Security Engineer, AWS Proactive Security
Core
Pre-launch Security Engineer evaluating AWS services and features to maintain a high security bar by reviewing proposed security fixes and determining efficacy before final release.
Role type
Senior IC security engineer (pre-launch verification)
Builds
AWS services and features
Domain
Cloud security / Penetration testing
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
web protocols, common security attacks, remediation techniques, system security vulnerabilities, penetration testing, exploit development, scripting (Python, Perl, Bash, PowerShell), static code analysis, dynamic reproduction
Preferred skills
AWS services, coding/scripting (C, C++, Java, Ruby), security assessment tools (BurpSuite, Metasploit, IDA Pro)
Technologies
Python, Perl, Bash, PowerShell, BurpSuite, Metasploit, IDA Pro
Responsibilities
Automate verification and remediation of security issues; Manually audit source code of web services; Write proof of concept code to demonstrate security issue severity; Provide clear communication on issues to developers; Partner with AWS developers to drive application security improvement; Provide actionable long term risk mitigation guidance
Seniority
Senior, hands-on IC