Security Engineer, AWS Security Hub, Security Services (S2)

Amazon

New York (NY)

On-site

USD 140,000 - 190,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Amazon is seeking a security engineer for the AWS Security Hub team, focusing on compliance and security best practices across AWS, Azure, and GCP. You will define controls, implement automated checks, and map standards to cloud configurations to help customers stay secure.

You will work with service owners, solution architects, and engineering teams, developing requirements that translate into actionable checks and remediation steps.

Qualifications

  • Defining security compliance requirements across multiple clouds (AWS, Azure, GCP).
  • Proposing and translating security controls into automated checks and remediations.
  • Collaborating with service owners, security architects, and customers to raise security standards.

Responsibilities

  • Define security controls and best practices for multi-cloud services.
  • Develop automated checks and remediation workflows, e.g., in Python.
  • Collaborate with stakeholders to map standards to cloud configurations and checks.

Job description

Description

The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions is conducting automated checks against cloud security best practices, industry standards, and regulatory frameworks. The person joining Security Hub in this position will lead the effort to define security best practices across AWS, Microsoft Azure, and Google Cloud Platform, including implementation of security controls to assess compliance, remediations to respond to non-compliant events, and mappings to industry standards and regulatory frameworks such as CIS Benchmarks for AWS, Azure, and GCP.

The successful candidate is one who has experience defining technical requirements for compliance and security best practices across multiple cloud providers. You should be comfortable looking at a cloud service — whether AWS, Azure, or GCP — and identifying what security controls should be in place to help customers be confident that they are using that service in a secure way. You should be comfortable developing requirements that developers can utilize to translate security controls into automated checks and remediation procedures. You should also be comfortable implementing automated checks in Python or a supported language, including developing multi-cloud controls that evaluate Azure and GCP resource configurations through AWS Config.

A key aspect of this job is the ability to earn trust with large network of stakeholders: AWS service owners, security expects in our solution architecture and consulting teams, Security Hub’s development team, and, most importantly, our customers. In addition to being a technical expert in security best practices and compliance, you will be a leading voice in the effort to raise the bar for security and compliance across AWS.

Our team also puts a high value on work-life balance. Striking a healthy balance between your personal and professional life is crucial to your happiness and success here, which is why we aren't focused on how many hours you spend at work or online. Instead, we're happy to offer a flexible schedule so you can have a more productive and well-balanced life—both in and outside of work.

Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we're building an environment that celebrates knowledge sharing and mentorship. Our senior members enjoy one-on-one mentoring and thorough, but kind, code reviews. We care about your career growth and strive to assign project based on what will help each team member develop into a better-rounded engineer and enable them to take on more complex tasks in the future.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Multi-Cloud Security Engineer: AWS/Azure/GCP Compliance
Multi-Cloud Security Engineer: AWS/Azure/GCP Compliance

Amazon • New York (NY)

On-site
USD 140,000 - 190,000
Security Engineer, Correlation and Response, AWS Security Hub
Security Engineer, Correlation and Response, AWS Security Hub

Amazon Web Services (AWS) • Boston (MA)

On-site
USD 159,300 - 202,400
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Security Engineer, AWS Security Cloud Response at Amazon.com Services LLC Seattle, WA
Security Engineer, AWS Security Cloud Response at Amazon.com Services LLC Seattle, WA

Amazon.com Services LLC • Seattle (WA)

On-site
USD 140,000 - 170,000
Security Engineer
Security Engineer

Compunnel, Inc. • Chicago (IL), Northern (KY)

Hybrid
USD 120,000 - 160,000
Security Engineer, Correlation and Response, AWS Security Hub
Security Engineer, Correlation and Response, AWS Security Hub

Socket.dev • Boston (MA)

On-site
USD 159,000 - 203,000
Health insurance
401(k) matching
Paid time off
+1
Security Engineer, Correlation and Response, AWS Security Hub
Security Engineer, Correlation and Response, AWS Security Hub

Amazon Web Services (AWS) • Seattle (WA)

On-site
USD 159,000 - 202,000
SC Security Engineer
SC Security Engineer

Hubnest Inc • United States

Hybrid
USD 140,000 - 190,000
Health coverage
Flexible working arrangements
Learning budget
+1
Sr. Manager, Security Services SA, AWS Security Services SA - North America
Sr. Manager, Security Services SA, AWS Security Services SA - North America

Amazon Web Services (AWS) • Denver (CO)

On-site
USD 201,000 - 272,000
Health insurance
401(k) matching
Paid time off
+2
Security Compliance Specialist, Devices & Services Security Compliance
Security Compliance Specialist, Devices & Services Security Compliance

Socket.dev • Seattle (WA)

On-site
USD 120,000 - 180,000
Flexible work hours
Career development resources