Security Engineer II, Stores AppSec
at Amazon
Posted 15 hours ago
No clicks
- Compensation
- $159,300 – $202,400 USD
- City
- Austin
- Country
- United States
Currency: $ (USD)
Join Team LOAF to prevent security vulnerabilities from reaching production by identifying root causes and building scalable solutions. You will conduct root cause analysis using manual research and AI-powered tooling, design preventative mechanisms and secure defaults, and develop dashboards to surface trends and remediation velocity. You’ll build and mature LLM-based root cause analysis engines to automate pattern detection across large datasets and collaborate with AppSec, tooling teams, and business units to ensure solutions are adopted. Your work will deliver systemic security improvements that reduce builder toil and strengthen the organization’s security posture.
What We Do
Team LOAF focuses on systemic security improvement across the organization. We investigate significant vulnerabilities to uncover patterns, then build preventative mechanisms that reduce recurrence with minimal builder effort. Rather than simply remediating individual findings, we address the underlying causes that generate them at scale.
We prioritize our work based on impact, targeting business units with the highest volume, severity, or concentration of security findings. Our solutions (paved paths, secure defaults, and reusable components) benefit broad segments of builders across the organization.
How We Work
Our approach combines deep technical analysis with scalable automation:
Root Cause Analysis: We perform thorough investigations of vulnerabilities using both manual research and AI-powered tooling to identify systemic patterns across the security landscape
Preventative Mechanisms: We design and implement frameworks and components that shift security left in the development lifecycle
Security Dashboards: We build dashboards for teams, leadership, and customers that surface trends, highlight risky concentrations, and track remediation velocity
AI-Driven Analysis: We're maturing an LLM-based engine to automate pattern detection across large datasets, enabling analysis at scale across 75M+ findings
Cross-Functional Partnership: We collaborate closely with AppSec, tooling teams, security reviewers, and business units to ensure our solutions are both technically sound and practically adopted
Your Impact
As part of Team LOAF, you'll deliver systemic security improvements that prevent findings from reaching production, reduce builder toil, and advance the security control landscape through scalable, automated solutions. Your work will have measurable impact across the organization's security posture.
Key job responsibilities
- Conduct root cause analysis of security vulnerabilities using manual research and AI-powered tooling to identify systemic patterns across the security landscape
- Design and implement preventative mechanisms, frameworks, and components that reduce vulnerability recurrence with minimal builder effort
- Develop security dashboards and metrics for teams, leadership, and customers that surface trends, highlight risky concentrations, and track remediation velocity
- Build and mature LLM-based root cause analysis engines to automate pattern detection and deliver recommendations across large datasets
- Partner with AppSec, tooling teams, security reviewers, and business units to ensure solutions are technically effective and practically adopted
- Prioritize work based on impact, targeting business units with the highest volume, severity, or concentration of security findings
- Create paved paths, secure defaults, and reusable components that benefit broad segments of builders across the organization
About the team
About Amazon Security
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Basic Qualifications
- 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience- 2+ years of troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non-internship) experience
- Bachelor's degree in computer science or equivalent
- Knowledge of industry-based security vulnerabilities and remediation techniques
Preferred Qualifications
- Knowledge of networking protocols, to include HTTP(S), DNS, and TCP/IP- Experience with AWS products and services
- Experience performing security activities across one or more phases of the software development lifecycle (SDLC), such as security design review, threat modeling, secure code review, and security testing
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, TX, Austin - 159,300.00 - 202,400.00 USD annually

