All jobs

Senior Security Engineer, AWS Human Access Security

Amazon.com Services LLC3h ago
United StatesHybridFull-timeSenior Level5+ yrs exp
H-1B verified · 2310 LCAs

Top focus

Security EngineerAws EngineerCloud Security EngineerIdentity Engineer
  • AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds — tooling that engineers across AWS depend on to request, scope
  • audit their access. You define what constitutes the highest-risk operator access, quantify it with data
  • partner with teams across AWS to move that access to lower-risk patterns or remove it. Key job responsibilities - Define what counts as high-risk human access to production systems and the data they hold. You identify the access patterns (standing credentials, broad emergency access, unscoped remote sessions, unreviewed privilege elevation) that carry the greatest risk
  • you rank them with data rather than opinion. - Drive design decisions that lower access risk by default: scoped and time-bound credentials, reviewed privilege elevation
  • auditable emergency access, so systems stay secure without depending on operator discipline. - Partner with engineering teams across the organization to reduce risky access. You turn your risk model into concrete remediation, negotiate adoption
  • measure the reduction over time. - Build the measurement and detection capabilities that show where risky access exists and whether it is trending down
  • use that data to prioritize the work. - Investigate security issues involving human access and turn each one into a durable improvement in the tooling or the risk model, not a one-off fix. - Mentor software and security engineers, raise the bar through design and code review
  • represent your team's security posture to leadership and partner teams. A day in the life Most days come down to one question: who can reach critical production systems
  • how do we make that access safer? You dig into the data, find the access patterns that carry the most risk
  • decide what to tackle first. Then the part that matters most: you take each finding to the software engineers you work with and build the fix into the tooling, so the identification becomes automatic instead of something you teams have to discover. You'll also win over teams across the company to build tools and mechanisms to remove the risk completeley. Find the problem, then automate it away. About the team AWS Human Access Security (AHAS) is a security and engineering team with one mission: make it safe for people to operate the systems that run AWS. Every engineer who touches production is our customer
  • we build the tools they use to understand their access and reduce their risk. We pair security engineers with software engineers so good security is built into the product, not bolted on afterward. We care about measurable impact, clear thinking
  • shipping fixes that stick. If you want your work to lower real risk across a huge fleet, join us. Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path
  • includes alternative experiences, don’t let it stop you from applying. Why Amazon Security? At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations
  • physical stores Inclusive Team Culture In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives
  • voices. Training & Career Growth We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training
  • other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home
  • is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
  • 5+ years of non-internship background in troubleshooting systems issues, analyzing logs
  • automating complex tasks using command line tools experience - 5+ years of work in identifying security issues and risks
  • developing mitigation plans experience - 5+ years of (non-internship) scripting, programming
  • security code review in common programming languages experience - Knowledge of at least two of the following programming languages: Scala, Java, Python, C/C++
  • Go - Experience (non-internship) in scripting, programming
  • security code reviewing in a common programming language - Experience as a mentor, tech lead or leading an engineering team
  • Experience applying threat modeling or other risk identification techniques or equivalent - Experience with security in service-oriented architectures/microservices and web services Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability
  • other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications
  • location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off
  • parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits . USA, VA, Arlington - 178,400.00 - 226,700.00 USD annually

Required skills

AWSPythonJavaScalaC/C++Gosecurityscriptingprogrammingrisk identificationthreat modeling
Posted on JobRush — the end-to-end AI job-search platform.