View All Jobs 140426

Security Engineer II, Vulnerability Management And Response - Strategic Enablement

Build automated workflows to detect and remediate vulnerabilities across Amazon infrastructure
Austin
Senior
yesterday
Amazon

Amazon

A global e-commerce giant offering a vast array of products, cloud services, and digital streaming content.

Security Engineer II

Amazon Security's Vulnerability Management and Response - Strategic Enablement team is looking for a Security Engineer II. This team is revolutionizing vulnerability management through advanced remediation automation, innovative vulnerability detection solutions, data-driven insights, and more. Be part of a dynamic group that bridges security operations and development, creating measurable impact across Amazon's vast ecosystem.

Key job responsibilities include:

  • Develop and optimize security automation workflows to operationalize new capabilities, including integration with existing security tools and platforms across Amazon's infrastructure.
  • Design, script, and implement quick proof-of-concepts for vulnerability detection, assessment, and remediation across host and container environments, enabling rapid validation of new solutions and approaches.
  • Collaborate with TPMs and SDE teams to translate program requirements into technical specifications, ensure seamless integration with existing systems, and conduct user acceptance testing for new security capabilities.
  • Build queries and analyze data to extract actionable insights on vulnerability management effectiveness, supporting data-driven decision making and informed program improvements.
  • Conduct security research and analysis on emergent vulnerabilities to identify emerging threats, new detection opportunities, and methods to enhance existing vulnerability detection capabilities.
  • Mentor junior engineers and contribute to the technical growth and knowledge sharing within the team.

A day in the life:

Start your morning reviewing last night’s vulnerability scan data and building SQL queries to analyze patterns across thousands of Amazon hosts. Collaborate with VMR Operations on technical specifications for a new container vulnerability detection pattern, then code Lambda scripts to integrate new capabilities with the workflow management platform. Mid-day brings a design review with SDE teams, ensuring custom detection logic scales seamlessly. Mentor a junior engineer on API integration techniques, then end the day testing your automation workflow and preparing actionable insights for tomorrow’s leadership review.

About the team:

The VMR Strategic Enablement team bridges security operations and development, transforming vulnerability data into measurable security outcomes. We embrace a "Think Fast, Learn Faster" culture where rapid prototyping validates new solutions and data drives every decision. Our diverse team of security engineers and TPMs collaborates across the full vulnerability lifecycle, building custom detection capabilities, operationalizing security programs, and creating metrics that demonstrate real impact across Amazon's infrastructure.

+ Show Original Job Post
























Security Engineer II, Vulnerability Management And Response - Strategic Enablement
Austin
Engineering
About Amazon
A global e-commerce giant offering a vast array of products, cloud services, and digital streaming content.