Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer I, Stores Security Pen Test image - Rise Careers
Job details

Security Engineer I, Stores Security Pen Test - job 1 of 3

Description

Amazon’s Stores Pentest Team is seeking a Security Engineer to help keep Amazon secure for its customers. In this role, you will attack Amazon’s services, applications, and websites to discover security issues and report them to our internal technology teams. This position will provide you with challenging opportunities, both technologically and as a leader, but will also be a great deal of fun if hacking Amazon alongside a team of highly skilled individuals sounds exciting to you.

A Security Engineer at Amazon is expected to be strong in multiple domains. Engineers in this role work closely with teams throughout Information Security, as well as provide technical leadership and advice to teams and leaders throughout Amazon. You will be in direct contact with teams in a variety of business verticals, giving you first hand knowledge about how Amazon is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Amazon to find new ways to break services, processes, and technologies throughout the company.

Engineers in this role must show exemplary judgment in making technical trade-offs between short-term fixes and long-term security and business goals. You will demonstrate resilience and navigate ambiguous situations with composure and tact. You will be expected to provide thought leadership for the organization as you discover, invent, and innovate throughout the course of your duties. Above all else, a strong sense of customer obsession is necessary to focus on the ultimate goal of keeping Amazon and its customers secure.

Key job responsibilities
* Conducting high quality application penetration tests independently, or as part of a team
* Creating detailed engagement plans and thoroughly documenting findings, gaps, and remediation recommendations
* Contributing to team tooling, innovation, and improvements
* Communicating and collaborating with partner teams, service owners, Information Security, and senior leadership to influence, prioritize, and drive the resolution of discovered security findings

About the team
About Amazon Security

Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Basic Qualifications

- 1+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
- Bachelor's degree in computer science or equivalent
- 1+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- 1+ years of experience in a penetration testing or similar offensive security role

Preferred Qualifications

- Experience in developing security tooling and automation
- Experience in CTF competitions, CVE research, and/or Bug Bounty recognition
- Knowledge of cloud service providers and their offerings, preferably AWS, and its various technologies and services

Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.

Los Angeles County applicants: Job duties for this position include: work safely and cooperatively with other employees, supervisors, and staff; adhere to standards of excellence despite stressful conditions; communicate effectively and respectfully with employees, supervisors, and staff to ensure exceptional customer service; and follow all federal, state, and local laws and Company policies. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness and professionalism, and safeguard business operations and the Company’s reputation. Pursuant to the Los Angeles County Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $125,500/year in our lowest geographic market up to $212,800/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. This position will remain posted until filled. Applicants should apply via our internal or external career site.

Average salary estimate

$169150 / YEARLY (est.)
min
max
$125500K
$212800K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer I, Stores Security Pen Test, Amazon

Are you ready to dive into the exciting world of cybersecurity? Amazon's Stores Pentest Team is on the lookout for a passionate Security Engineer I to join their ranks right here in Seattle, Washington! In this dynamic role, you’ll be tasked with penetrating Amazon's services, applications, and websites to uncover security vulnerabilities. This isn't just any job—it's an adventure where you'll collaborate with a highly skilled team of professionals who share your passion for security. As a Security Engineer at Amazon, you'll take the lead in assessing our security posture by conducting thorough application penetration tests, creating detailed engagement plans, and sharing your findings with various teams to ensure swift remediation. Your technical judgment will shine through as you navigate complex security challenges, balancing immediate fixes with long-term solutions. Customer obsession is at the heart of what we do, and you'll be keeping both Amazon and its millions of customers secure. Alongside technical prowess, we're looking for someone who enjoys learning and embraces the diversity of thought and ideas in the fast-paced world of Amazon Security. If you're eager to step into an environment that encourages innovation, knowledge sharing, and career growth while maintaining a great work-life balance, then we want to hear from you!

Frequently Asked Questions (FAQs) for Security Engineer I, Stores Security Pen Test Role at Amazon
What are the responsibilities of a Security Engineer I at Amazon?

