Senior Security Engineer, IoT Threat Detection

2 weeks ago


Seattle, Washington, United States Amazon Full time

Come and build innovative services that protect our cloud from advanced security threats

As a Senior Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure, including advanced persistent threats. You'll work with data scientists, software development engineers, and other security engineers across multiple teams to develop innovative security solutions at a massive scale. Our services protect the AWS cloud for all customers and help preserve our customers' trust in us. You'll get to use the full power and breadth of AWS technologies to build services that proactively protect every single AWS customer, both internally and externally, from security threats – not many teams can say that

Key job responsibilities

  • Research, identify, and prioritize security problems that can be detected using automation

  • Develop detection prototypes for security problems to enhance detection capabilities

  • Design and develop threat models for IoT systems to identify attack paths and security gaps

  • Identify opportunities to prevent security issues at scale

  • Mentor and develop teammates both technically and professionally

  • Seek out, develop, and advocate for new technology to research, identify, and mitigate complex risks

About the team

Diverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.

Why Amazon Security?

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including the cloud.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexibility is part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.

Basic Qualifications

  • 5+ years of experience performing security investigations, detection engineering, threat hunting, and/or incident response in the context of large organizations

  • Understanding of Tactics, Techniques, and Procedures (TTPs) used by threat actors or groups

  • Knowledge of host and network telemetry data (e.g., process lists, application logs, NetFlow)

  • An understanding of network and web related protocols (such as, TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)

  • Ability to develop code with at least one modern language, such as Python

Preferred Qualifications

  • Experience creating threat detections in enterprise environments

  • Experience with analytic development for endpoint, network, and/or physical security

  • Experience designing and developing threat models for IoT systems to identify attack paths and security gaps

  • Experience with common cloud services (IAM, Lambda, EC2, VPC, S3, etc.)

  • Experience with data science, machine learning, big data analytics, and/or streaming technologies (e.g., Kafka, Spark Streaming, Kinesis)

Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $143,300/year in our lowest geographic market up to $247,600/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits . This position will remain posted until filled. Applicants should apply via our internal or external career site.



  • Seattle, Washington, United States Amazon Full time

    Come and build innovative services that protect our cloud from advanced security threatsAs a Security Engineer on our team, you'll help build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure, including advanced persistent threats. You'll work with data scientists, software development...


  • Seattle, Washington, United States Reddit Full time

    Reddit is a community of communities. It's built on shared interests, passion, and trust and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 82M+ daily active unique visitors, Reddit is one of the...


  • Seattle, Washington, United States Amazon Full time

    Are you passionate about protecting Amazon's customers from emerging cyber threats? Join our team to develop innovative detection capabilities that defend against sophisticated attacks at massive scale.Key job responsibilitiesAs a Security Engineer on the Threat Discovery and Detection (TD2) team within Customer Service Security, you'll be instrumental in...


  • Seattle, Washington, United States Amazon Full time

    Are you passionate about protecting Amazon's customers from emerging cyber threats? Join our team to develop innovative detection capabilities that defend against sophisticated attacks at massive scale.Key job responsibilitiesAs a Security Engineer on the Threat Discovery and Detection (TD2) team within Customer Service Security, you'll be instrumental in...


  • Seattle, Washington, United States UKG (Ultimate Kronos Group) Full time

    Achieving Excellence in CybersecurityAs a Threat Detection Specialist, you'll play a vital role in shaping UKG's cybersecurity strategy. Our Global Security Detection Engineering team is dedicated to protecting our customers' sensitive data and preventing sophisticated cyber threats. Your expertise will help us stay at the forefront of threat detection and...


  • Seattle, Washington, United States Reddit Full time

    **About the Role:**We are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our Security Intelligence Center team. As a key member of our team, you will be responsible for analyzing security threats, building detections, and responding to security events.The ideal candidate will have a strong coding background and experience in...


  • Seattle, Washington, United States Galvanick Full time

    Galvanick protects the industrial world against cyber attacks, ensuring the security and integrity of critical infrastructure. Our threat detection platform for factories safeguards the modern world against SCADA and ICS threats.About UsWe are a startup with a team of driven individuals committed to solving cybersecurity's big problems.5+ years experience in...


