Security Engineer, AmSec
Amazon
Security EngineerAmazon Security is seeking a Security Engineer who thrives in ambiguity and is motivated to build scalable security solutions. The Secure Third Party Tools (S3T) team has bold ambitions to redefine how Amazon protects customer trust across all third-party interactions shifting from reactive assessments to proactive, automated protection at global scale. Security Engineers are integral to this mission, combining deep technical review expertise with a builder's mindset to influence the AI-powered tooling that scales our impact. They must demonstrate excellent written and verbal communication skills, strong ownership on review engagements, integrating GenAI to improve operationally efficiency, and solid understanding of vendor security risk and effective controls.
Key job
responsibilities: Perform technical deep-dive security reviews of third-party services across diverse and ambiguous use cases, including AI/ML integrations, cloud architectures, and services handling sensitive customer data
Identify and trace data flows through complex systems, evaluating where security controls are lacking or require supplementation
Evaluate vendor penetration test reports, assessing finding applicability and severity within the context of each engagement
Threat model third-party use cases to rapidly surface sharp edges and drive risk-proportionate decisions
Influence and contribute to AI-powered security tooling that automates and scales review decisions across the organization
Clearly communicate identified risks and recommendations to service teams and leadership, driving resolution through escalation when needed
Author and improve security baselines, decision rubrics, and implementation patterns for novel third-party use cases
A day in the life:
Security Engineers work backwards from customer risk to identify what matters most in a third-party engagement there is no checklist. You'll apply threat modeling, architecture analysis, and enterprise security control knowledge to bottom out on key risks quickly, then translate findings into clear, actionable guidance. When barriers arise, you focus on solutions: scripting, leveraging AI tools, and codifying decisions in S3T tooling so the next review is faster and more accurate.
About the
team: Security is central to maintaining customer trust and delivering delightful customer experiences. Our vision is that Builders raise the Amazon security bar when they use our recommended tools and processes, with no overhead to their business. S3T scales through software, not people using high-judgment engineers to codify security decisions into automation that protects Amazon customers worldwide.
Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply.
Why Amazon Security? At Amazon, security is central to maintaining customer trust.
We offer talented security professionals the chance to accelerate their careers with opportunities to build experience across cloud, AI/ML, retail, and more.
Inclusive Team Culture In Amazon Security, it's in our nature to learn and be curious. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Work/Life Balance We value work-life harmony. Flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.
Amazon pays $64 for Cybersecurity Analyst in Arlington, Virginia, with most salaries ranging from $47 to $89. Pay can vary based on role, experience, and local cost of living.
Companies Similar to Amazon for Jobs
Share This Job
Figures represent approximate ranges and may vary based on experience, location, and other factors. For the most accurate information, please consult the employer directly. Contact us to suggest updates to this information.