As a Security Engineer I on Amazon's Stores Pentest Team, you'll be responsible for conducting high-quality application penetration tests both independently and as part of a team. You'll create detailed engagement plans, document findings meticulously, and provide remediation recommendations. Collaboration with partner teams and influencing senior leadership to prioritize security issues will also be a key part of your role.

Join Rise to see the full answer
What qualifications do I need to apply for the Security Engineer I position at Amazon?

To apply for the Security Engineer I role at Amazon, you should possess at least a bachelor's degree in computer science or a related field, alongside a minimum of one year of programming experience in languages such as Python or Java. Additionally, some experience in penetration testing, threat modeling, secure coding, and network security is required.

Join Rise to see the full answer
How does Amazon support career growth for Security Engineers?

Amazon is committed to your career development as a Security Engineer I. You’ll find numerous opportunities for knowledge sharing, ongoing training, and resources designed to help you develop into a well-rounded professional. The culture promotes learning and curiosity, allowing you to expand your skills and grow your career in various domains within Amazon Security.

Join Rise to see the full answer
What makes the Security Engineer I role at Amazon unique?

The Security Engineer I position at Amazon is unique due to the vast array of technologies and services you will work with, alongside a diverse team of experts. You’ll have the chance to play a pivotal role in identifying security vulnerabilities within one of the world’s largest platforms and contribute directly to the security strategies that protect millions of customers worldwide.

Join Rise to see the full answer
What is the work-life balance like for Security Engineers at Amazon?

At Amazon, maintaining work-life harmony is a priority for our Security Engineers. You'll experience flexible work hours and arrangements designed to support a fulfilling balance between professional responsibilities and personal life, allowing you to thrive both at home and in the workplace.

Join Rise to see the full answer
Common Interview Questions for Security Engineer I, Stores Security Pen Test
Can you explain the penetration testing process you would use as a Security Engineer I at Amazon?

When explaining the penetration testing process, it’s important to outline steps such as scope definition, information gathering, threat modeling, vulnerability analysis, exploitation, and reporting. You might also mention how you will collaborate with other teams to ensure findings are addressed effectively.

Join Rise to see the full answer
What programming languages are you proficient in that would help you as a Security Engineer I at Amazon?

Highlight your proficiency in relevant programming languages such as Python, Java, or C++. Discuss how these skills allow you to analyze code, create scripts for automation, or develop security tools which is crucial in a role focused on identifying vulnerabilities.

Join Rise to see the full answer
How do you prioritize security issues found during a penetration test?

In prioritizing security issues, emphasize the importance of assessing the impact and likelihood of each finding. You might talk about using a risk-based approach to categorize vulnerabilities into high, medium, and low risk, allowing you to focus efforts on issues that pose the greatest threat.

Join Rise to see the full answer
Describe a time you handled a complex security challenge.

Select a specific instance where you faced a complex security challenge, detailing the problem, your approach, and the outcome. Emphasize your problem-solving skills and resilience, important traits for a Security Engineer I at Amazon.

Join Rise to see the full answer
What tools and methodologies do you use for penetration testing?

Identify commonly used tools such as Metasploit, Burp Suite, or Nmap. Discuss methodologies like OWASP or NIST frameworks and explain how using these tools and methodologies aids in effectively identifying security vulnerabilities.

Join Rise to see the full answer
How do you keep yourself updated with the latest security trends?

Express your dedication to continuous learning by describing how you follow industry blogs, participate in cybersecurity communities, attend conferences, or engage in Capture The Flag (CTF) competitions, showcasing your commitment to staying ahead in the security field.

Join Rise to see the full answer
What role does teamwork play in your approach as a Security Engineer I?

Emphasize the importance of teamwork in security roles, detailing how collaboration with diverse teams allows for a more comprehensive understanding of security issues and fosters innovative solutions during penetration testing.

Join Rise to see the full answer
Can you provide an example of how you’ve documented findings from a security test?

