Jobs and Careers
AM

Manager, Product Security, Payments, Payments Security

Amazon.com
United Statesfull_timeVerifiedPosted 30 Aug 2023
💰 $272,400/yr($140,100/yr$272,400/yr)

About the role

Come build the future with us! In Payments Security, we protect foundational systems and products that allow Amazon to accept payments for all goods, content and services that people buy at Amazon and around the world. We are looking for a high caliber, innovative Security Engineering Manager to lead Security for some of our most Critical Payments businesses and foundational technology solutions. In addition, this leader will set the vision for operational security capabilities across our production services (including our external researcher engagement efforts).

Payments Security owns full-stack Product Security for Payments across Amazon and its business units, deeply supporting the Global Payments businesses. We are part of Amazon's broader Stores Security organization responsible for protecting Amazon’s global information assets. We partner across global Payments business units to innovate in full-stack security (data, application, network, containers, infrastructure), ensuring our Payments applications and infrastructure are secure-by-design from concept to launch and into continuous operations. We are a strategic security partner to our Payments businesses ensuring we uphold the highest security bar for our production and pre-production systems, balancing short-term mitigations with long-term secure-by-design architectural solutions, making Security simpler and differentiated.

We provide security “In the Cloud” and enable scalable mechanisms for software developers and systems to meet Amazon’s security and privacy requirements. We are both a customer and a partner to AWS in raising security awareness, providing scalable tools, and protecting shared infrastructure.

Key job responsibilities
• Partner with engineering leaders across Amazon Payments teams to drive secure-by-design and ensure services are secure at launch.
• Establish credibility as a trusted security advisor to stakeholders, including engineering leaders, peers, and employees.
• Partner with key stakeholders to drive implementation of security-related technical and process controls to remediate risks identified during engagement.
• Fostering, coaching, recruiting and scaling a team of world class security engineers; providing strategic and tactical oversight to the team and the program.
• Build organizational capability within teams by recruiting and retaining outstanding talent and providing mentoring, training (internal and external), and other opportunities for professional growth and development.

A day in the life
A day in the life
This position within the Stores Security organization represents a unique opportunity to lead Product Security for some of the most complex foundational businesses and technology solutions across our global Payments portfolio. You will help shape the technology, product and the business in terms of Information Security. A successful candidate will bring deep technical security and software expertise, strong business acumen and judgment. You will use your ability to define visionary, ground breaking products, hire and lead teams, and demonstrate an ability to work within a fast-moving environment to rapidly deliver services that have broad business impact.

The ideal candidate has strong technical knowledge in secure software development, experience through multiple consumer product launches, judgment on security risks and ability to hold a high security standard.

We are open to hiring candidates to work out of one of the following locations:

Seattle, WA, USA

Basic Qualifications


- 5+ years of experience leading, managing & developing high performance teams
- 3+ years of progressive experience within a software security team or similar operating environment with in-depth understanding of application security assessment methodologies such threat modeling, secure design reviews, secure code review, and penetration testing
- BA/BS in computer science, information security, related discipline, or equivalent work experience

Preferred Qualifications

- Hands-on knowledge of information security technologies such as security design review, threat modeling, secure code review, risk analysis, and penetration testing
- Experience with multiple programming languages (such as, Java, Python, Perl, Scala, etc.)
- Experience with vulnerability risk and impact assessment
- Experience in driving large, cross-organization initiatives
- Ability to make concrete progress in the face of ambiguity and imperfect knowledge (avoid “analysis paralysis”)
- Strong information security risk-based prioritization abilities
- Information security professional certifications encouraged (SANS GIAC, CISSP etc.)
- Excellent written communication skills, with a focus on translating technically complex issues into simple, easy to understand concepts
- Excellent attention to

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Amazon.com

View company profile →