Amazon - New York, NY

posted 19 days ago

Full-time - Mid Level
New York, NY
Sporting Goods, Hobby, Musical Instrument, Book, and Miscellaneous Retailers

About the position

As an AppSec Engineer at Amazon Stores, you will play a crucial role in ensuring the security of innovative services developed by software teams. Your responsibilities will include inspecting application code for security vulnerabilities, developing security frameworks, and collaborating with developers to enhance security practices. The position requires a blend of technical expertise and strong communication skills to articulate risks and influence secure solutions across teams.

Responsibilities

  • Creating, updating, and maintaining threat models for a wide variety of software projects
  • Conducting manual and automated secure code reviews, primarily in Java, Python, and JavaScript
  • Developing security automation tools
  • Performing adversarial security analysis using cutting-edge tools
  • Providing security training and outreach for internal development teams
  • Offering security architecture and design guidance
  • Independently solving security problems that require novel methods or approaches
  • Influencing team and partner processes, priorities, and choices to improve security outcomes

Requirements

  • Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits
  • Experience with threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration, and network security
  • Bachelor's degree in computer science or equivalent, or 3+ years of engineering experience

Nice-to-haves

  • GCIH (GIAC Certified Incident Handler)
  • GSEC (GIAC Security Essentials)
  • Security+ certification

Benefits

  • Competitive salary
  • Equity and sign-on payments
  • Comprehensive medical benefits
  • Financial benefits
  • Flexible working culture
  • Career advancement resources
  • Work-life harmony initiatives
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service