Jobs and Careers
AM

Senior Security Engineer, Corporate Services Security, Corporate Services Security

Amazon.com
Irelandfull_timeVerifiedPosted 15 Jan 2025

About the role

Corporate Services Security (CPSS) is the Amazon security team aligned with Finance &amp; Global Business Services (FGBS), People eXperience &amp; Technology (PXT), Legal and Global Communications and Community Impact (GCCI) business units.<br/>Our Mission is to protect and safeguard Amazon's corporate services, systems, and data. Through proactive engagement with the development teams, we understand the dynamic business processes that run Amazon, and enable our stakeholders to innovate, build, and scale securely. The Product Security Team within CPSS supports a large number of applications built using AWS Services. Apart from work, we provide opportunities for our engineers to pursue projects they are passionate about while maintaining work life harmony.<br/><br/>Key job responsibilities<br/>- Creating, updating, and maintaining threat models for a wide variety of web applications hosted on cloud<br/>- Manual and Automated Secure Code Review, primarily in Java, Python and Javascript<br/>- Development of security automation tools<br/>- Adversarial security analysis using the latest tools to augment manual effort<br/>- Provide Security training and outreach for internal development teams<br/>- Provide Security architecture and design guidance to application development teams<br/>- Independently solve systemic, complex security problems that require novel methods or approaches<br/>- Influence your team’s and partners’ process, priorities, strategy and choices by using data to improve security outcomes<br/>- Provide technical and strategic guidance to senior leaders and stakeholders through effective oral and written communications<br/><br/>A day in the life<br/>As a Senior Security Engineer, you will collaborate with software development teams to ensure we keep our customers safe while developing novel services. In a given day, you might be inspecting an application’s code for security issues, building a new framework to help our software developers build faster and more securely, or fine-tuning the design for a new service.<br/>The ideal candidate combines technical acumen with an ability to lead by influence and communicate clearly. Technically, this person will be a security specialist with one or more areas of deep expertise within application security. They will clearly articulate risks to technical and non-technical audiences alike. Successful candidates will effectively harmonize disparate opinions while effectively prioritizing risks to guide their partners towards secure solutions. They will shape the strategy of the Product Security Team and influence systemic security improvements across our service organizations. They will guide and mentor other engineers on the team.<br/><br/>About the team<br/>Diverse Experiences<br/><br/>Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.<br/><br/>Why Amazon Security?<br/><br/>At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.<br/><br/>Inclusive Team Culture<br/><br/>In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.<br/><br/>Training &amp; Career Growth<br/><br/>We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.<br/><br/>Work/Life Balance<br/><br/>We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.<h3>Basic Qualifications</h3><br/>- Minimum of 8 years of web application security industry experience with at least four of the following: threat modeling experience, secure coding, identity management and authentication, Web Application Security, cryptography, penetration testing, cloud security, mobile security, and network security<br/>- Intimate knowledge and understanding of security engineering, web application security, system

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Amazon.com

View company profile →