Discuss how you approach documentation by creating clear, structured reports that outline the methodology, vulnerabilities identified, severity rankings, and actionable remediation steps. Stress the need for your documentation to be accessible to both technical and non-technical stakeholders.

Join Rise to see the full answer
What do you understand by customer obsession in the context of your role?

Clarify that customer obsession means prioritizing customers' security by identifying and mitigating risks that could affect their trust. As a Security Engineer I, your role is crucial in protecting that trust through your security work.

Join Rise to see the full answer
What makes you a good fit for the Security Engineer I role at Amazon?

Reflect on your technical skills, your passion for security, and your alignment with Amazon’s customer-centric culture. Share specific examples of your previous experiences that demonstrate your capability and enthusiasm for a role at Amazon.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Apex Systems Hybrid King of Prussia, PA
Posted 4 days ago
Photo of the Rise User
Weekday Remote No location specified
Posted 10 days ago
Photo of the Rise User
Intercom Remote San Francisco, California
Posted 9 days ago
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Social Impact Driven
Rapid Growth
Passion for Exploration
Dental Insurance
Health Savings Account (HSA)
Vision Insurance
Disability Insurance
Performance Bonus
Family Medical Leave
Paid Holidays
Medical Insurance
Mental Health Resources
Maternity Leave
Paternity Leave
Paid Time-Off
Photo of the Rise User
Varonis Remote No location specified
Posted 3 hours ago
Talent Worx Remote No location specified
Posted 3 days ago
Photo of the Rise User
Weekday Remote No location specified
Posted 11 days ago
Photo of the Rise User
Posted 5 days ago
Posted 5 days ago

Amazon is guided by four principles: customer obsession rather than competitor focus, passion for invention, commitment to operational excellence, and long-term thinking.

2111 jobs
MATCH
Calculating your matching score...
CULTURE VALUES
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
BENEFITS & PERKS
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
FUNDING
SENIORITY LEVEL REQUIREMENT
INDUSTRY
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 21, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Dayton just viewed Sr Renewal Analyst 1730 at MeridianLink
Photo of the Rise User
52 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
38 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
Someone from OH, Canton just viewed Communications Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Akron just viewed BDR Lead at Pontera
Photo of the Rise User
Someone from OH, Akron just viewed SDR Manager at Darktrace
Photo of the Rise User
Someone from OH, Columbus just viewed Health & Wellness Account Coordinator at PNOE
Photo of the Rise User
Someone from OH, Columbus just viewed Warehouse Associate - Third Shift at Babylist
Photo of the Rise User
7 people applied to ITSM Specialist at Datacom
Photo of the Rise User
9 people applied to Security Analyst Jr at DEUNA
B
Someone from OH, Athens just viewed Associate Production Designer at Brooks Running
Photo of the Rise User
Someone from OH, Cleveland just viewed Graphic Designer for UX/UI Portfolio Mockups at Upwork
Photo of the Rise User
Someone from OH, Dublin just viewed Product Designer (Ambient AI) at Commure + Athelas
V
Someone from OH, Cleveland just viewed Product Designer (UX/UI) at VML Enterprise Solutions
Photo of the Rise User
Someone from OH, Cleveland just viewed Need an expert UI/UX designer ( for long term) at Upwork
Photo of the Rise User
Someone from OH, Cleveland just viewed US Product Designer at Praxent
Photo of the Rise User
Someone from OH, Cleveland just viewed UX / UI Designer at DocPlanner
Photo of the Rise User
Someone from OH, Columbus just viewed Cyber Analyst, Digital Forensics Incident Response at At-Bay
P
Someone from OH, Marion just viewed Customer Experience Agent at ProjectGrowth
Photo of the Rise User
Someone from OH, Wilmington just viewed Accounts Receivable Specialist at Flock Safety
Photo of the Rise User
Someone from OH, Milford just viewed Visual Designer (Contract to Hire) at Abridge