Security Engineer II, LOAF - Lifecycle of A Finding
Core
Design and build scalable security detection systems and neural network-powered tools to prevent security escapes across Amazon's diverse technology stack.
Role type
Security Engineer II (Application Security & ML)
Builds
LOAF platform (neural network-powered detection), shift-left tooling, APIs for escape data
Domain
Cloud security, AI security, application security
Deliverable
production ML models | infrastructure
Required skills
Python/Go/Java/C++ programming, security code review, log analysis, networking protocols (HTTP/DNS/TCP/IP), application security frameworks, identity and access controls, incident response, cloud computing security, AI security, threat intelligence, penetration testing, cryptography, operations security
Preferred skills
threat modeling, secure coding, identity management, software development, system administration, AWS products and services
Technologies
Python, Ruby, Go, Swift, Java, .Net, C++, AWS, neural networks
Responsibilities
Design and build scalable systems to detect, classify, and prevent security escapes; Develop and extend LOAF's neural network-powered detection capabilities; Architect shift-left tooling integrating into developer workflows; Own critical components of LOAF's platform end-to-end; Partner with security teams to translate escape patterns into automated mechanisms; Build APIs and integrations for engineering teams; Define and instrument metrics to measure reduction in escape volume; Investigate novel vulnerability patterns and prototype detection approaches
Seniority
Mid-level IC (3+ years programming, 2+ years security)