Application Security Engineer, AppSec ASSET
Core
Application Security Engineer responsible for security reviews, design, and testing of critical Amazon applications and systems.
Role type
Senior IC Application Security Engineer
Builds
Security solutions for networks, endpoints, servers, and applications across multiple business units
Domain
Cloud security, application security, network security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Python, Ruby, Go, Swift, Java, .Net, C++, scripting, security code review, troubleshooting systems issues, log analysis, automation, networking protocols (HTTP, DNS, TCP/IP), vulnerability remediation, cloud-hosted services integration
Preferred skills
threat modeling, secure coding, identity management, authentication, software development, cryptography, system administration, AWS products, SDLC security activities
Technologies
Python, Ruby, Go, Swift, Java, .Net, C++, HTTP, DNS, TCP/IP, AWS, command line tools
Responsibilities
Perform application security reviews of critical systems and services; Engineer security solutions to protect systems, networks and applications; Security design and testing of critical Amazon applications; Respond to security violations, vulnerabilities, and event detection systems; Provide security policy guidance and consultations; Evangelize security within Amazon; Participate in on-call rotation
Seniority
Senior, hands-on IC