Senior Software Security Engineer, AWS Identity, AWS Identity Security
Listed on 2026-05-07
-
IT/Tech
Cybersecurity, Security Manager, Systems Engineer, Network Security
Description
Come help us secure critical platform services in the AWS cloud and deliver world‑class defense for AWS customers!
Amazon Web Services (AWS) Identity and Governance service teams build and operate identity, authentication, and authorization stack for the AWS cloud, and build services that enable customers to manage access and governance across their AWS environments Identity and Governance services empower customers to confidently and securely execute their workflows with flexible controls which meet their individual security requirements.
As a Senior Security Engineer at Amazon, you will lead the design, development, and implementation of high priority security features that protect our global infrastructure, products, and customer data. This role combines deep security expertise with advanced software engineering capabilities to build scalable security systems and frameworks. We are seeking an experienced software engineer who brings both skills and passion for raising the security bar.
Keyjob responsibilities
- Lead design, development and implementation of complex security initiatives that impact organization‑wide security posture
- Build automated security testing frameworks
- Build prototypes and proofs of concept to demonstrate feasibility for new, innovative security technologies
- Implement security fixes in Java, Python or other relevant languages
- Provide technical mentorship to junior engineers and establish security engineering best practices
- Partner with software development teams to build security controls directly into the development lifecycle
- Lead security incident responses and drive root cause analysis for complex security events
- Influence product roadmaps by providing security expertise during planning phases
- Drive technical direction for security projects impacting multiple teams or organizations
- Author and maintain technical design documents for security systems and controls
- Review and approve security architecture proposals and technical implementation plans
- Lead security reviews for critical systems and applications
- Partner with Product, Operations, and Development teams to drive security improvements
- Represent security engineering in senior‑level technical discussions
- Mentor junior security engineers and develop team capabilities
- Drive security best practices across engineering organizations
The Identity Security team partners with AWS Identity, Governance, and Infrastructure as Code services to reduce risk in our services as they’re built and throughout their lifecycle. The team of security engineers collaborates directly with software engineers to prevent security issues from being introduced at the time of design and development. We proactively look for unknown threats in our services to identify and fix them before they can impact customers.
When security issues are detected, we support teams with their response to minimize the impact to customers, while determining what can be done to prevent the issue from happening again. In addition to diving deep with individual services, we also own security efforts that raise the security bar across a broad range of services, such as contingent authorization, auth correctness, and service credential management.
We instill a high security bar in our services, working alongside service teams to foster a culture of security and continuous learning.
- 4+ years of non‑internship background in troubleshooting systems issues, analyzing logs, or automating complex tasks using command line tools experience
- 5+ years of work in identifying security issues and risks, and developing mitigation plans experience
- 4+ years of (non‑internship) scripting, programming, and security code review in common programming languages experience
- Knowledge of at least two of the following programming languages:
Scala, Java, Python, C/C++, or Go - Experience (non‑internship) in scripting, programming, and security code reviewing in a common programming language
- Experience (non‑internship) in troubleshooting systems issues, analyzing logs, or automating complex tasks using command line tools
- Experience working in identifying…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).