Offers “Amazon”

Expires soon Amazon

AWS Security Hub, Principal Security Engineer

  • Amsterdam (Montgomery County)

Job description



DESCRIPTION

The AWS Security Hub team is looking for a passionate and innovative principal security engineer with a focus on compliance and security best practices to join this newly launched AWS security service. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions is conducting automated compliance checks against AWS security best practices, industry standards, and regulatory frameworks. The person joining Security Hub in this position will lead the effort to define security best practices for each AWS service and define requirements for rules to assess compliance against those best practices.

The successful candidate is one who has experience defining technical requirements for compliance and security best practices. You should be comfortable looking at an AWS service and identifying what security controls should be in place to help customers be confident that they are using that service in a secure way. You should also be comfortable developing requirements that developers can utilize to translate security controls into automated rules.

A key aspect of this job is the ability to earn trust with large network of stakeholders: AWS service owners, security expects in our solution architecture and consulting teams, Security Hub's development team, and, most importantly, our customers. In addition to being a technical expert in security best practices and compliance, you will be a leading voice in the effort to raise the bar for security and compliance across AWS.

Desired profile



BASIC QUALIFICATIONS

· BS in computer science, networking, information systems, computer engineering, or 10+ years of equivalent experience
· 10+ years of experience in identifying security best practices or technical compliance requirements
· 4+ years of experience in network, system, or software architecture; design, implementation, support, and evaluation of security-focused tools and services
· 4+ years of scripting or programming experience in Ruby, Python, Shell/BASH scripting, Java, C/C++, C*, Perl, or other languages
· 2+ years of experience in one or more of the following areas: cryptography and data protection, web and network protocols, data structures and algorithms, identity and access management, incident response, software development, threat modeling, pen tests, or vulnerability assessments

Make every future a success.
  • Job directory
  • Business directory