Skip to content

Open nowPosted 72 days ago

Senior Security Engineer, AWS Human Access Security

Amazon / AWS22,929 open roles

Where
Arlington, Virginia, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security Engineer, AWS Human Access SecurityAmazon / AWS · Arlington, Virginia, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Amazon / AWS's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. Amazon / AWS postings stay open a median of 8 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.6%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.0%30 days
This job: posted 72 days ago

Amazon / AWS median: 8 days open

The posting

AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds — tooling that engineers across AWS depend on to request, scope, and audit their access. You define what constitutes the highest-risk operator access, quantify it with data, and partner with teams across AWS to move that access to lower-risk patterns or remove it.

Key job responsibilities - Define what counts as high-risk human access to production systems and the data they hold. You identify the access patterns (standing credentials, broad emergency access, unscoped remote sessions, unreviewed privilege elevation) that carry the greatest risk, and you rank them with data rather than opinion. - Drive design decisions that lower access risk by default: scoped and time-bound credentials, reviewed privilege elevation, and auditable emergency access, so systems stay secure without depending on operator discipline. - Partner with engineering teams across the organization to reduce risky access. You turn your risk model into concrete remediation, negotiate adoption, and measure the reduction over time. - Build the measurement and detection capabilities that show where risky access exists and whether it is trending down, and use that data to prioritize the work. - Investigate security issues involving human access and turn each one into a durable improvement in the tooling or the risk model, not a one-off fix. - Mentor software and security engineers, raise the bar through design and code review, and represent your team's security posture to leadership and partner teams.

A day in the life Most days come down to one question: who can reach critical production systems, and how do we make that access safer? You dig into the data, find the access patterns that carry the most risk, and decide what to tackle first. Then the part that matters most: you take each finding to the software engineers you work with and build the fix into the tooling, so the identification becomes automatic instead of something you teams have to discover. You'll also win over teams across the company to build tools and mechanisms to remove the risk completeley. Find the problem, then automate it away.

About the team AWS Human Access Security (AHAS) is a security and engineering team with one mission: make it safe for people to operate the systems that run AWS. Every engineer who touches production is our customer, and we build the tools they use to understand their access and reduce their risk. We pair security engineers with software engineers so good security is built into the product, not bolted on afterward. We care about measurable impact, clear thinking, and shipping fixes that stick. If you want your work to lower real risk across a huge fleet, join us.

Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why Amazon Security? At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores

Inclusive Team Culture In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

- 5+ years of non-internship background in troubleshooting systems issues, analyzing logs, or automating complex tasks using command line tools experience - 5+ years of work in identifying security issues and risks, and developing mitigation plans experience - 5+ years of (non-internship) scripting, programming, and security code review in common programming languages experience - Knowledge of at least two of the following programming languages: Scala, Java, Python, C/C++, or Go - Experience (non-internship) in scripting, programming, and security code reviewing in a common programming language - Experience as a mentor, tech lead or leading an engineering team

- Experience applying threat modeling or other risk identification techniques or equivalent - Experience with security in service-oriented architectures/microservices and web services

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.

USA, VA, Arlington - 178,400.00 - 226,700.00 USD annually

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Amazon / AWS's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Amazon / AWS's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Amazon / AWS's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.