Security Engineer, AWS Bug Bounty
Core
Triage incoming security reports for AWS's 200+ services, reproduce vulnerabilities, and drive remediation while building automation to scale the process.
Role type
Security Engineer (Bug Bounty Triage & Automation)
Builds
Automated ticketing, reporting, and trend identification tools for the AWS Bug Bounty program
Domain
Cloud Security / Bug Bounty Program
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Security vulnerability analysis, scripting/programming, AWS product knowledge, root cause analysis, automation development, stakeholder communication
Preferred skills
Threat modeling, secure coding, identity management, cryptography, system administration, network security
Technologies
AWS services, scripting languages, ticketing systems, reporting tools
Responsibilities
Research and reproduce security issues from bug bounty reports, manage relationships with external security researchers, perform deep analysis of new vulnerability classes, drive improvements to team tooling and automation, influence program direction, identify and resolve vulnerability trends
Seniority
Mid-level, hands-on IC