Security Engineer, Internal Audit
Listed on 2026-06-08
-
IT/Tech
Cybersecurity, Systems Engineer
Job : | Services LLC
We are seeking a Security Engineer II to join our mission of protecting customer data and keeping Amazon secure. In this role you will work to secure multiple Amazon businesses across Devices, Media & Entertainment, Advertising, Alexa, and Corporate spaces. You will partner with world‑class engineering teams to uncover vulnerabilities, design novel abuse scenarios, and assess large‑scale security solutions across Amazon’s products, services, and infrastructure.
Key Responsibilities- Lead independent security audits of Amazon systems, services, and infrastructure to assess whether security controls are effective.
- Identify security risks through penetration testing, design reviews, threat modeling, and code analysis.
- Investigate security control failures – determine why preventive or corrective controls didn’t work, and drive root‐cause resolution across team boundaries.
- Assess security controls around Amazon’s adoption of AI/ML technologies – including model access, training data protection, output integrity, and integration into development workflows – to ensure secure customer experiences.
- Build reusable security frameworks, runbooks, and rubrics that enable the team to assess new problem domains repeatably and at scale.
- Communicate security risk findings and recommendations clearly to technical teams and senior leadership.
- 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object‑oriented language.
- 2+ years of scripting, programming, and security code review in a common programming language (non‑internship).
- 2+ years of troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non‑internship).
- Bachelor’s degree in a STEM field (Science, Technology, Engineering, Mathematics), or 2+ years of IT Security experience.
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP.
- Knowledge of industry‑based security vulnerabilities and remediation techniques.
- 2+ years of experience in threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration, and network security.
- Knowledge of command line tools to troubleshoot protocols, analyze log outputs, or automate basic tasks.
- Experience with AWS products and services.
- Experience performing security activities across one or more phases of the software development lifecycle (SDLC), such as security design review, threat modeling, secure code review, and security testing.
Locations and salary ranges:
- USA, MA – Virtual – – USD annually
- USA, OR – Virtual – – USD annually
- USA, WA – Virtual – – USD annually
Benefits include sign‑on payments, restricted stock units (RSUs), comprehensive health insurance (medical, dental, vision, prescription), basic life & AD&D insurance, EAP, mental health support, medical advice line, flexible spending accounts, adoption and surrogacy reimbursement, 401(k) matching, paid time off, and parental leave. Learn more at (Use the "Apply for this Job" box below)./benefits
.
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).