Security Engineer, AWS Security Incident Response
Core
Respond to unauthorized activity, triage security alerts, and lead incident response for AWS customer environments.
Role type
Security Engineer (Incident Response)
Builds
Security automation and posture improvements for AWS customers
Domain
Cloud Security / Cyber Threat Intelligence
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
threat identification, risk evaluation, security automation development, policy creation, network/system monitoring, alert triage, technical documentation
Preferred skills
AWS services experience, front-line security analysis, escalation management
Technologies
Amazon GuardDuty, CrowdStrike Falcon, Wiz Defend, Python, C, C++, Java, Ruby, PowerShell
Responsibilities
Respond to threat findings indicating unauthorized activity; Identify, evaluate, and communicate security threats, risks, and vulnerabilities; Track and report on the effectiveness of detective controls; Develop processes and policies to increase security response effectiveness; Perform triage for security alerts and document suspicious activity; Provide on-call support for periodic incidents including weekends