Security Engineer II, Stores Security - HealthCare

Amazon

Seattle (WA)

On-site

USD 159,300 - 202,400

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Amazon is seeking a Security Engineer II for its Healthcare Security team in Seattle. This role involves designing and maintaining advanced detection and monitoring capabilities to protect Amazon Health Services across cloud infrastructure and AI systems. Qualified candidates will have over 5 years in security roles and expertise in cloud technologies like AWS, along with proficiency in programming languages such as Python or Java.

The position offers a competitive salary range of $159,300 - $202,400 annually, alongside opportunities for career growth in a dynamic environment.

Qualifications

  • 5+ years of security-related professional experience.
  • Bachelor’s degree in a STEM field or equivalent IT Security experience.
  • Experience with cloud hosting technologies.
  • Experience applying threat modeling techniques.

Responsibilities

  • Design and maintain detection capabilities across cloud infrastructure.
  • Develop detections and monitoring for applications and AI services.
  • Build automated investigation workflows leveraging AI.
  • Lead incident response, ensuring effective containment and investigation.

Skills

Security-related professional experience
Proficiency in Python, Go, or Java
Experience with cloud hosting technologies (AWS, Azure)
Security documentation skills

Education

Bachelor’s degree in STEM field or equivalent IT Security experience

Tools

Log aggregation platforms (e.g., Splunk, Datadog)
Endpoint detection tools (e.g., SentinelOne, CrowdStrike)

Job description

Security Engineer II, Stores Security - HealthCare

Job ID: 10464856 | Amazon.com Services LLC

Amazon Healthcare Security's (HealthSec) Detections & Monitoring team is hiring a Security Engineer II to design, build, and operate detection and monitoring capabilities that protect Amazon Health Services (AHS) across cloud infrastructure, applications, endpoints, and AI‑powered systems. Working closely with AHS engineering teams, peer security teams, and incident responders, the role ensures threats targeting healthcare workloads are detected rapidly, investigated efficiently, and maintain HIPAA compliance while leveraging AI/LLM‑powered tooling to scale detection, triage, and response.

Key Responsibilities
  • Design, build, and maintain detection‑as‑code capabilities across cloud infrastructure (CloudTrail, GuardDuty, VPC Flow Logs), SaaS applications, endpoints, and identity systems, improving coverage and signal quality.
  • Develop and deploy detections and monitoring for agentic applications and AI services, including anomaly detection for LLM‑powered tools, agent orchestration systems, and AI service APIs.
  • Build automated investigation and response workflows that replace manual runbooks, leveraging AI to scale triage, enrichment, containment, and remediation.
  • Develop and deploy AI/LLM‑powered tooling to investigations, reduce alert fatigue, and extend team capacity beyond traditional headcount constraints.
  • Monitor telemetry data, alerting systems, and dashboards for signals of degradation, compromise, or abuse across AHS environments.
  • Triage and correlate alerts to identify patterns, reduce noise, and surface high‑fidelity signals before impact escalates.
  • Lead and participate in incident response: detection, investigation, containment, and retrospectives, identifying root causes and driving long‑term resilience improvements.
  • Partner cross‑functionally with AHS engineering and platform teams to expand logging, improve observability, and embed detection capabilities into the development lifecycle.
  • Identify gaps in visibility or detection coverage and translate ambiguous threat landscapes into detection and response solutions.
  • Develop and maintain security documentation: detection coverage maps, threat models, runbooks, and monitoring architecture guidelines.
Basic Qualifications
  • 5+ years of security‑related professional experience
  • Bachelor’s degree in a STEM field (Science, Technology, Engineering, Mathematics), or 2+ years of IT Security experience
  • Experience directly working with cloud hosting technologies (AWS, Azure, etc.)
  • Experience applying threat modeling or other risk identification techniques or equivalent
  • Software engineering fundamentals with proficiency in Python, Go, Java, or similar languages, and experience working in production codebases
  • Experience with log aggregation and analysis platforms (e.g., Splunk, OpenSearch, ELK, Datadog) and/or endpoint detection tools (e.g., SentinelOne, CrowdStrike)
Preferred Qualifications
  • Experience in Kubernetes, Docker or containers ecosystem
  • Experience designing and developing scripts to automate operational burdens and reviewing scripting changes to ensure they meet the standards for maintainability, scalability and security
  • Experience building detection‑as‑code frameworks or custom detection pipelines
  • Experience building AI/LLM‑powered security tooling or applying AI to detection, triage, or investigation workflowsUnderstanding of generative AI technologies, large language models, and AI agents, with ability to identify security risks in agentic architectures
  • Experience with threat intelligence, threat hunting, or attacker tradecraft frameworks such as MITRE ATT&CK
  • Experience with automated response/SOAR platforms or building investigation automation
  • Familiarity with HIPAA compliance requirements for healthcare data

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Base salary range: 159,300.00 - 202,400.00 USD annually.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer II, Amazon Stores Security Healthcare
Security Engineer II, Amazon Stores Security Healthcare

Amazon • Arlington (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
Security Engineer II - Healthcare Detection & AI Security
Security Engineer II - Healthcare Detection & AI Security

Amazon • Seattle (WA)

On-site
USD 159,000 - 203,000
Healthcare Security Engineer II — Data & Incident Defense
Healthcare Security Engineer II — Data & Incident Defense

Amazon • Austin (TX)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
+1
Security Engineer II, Amazon Stores Security Healthcare
Security Engineer II, Amazon Stores Security Healthcare

Amazon • Austin (TX)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
+1
Manager, Security Engineering, Healthcare Security
Manager, Security Engineering, Healthcare Security

Amazon • Seattle (WA)

On-site
USD 175,000 - 237,000
Healthcare Security Engineer II: Protect Patient Data
Healthcare Security Engineer II: Protect Patient Data

Amazon • Arlington (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
Security Engineer II, Stores AppSec
Security Engineer II, Stores AppSec

Amazon • Austin (TX)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
+1
Security Engineer, Correlation and Response, AWS Security Hub
Security Engineer, Correlation and Response, AWS Security Hub

Amazon Web Services (AWS) • Seattle (WA)

On-site
USD 159,000 - 202,000
Applied Scientist, AWS Security
Applied Scientist, AWS Security

Amazon Web Services (AWS) • Maryland

On-site
USD 143,000 - 193,000
Health insurance
RSUs
Security Engineer II, Security Incident Response Team (SIRT)
Security Engineer II, Security Incident Response Team (SIRT)

Amazon • Arlington (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off