Skip to main content

Security Engineer

Job ID: 1737248 | Amazon Web Services, Inc.


The Amazon Web Services team is looking for a passionate Security Incident Response Engineer who has a specialization in malware analysis and reverse engineering, and who can lead the response to security issues across the largest cloud provider in the world. You must thrive in high-pressure situations, and think like both an attacker and defender, while working through the entire incident response lifecycle. You’ll be working in a global team environment where clear and accurate communication and collaboration on security issues is critical.

In this role you’ll be conducting security monitoring and response activities for the Amazon internal network, focusing on malware analysis and reverse engineering. We value broad and deep technical knowledge, specifically in the fields of malware analysis, incident response, and emergent security intelligence, operating system security, network security, cryptography, software security, forensics, and security operations. We don’t expect you to be an expert in all of the domains mentioned above, but we do expect you to be excited to learn about them!

You’ll apply your creative and critical problem solving skills to quickly design and build tooling that enables programmatic automation at a massive scale. You must have a passion for engineering solutions to complex security challenges, and recognize and fill gaps in capabilities. Above all, you should be passionate about information security, the threat landscape and security automation and tooling.

About Us

Inclusive Team Culture
Here at AWS, we embrace our differences. We are committed to furthering our culture of inclusion. We have ten employee-led affinity groups, reaching 40,000 employees in over 190 chapters globally. We have innovative benefit offerings, and we host annual and ongoing learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences. Amazon’s culture of inclusion is reinforced within our 14 Leadership Principles, which remind team members to seek diverse perspectives, learn and be curious, and earn trust.

Work/Life Balance
Our team also puts a high value on work-life balance. Striking a healthy balance between your personal and professional life is crucial to your happiness and success here, which is why we aren’t focused on how many hours you spend at work or online. Instead, we’re happy to offer a flexible schedule so you can have a more productive and well-balanced life—both in and outside of work.

Mentorship & Career Growth

Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we’re building an environment that celebrates knowledge sharing and mentorship. We care about your career growth and strive to assign projects based on what will help each team member develop into a better-rounded engineer and enable them to take on more complex tasks in the future.

AWS SecOps (Corporate Security Response mission)

The Security Engineer role in AWS SecOps has two key aspects: on-call operational excellence and capability development.

Security Engineers in AWS SecOps may be assigned and contribute to one or more of the AWS SecOps team's workloads which include: the main AWS SecOps (AWS Cloud), AWS Corp Security Response, and Complex Security Events (i.e. priority Incident Response).

Within AWS Corp Security Response, Security Engineers take a technically-applied role in assessing and responding to security issues affecting our corporate infrastructure. The prominent two aspects of this mission are malware response and phishing response throughout the CORP and PROD fabrics for the scope of both Amazon CDO and AWS orgs.

Within AWS Corporate Security role, Security Engineers engage closely with internal partners maintaining corporate infrastructure or tools. They assess the relative importance of new or ongoing issues, document context around them, drive mitigations and ensure appropriate pace of response. They engage stakeholders such as Legal counsel, AWS Security and Service Team Leadership.


· BS degree in Computer Science, Computer Engineering, Electrical Engineering or equivalent related field.
· 3+ years of experience with malware analysis / reverse engineering
· 3+ years experience on a Security team, especially responding to security incidents.
· 1+ year proficiency with one high-level programming or scripting language.


· 5+ years experience working in security response, security automation tooling, or threat intelligence.
· Experience with Digital Forensics, SOAR, SIEM platforms
· Experience with detection engineering / authoring and using associated tools
· Advanced understanding of Windows, Linux, and or OS X internals
· Experience with Amazon Web Services.

•Meets/exceeds Amazon’s leadership principles requirements for this role

• Meets/exceeds Amazon’s functional/technical depth and complexity for this role
Amazon is committed to a diverse and inclusive workforce. Amazon is an equal opportunity employer and does not discriminate on the basis of race, ethnicity, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit