Taro Logo

Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

Amazon is the world's largest e-commerce company and technology leader in cloud computing, artificial intelligence, and digital innovation.
Security
Mid-Level Software Engineer
In-Person
5,000+ Employees
3+ years of experience
Cybersecurity · Enterprise SaaS

Job Description

Amazon's Threat Hunting team seeks a Security Engineer II to join their Security Incident Response Team (SIRT). This role focuses on proactively identifying and eliminating security threats at petabyte scale. As part of this dynamic team, you'll work alongside other threat hunting engineers to protect Amazon's vast e-commerce platform and maintain customer trust.

The position combines technical expertise in security with innovative problem-solving, requiring you to analyze large datasets, develop new threat detection capabilities, and respond to emerging security challenges. You'll use various tools and techniques to hunt for adversarial activities, working hands-on with security logs while developing creative approaches to illuminate threats.

Key responsibilities include querying and analyzing machine data for threat indicators, reconstructing security events, and building scalable threat detection solutions. You'll also support ongoing security investigations and maintain awareness of the evolving threat landscape. The role involves collaboration with incident responders and requires participation in an on-call rotation.

Amazon Security offers unique opportunities to tackle complex challenges across diverse domains including cloud, retail, entertainment, healthcare, and physical stores. The team values work-life harmony and provides flexible arrangements to support success both at work and home. You'll join an inclusive culture that emphasizes continuous learning, with access to extensive training and career development resources.

The ideal candidate brings 3+ years of security experience, strong programming skills, and deep knowledge of security vulnerabilities and remediation techniques. Experience with AWS services is preferred. This role offers the chance to make a significant impact on security at one of the world's largest technology companies while working with cutting-edge tools and technologies.

Last updated 3 months ago

Responsibilities For Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

  • Query and collate machine data to search for evidence of potentially damaging threat activities
  • Work alongside incident responders and support investigation of security issues
  • Reconstruct security events from log data
  • Develop innovative approaches to identify threat actor tactics, techniques, and procedures (TTPs)
  • Build custom capabilities to uncover threats at scale
  • Participate in on-call rotation
  • Monitor cybersecurity media and maintain awareness of threat landscape

Requirements For Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

Python
Java
  • Bachelor's degree or relevant security certifications (CCSP, CEH, CFR, Cloud+, CySA+, GCED, GICSP, PenTest+)
  • 3+ years of threat modeling, secure coding, identity management, or network security experience
  • 2+ years programming experience in Python, Ruby, Go, Swift, Java, .Net, C++ or similar
  • Knowledge of system security vulnerabilities and remediation techniques
  • Experience with penetration testing and exploit development

Benefits For Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

  • Flexible work hours
  • Work-life harmony
  • Training and career development opportunities
  • Inclusive team culture
  • DEI events and learning experiences