Security Engineer, AWS Bug Bounty

Global technology company leading in e-commerce, cloud computing, and artificial intelligence.
$136,000 - $212,800
Security
Mid-Level Software Engineer
Hybrid
5,000+ Employees
3+ years of experience
Cybersecurity · Enterprise SaaS

Description For Security Engineer, AWS Bug Bounty

AWS Security is seeking a talented Security Engineer to join their Bug Bounty team, focusing on keeping the cloud safe for customers worldwide. This role combines technical expertise in security analysis with program management and automation development. The position involves triaging security reports across AWS's 200+ services, requiring deep technical analysis and an understanding of AWS systems. Key responsibilities include vulnerability assessment, researcher relationship management, and driving security improvements.

The ideal candidate will have strong programming skills, security analysis experience, and excellent communication abilities. They'll work closely with service teams, security leadership, and external researchers to identify, assess, and remediate security issues. The role offers opportunities to influence program direction, develop automation tools, and grow AWS's Bug Bounty Program.

Daily work involves analyzing security reports, coordinating with stakeholders, and developing solutions to scale the program through automation. The position requires customer obsession and a commitment to maintaining Amazon's security standards. Team culture emphasizes continuous learning, diversity, and work-life harmony.

This role offers comprehensive benefits including competitive base pay, equity compensation, and various medical and financial benefits. The position provides flexibility in work arrangements and opportunities for career growth through training and hands-on experience with cutting-edge security challenges. Join a team that's central to maintaining customer trust across Amazon's global platform.

Last updated 15 hours ago

Responsibilities For Security Engineer, AWS Bug Bounty

  • Research, reproduce, and respond to security issues reported through the bug bounty program
  • Manage relationships with external security researchers
  • Perform deep analysis of new vulnerability classes
  • Drive improvements to team tooling, automation, and processes
  • Identify and drive resolution of vulnerability trends
  • Attend industry conferences and assist in hosting hack-a-thons
  • Technical escalation and stakeholder coordination

Requirements For Security Engineer, AWS Bug Bounty

Python
Java
Go
  • 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
  • Knowledge of networking protocols such as HTTP, DNS and TCP/IP
  • Bachelor's degree in computer science or equivalent work experience

Benefits For Security Engineer, AWS Bug Bounty

Medical Insurance
401k
  • Medical, financial, and other benefits
  • Equity compensation
  • Sign-on payments
  • Flexible work hours
  • Training and career development resources

Interested in this job?

Jobs Related To Amazon Security Engineer, AWS Bug Bounty

Software Development Engineer, AWS Security Assurance Engineering

Software Development Engineer position at AWS Security Assurance Engineering team, building and maintaining security and compliance services for AWS platform.

Software Development Engineer, AWS Security

AWS Security Software Development Engineer role building cloud security services, offering $129K-$223K salary, focusing on threat detection and mitigation at scale.

Systems Engineer, ESCAPE

Systems Engineer position at Amazon's ESCAPE team focusing on endpoint security, requiring 3+ years of IT experience and expertise in security tools deployment.

Software Development Engineer, AWS Security

AWS Security Software Development Engineer position focusing on building scalable security telemetry solutions using Go, Python and TypeScript in Dublin.

Software Development Engineer II, AWS Web Application Firewall (WAF)

AWS Web Application Firewall (WAF) SDE II role focused on building and maintaining security services for protecting web applications from attacks.