  • Seattle, Washington, United States Reddit Full time

    About UsReddit is a community-driven platform where users submit, vote, and comment on topics they care about. With over 100,000 active communities and approximately 82 million daily active unique visitors, Reddit is one of the internet's largest sources of information. Our SPACE team is dedicated to defending employees and computer assets to maintain trust...


  • Seattle, Washington, United States Gemini Full time

    About the CompanyGemini is a global crypto and Web3 platform founded by Tyler Winklevoss and Cameron Winklevoss in 2014. Gemini offers a wide range of crypto products and services for individuals and institutions in over 70 countries.Crypto is about giving you greater choice, independence, and opportunity. We are here to help you on your journey. We build...


  • Seattle, Washington, United States Amazon Full time

    We are looking for an experienced Front-End Engineer who is excited about leading the technical vision and architecture for our next-generation UI products. This role will be instrumental in delivering a best-in-class user experience for our customers while ensuring an efficient and scalable developer experience for our growing team. Since we are just...


  • Seattle, Washington, United States Amazon Full time

    Are you inspired by the prospect of work that has a tangible impact on customers, teams, and businesses worldwide? Is your expertise in dissecting complex systems, ranging from embedded software to cloud services, matched by a zeal for uncovering product vulnerabilities? If the thrill of automating vulnerability detection and scaling its reach excites you...


  • Seattle, Washington, United States Amazon Full time

    Come and build innovative services that protect our cloud from security threats.As a Senior Security Engineer (SecEng), you'll help to build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure. You'll work with data scientists, software development engineers, and security engineers across...


  • Seattle, Washington, United States Reddit Full time

    Reddit is a community of communities. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 82M+ daily active unique visitors, Reddit is one of the internet's largest sources of information. The SPACE (Security, Privacy, And Compliance Engineering) team defends Reddit's...


  • Seattle, Washington, United States Galvanick Full time

    About GalvanickGalvanick protects the industrial world against cyber attacks, safeguarding critical infrastructure from criminals and nation-states. Our threat detection platform for factories defends the modern world against SCADA and ICS threats.Job OverviewThis is an opportunity to work in a startup environment with driven individuals committed to solving...


  • Seattle, Washington, United States Galvanick Full time

    Galvanick protects the industrial world against cyber attacks, ensuring the security and integrity of critical infrastructure. Our threat detection platform for factories safeguards the modern world against SCADA and ICS threats.About the RoleThis is an opportunity to work on an exceptionally hard problem in a startup environment with driven individuals...


  • Seattle, Washington, United States UKG (Ultimate Kronos Group) Full time

    Company OverviewWith 80,000 customers across 150 countries, UKG is the largest U.S.-based private software company in the world. And we're only getting started. Ready to bring your bold ideas and collaborative mindset to an organization that still has so much more to build and achieve? Read on.At UKG, you get more than just a job. You get to work with...


  • Seattle, Washington, United States Amazon Full time

    Come and build innovative services that protect our cloud from security threats.As a Senior Security Engineer (SecEng), you'll help to build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure. You'll work with data scientists, software development engineers, and security engineers across...


  • Seattle, Washington, United States UKG (Ultimate Kronos Group) Full time

    Key ResponsibilitiesRespond to insider threat investigations, ensuring that the appropriate organizational partners are involved, and leverage the necessary technical skillsets within our security department to collect, process, and analyze evidence.Coordinate with our Detection Engineering and Security Operations Center teams to develop user activity...


  • Seattle, Washington, United States Amazon Full time

    Job DescriptionWe are seeking a highly skilled Security Engineer to join our Detection Engineering team. As a key member of our team, you will design and develop automated detection capabilities to identify and mitigate security risks throughout the Software Development Life Cycle (SDLC). Your expertise in threat modeling, code reviews, security testing,...


  • Seattle, Washington, United States Reddit Full time

    **About the Team:**The SPACE (Security, Privacy, And Compliance Engineering) team is responsible for defending Reddit's employees and compute assets to make Reddit the most trustworthy place for online human interaction.We are looking for humble experts with a relentlessly resourceful and entrepreneurial 'can do' perspective who can analyze security threats,...