Security Engineer III, Vulnerability Management and ...
Amazon - Austin, TX
Apply NowJob Description
DescriptionAmazon Security's Vulnerability Management and Response - Strategic Enablement team is looking for a Security Engineer II. This team is revolutionizing vulnerability management through advanced remediation automation, innovative vulnerability detection solutions, data-driven insights, and more. Be the technical leader of a dynamic group that bridges security operations and development, creating measurable impact across Amazon's vast ecosystem. Key job responsibilities - Define the technical security strategy for vulnerability management automation and a homegrown vulnerability detection platform, ensuring scalable and sustainable integration of new security capabilities into Amazonu2019s infrastructure. - Lead the design and development of advanced security automation, workflows, and tooling; delegate implementation details to other engineers while ensuring technical excellence and alignment with team objectives. - Drive the creation of proof-of-concepts and production-ready solutions for vulnerability detection, assessment, and remediation across diverse environments, setting best practices for approach and execution. - Partner with TPMs, SDEs, and cross-organizational stakeholders to translate ambiguous program requirements into robust technical designs that scale across Amazon; identify integration risks early and provide clear mitigation paths. - Perform deep research and analysis on emerging vulnerabilities, novel exploitation techniques, and industry trends; anticipate threats and proactively evolve detection methods to address future challenges. - Act as a technical multiplier by mentoring, coaching, and developing other security engineers, growing their ability to independently solve complex problems while instilling strong mental models for approaching security issues. - Serve as the escalation point for complex or ambiguous issues, unblocking engineers by providing clarity, context, and principled technical direction that balances security, scale, and business needs. A day in the life Start your morning reviewing last night's vulnerability scan data and building SQL queries to analyze patterns across thousands of Amazon hosts. Collaborate with VMR Operations on technical specifications for a new container vulnerability detection pattern, then code Lambda scripts to integrate new capabilities with the workflow management platform. Mid-day brings a design review with SDE teams, ensuring custom detection logic scales seamlessly. Mentor a junior engineer on API integration techniques, then end the day testing your automation workflow and preparing actionable insights for tomorrow's leadership review. About the team The VMR Strategic Enablement team bridges security operations and development, transforming vulnerability data into measurable security outcomes. We embrace a
Created: 2025-11-15