Security Engineer, Threat Detection

Amazon Amazon · Big Tech · Austin, TX · Systems, Quality, & Security Engineering

Security Engineer focused on threat detection using ML and generative AI to build and improve detection capabilities at scale for Amazon's network.

What you'd actually do

  1. Identify critical threats targeting Amazon's network by leveraging threat intelligence and security research, then deliver high-fidelity threat detections aligned to attacker tactics, techniques, and procedures (TTPs).
  2. Enhance detection engineering processes by improving how detections are scoped, prioritized, developed, tested, and maintained throughout their lifecycle.
  3. Develop platform requirements to enrich alerts with contextual data, reduce false positives, and automate remediation and response actions in coordination with incident response teams.
  4. Research and develop mechanisms to advance detection capabilities through machine learning, advanced data correlation, risk-based alerting, or generative AI.
  5. Automate your way through challenges using Python or other scripting languages to build tooling, validate detections, and streamline operational workflows at scale.

Skills

Required

  • Experience triaging and developing security alerts and response automation, conducting front-line analysis, and providing escalation support
  • Experience scripting with Python, Perl, Bash or PowerShell
  • Knowledge of web protocols, common attacks, and Linux/Unix tools and architecture
  • Knowledge of cloud computing concepts and design considerations
  • 1+ years of non academic experience in any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience

Nice to have

  • Experience with Machine Learning and Large Language Model fundamentals, including architecture, training/inference lifecycles, and optimization of model execution, or experience leading and influencing your team or organization

What the JD emphasized

  • develop new detection ideas
  • build high-confidence detections
  • research emerging threats
  • develop innovative methods utilizing the latest techniques
  • advance detection capabilities through machine learning, advanced data correlation, risk-based alerting, or generative AI

Other signals

  • develop new detection ideas
  • build high-confidence detections
  • research emerging threats
  • develop innovative methods utilizing the latest techniques
  • advance detection capabilities through machine learning, advanced data correlation, risk-based alerting, or generative AI