Security Engineering Manager (Pentest), Amazon Stores Security
Core
Leading a distributed team of penetration testers to assess Amazon's services, applications, and websites, focusing on compliance-driven testing to ensure adherence to regulatory frameworks and industry security standards.
Role type
Senior IC security engineering manager (penetration testing)
Builds
Compliance-driven penetration testing engagements, automation and tooling to scale security impact, and strategic security solutions across Amazon's portfolio.
Domain
Information Security / Cybersecurity / Compliance
Required skills
Security management, penetration testing methodologies, application vulnerability assessment, regulatory framework knowledge, stakeholder influence, team leadership, automation development, process improvement
Preferred skills
Risk identification and mitigation planning, network/system/web application attack knowledge, large-scale automation initiatives, metrics gathering and reporting, cloud service provider expertise (AWS), system security design approaches
Technologies
AWS, penetration testing tools
Responsibilities
Lead and develop a high-performing technical Penetration Testing Team distributed across multiple locations; Lead the strategic direction and evolution of the Compliance Penetration Testing function; Plan and execute compliance-driven penetration testing engagements; Drive the development of automation and tooling to scale penetration testing; Drive strategic initiatives by influencing leadership and partnering with teams; Lead improvements to internal program and process; Write and deliver high-quality documents for technical and non-technical audiences
Seniority
Senior, hands-on IC with management responsibilities