Security Engineering Manager (Pentest), Amazon Stores Security
Core
Leading a distributed team of penetration testers to assess Amazon's services, applications, and websites, focusing on compliance-driven testing to ensure adherence to regulatory frameworks and industry security standards.
Role type
Senior IC security engineering manager (penetration testing)
Builds
Compliance-driven penetration testing engagements, automation and tooling to scale security impact, and strategic security solutions across Amazon's portfolio.
Domain
Information Security / Cybersecurity / Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Security management, penetration testing methodologies, application vulnerability assessment, regulatory framework knowledge, stakeholder influence, team leadership, automation development, process improvement
Preferred skills
Risk identification and mitigation planning, network/system/web application attack knowledge, large-scale automation initiatives, metrics gathering and reporting, cloud service provider expertise (AWS), system security design approaches
Technologies
AWS, penetration testing tools
Responsibilities
Lead and develop a high-performing technical Penetration Testing Team distributed across multiple locations; Lead the strategic direction and evolution of the Compliance Penetration Testing function; Plan and execute compliance-driven penetration testing engagements; Drive the development of automation and tooling to scale penetration testing; Drive strategic initiatives by influencing leadership and partnering with teams; Lead improvements to internal program and process; Write and deliver high-quality documents for technical and non-technical audiences
Seniority
Senior, hands-on IC with management responsibilities