The Amazon Web Services team is looking for a focused Senior Security Incident Response Engineer who can take on a leadership role in responding to security issues across the largest cloud provider in the world. The right candidate must thrive in high-pressure situations, think like both an attacker and defender, and drive engineering teams to take the right actions in the right time frames to mitigate risks.
We are looking for an individual who can balance technical risks against business risks and consistently drive for the right results. They must have the passion for engineering solutions to complex security challenges, and recognize and fill gaps in capabilities. The ability to quickly design and build internal-facing tools that enable scaled programmatic automation is core to our organization.
The successful candidate will have a good mix of deep technical knowledge and a demonstrated background in information security. We value broad and deep technical knowledge, specifically in the fields of cryptography, network security, software security, malware analysis, forensics, security operations, incident response, and emergent security intelligence.
· BS degree in Computer Science, Computer Engineering, Electrical Engineering, or 3+ years’ equivalent technology experience.
· 5 years or more of demonstrated experience with a focus in areas such as systems, network, and/or application security.
· Previous experience on a Security Operations team, especially experience coordinating responses to security incidents.
· Scripting/coding experience with one or more languages.
An ideal candidate should be able to accomplish most of the following:
· Confidently and intelligently respond to security incidents, and programmatically prevent the same type of incidents from occurring in the future.
· Design and coordinate cohesive responses to security events that involve multiple teams across the organization.
· Build security utilities and tools for internal use that enable you and your fellow Security Engineers to operate at high speed and wide scale.
· Evaluate the impact to the organization of current security trends, advisories, publications, and academic research. Coordinate responses as necessary across affected teams to do the right thing for our customers and our organization.
· Ability to communicate effectively at multiple levels of sensitivity, and multiple audiences.
· Recognize, adopt and instill the best practices in security engineering fields throughout the organization: development, cryptography, network security, security operations, incident response, security intelligence.
· Have a passion to learn and thrive in a dynamic and constantly changing environment.
· Help identify, take ownership of, and drive improvements across the team.
· Fulfill regular on-call responsibilities.
· 7+ years’ equivalent information security experience.
· Extensive knowledge of Internet security issues, cloud architectures, and threat landscape.
· Experience with virtualization technologies, especially with AWS services.
· Relevant industry certifications from SANS, ISC2, etc.
· Maturity, judgment, negotiation/influence skills, analytical skills, and leadership skills.
· Strong demonstrated knowledge of web protocols, common attacks, and an in-depth knowledge of Linux/Unix tools and architecture.
· Ability to prioritize multiple tasks and projects in a dynamic environment.
· Effective written and oral communication with multiple levels of leadership involving both business and technical sides of the business.
· Programming experience in Python, Ruby, Java, or Go.