms and tools
  • Identify security risks, report findings, and recommend solutions for complex security issues by leveraging existing set of detections and/or design new detections within Amazon’s various security detection frameworks
  • Contribute to fostering a strong security culture at Amazon through knowledge sharing and collaboration
  • Engage in cross-team projects aimed at enhancing the security posture of Amazon and customer data throughout its lifecycle
  • Identifying security issues and risks, review & approve mitigation plans for Ads products
  • Evaluating and recommending new and emerging security products and technologies
  • Influencing product teams and senior leadership to implement practices that maintain a high security bar
  • Participate in the design discussions and development of user stories for security automation
  • Advising teams developing products on the correct components that deliver security features like key management, authentication, encryption, etc
  • Proposing, collaborating & obtaining buy-in on strategic security initiatives
  • Recommending and developing security-focused tools that help product teams prevent security misconfigurations & vulnerabilities in the design & implementation of features. Look for opportunities to automate, detect and move security to left in SDLC process
  • Developing and interpreting security policies and procedures to form security requirements
  • Developing training that promotes general security awareness and informs developers on how to discover & mitigate security vulnerabilities in their products
  • Deciding which new security tooling and strategies should be pursued for scalable security in service development
  • Supporting incident response activities as a security subject matter expert

Our take

Amazon is the world's largest online retailer, and is well-known for its disruption of well-established industries. The company is present in numerous verticals, including cloud computing with Amazon Web Services, AI with its range of Alexa devices and a global marketplace more commonly referred to as 'the everything store'. Acquisitions include Ring, Twitch, Whole Foods Market, and IMDb.

More recently, Amazon has been focused on leading the "third wave in digital advertising". Many businesses are now shifting ad dollars to retailers, which before would have been spent with online media platforms. Amazon's seen great success in the space, with its revenue from advertising now higher than its Amazon Prime membership scheme, audiobooks and digital music combined. This growth is particularly impressive considering its digital ad rivals (like Snap, Alphabet, and Meta) have suffered declines due to wider macroeconomic factors and Apple's iOS privacy changes.

Despite its dominant market position, Amazon will continue to be challenged over the next decade, including sustaining AWS's cloud dominance in the face of Google and Microsoft. On top of this, the company's e-commerce division is facing profitability problems despite its 2023 post-IPO debt funding of 8 billion. It will need to find new ways to stay above their competitors.

Steph headshot

Steph

Company Specialist

Insights

Some candidates hear
back within 2 weeks

16% employee growth in 12 months

Company

Company benefits

  • Employees have opportunities to own Amazon stock, participate in 401(k) plans with company match, and enroll in paid life and accident insurance
  • Financial counseling and estate planning services are also available, plus paid short-term and long-term disability if needed
  • Medical, dental, and vision coverage to all our regular full-time employees, regardless of their level, tenure, or position
  • Amazon employees have free access to a network of more than 2 million caregivers, including nannies, babysitters and special-needs caretakers
  • Employees receive discounts on certain day care centers, and Amazon provides a variety of free resources for parents of children with autism, ADHD and developmental disabilities
  • Adoption assistance for qualified domestic and international adoption expenses including attorney fees, court costs, and travel
  • Leave Share program allows employees to give six weeks of paid parental leave to a spouse or partner who isn’t eligible for parental leave from their employer
  • Amazon Care's virtual services are available in all 50 states, and in-person care is active in Seattle, Washington, D.C., Arlington, Baltimore, Boston, Dallas, Austin, and Los Angeles, with 20+ more markets coming online in 2022 alone
  • 20 weeks of paid leave to birthing mothers and six weeks for parents who adopt

Company values

  • Customer obsession rather than competitor focus
  • Passion for invention
  • Commitment to operational excellence
  • Long-term thinking

Company HQ

South Lake Union, Seattle, WA

Founders

Jeff Bezos

(Executive Chairman)

Jeff is an American business magnate, media proprietor, and investor. As well as founding Amazon, Jeff founded Blue Origin, an aerospace manufacturer and sub-orbital spaceflight services company and also owns The Washington Post.

Andy Jassy

(President & CEO (not founder))

Joined Amazon as a Marketing Manager in 1997. Developed AWS with Jeff Bezos, and became CEO of Amazon in 2021.

Salary benchmarks

We don't have enough data yet to provide salary benchmarks for this role.

Submit your salary to help other candidates with crowdsourced salary estimates.

Share this job

View 371 more jobs at Amazon