Talent.com
Security Intelligence Engineer, Incident Response Threat Intelligence, ACTI
Security Intelligence Engineer, Incident Response Threat Intelligence, ACTIAmazon • Herndon, VA, United States
Security Intelligence Engineer, Incident Response Threat Intelligence, ACTI

Security Intelligence Engineer, Incident Response Threat Intelligence, ACTI

Amazon • Herndon, VA, United States
1 day ago
Job type
  • Full-time
Job description

We are open to hiring candidates to work out of one of the following locations :

Annapolis Junction, MD, USA | Arlington, VA, USA | Austin, TX, USA | Herndon, VA, USA | New York, NY, USA | Seattle, WA, USA

The Threat Intelligence for Global Enterprise Response (TIGER) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable intelligence on advanced cyber threats to Amazon employees and company assets. Our intelligence supports incident response teams, red teams, detections teams and teams working to prevent financial loss to the company. We obtain indicators and intelligence from a variety of internal and external sources and use that information to develop an understanding of sophisticated actors and their tools, techniques, and procedures. We then leverage that understanding to proactively identify and mitigate malicious activity.

This position requires that the candidate selected be a US Citizen.

The successful candidate will analyze indicators to generate actionable intelligence and insight into current threats. As a Security Intelligence Engineer, you will help enhance our capabilities by formulating new analytic techniques and working across teams to drive the supporting capabilities. A deep understanding of current cyber threat actors and TTPs as well as experience performing question-driven analysis is required. You will leverage your understanding of networking- and host-based indicators, digital forensics, and database querying as you investigate incidents and threats as well.

Key job responsibilities

  • Analyze large and unstructured data sets to identify trends and anomalies indicative of malicious activities.
  • Create security techniques and automation for internal use that enable you to operate at high speed and broad scale.
  • Contribute to Amazon's understanding of the current threat landscape and the techniques, tactics, and procedures associated with specific threats.
  • Perform deep dive analysis of malicious artifacts.
  • Draft and publish finished written threat intelligence products based on findings.
  • Periodic on-call responsibilities.

About the team

Work / Life Balance

Our team puts a high value on work-life balance. It isn't about how many hours you spend at home or at work; it's about the flow you establish that brings energy to both parts of your life. We believe striking the right balance between your personal and professional life is critical to life-long happiness and fulfillment. We offer flexibility in working hours and encourage you to find your own balance between your work and personal lives.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Mentorship & Career Growth

Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we're building an environment that celebrates knowledge sharing and mentorship. We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Diverse Experiences

Amazon Security values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.

Why Amazon Security

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

BASIC QUALIFICATIONS

  • 3+ years of programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language experience
  • 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience
  • 2+ years of troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non-internship) experience
  • Bachelor's degree in computer science or equivalent
  • Bachelor's degree in a STEM field (Science, Technology, Engineering, Mathematics), or 2+ years of IT Security experience
  • Knowledge of networking protocols such as HTTP, DNS and TCP / IP
  • Experience in scripting, programming, and security code reviewing in a common programming language (non-internship)
  • PREFERRED QUALIFICATIONS

  • 2+ years of any combination of the following : threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
  • 2+ years of scripting, programming, or security code review in a common language, such as Python, Java or C++ experience
  • Knowledge of command line tools to troubleshoot protocols, analyze log outputs, or automate basic tasks
  • Knowledge of networking protocols, to include HTTP(S), DNS, and TCP / IP
  • Experience with AWS products and services
  • Experience with programming languages such as Python, Java, C++
  • Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

    Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country / region you're applying in isn't listed, please contact your Recruiting Partner.

    Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $136,000 / year in our lowest geographic market up to $212,800 / year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and / or other benefits. For more information, please visit This position will remain posted until filled. Applicants should apply via our internal or external career site.

    Create a job alert for this search

    Security Engineer • Herndon, VA, United States

    Related jobs
    Senior Cyber Threat Intelligence Analyst

    Senior Cyber Threat Intelligence Analyst

    AIG Insurance • Reston, Virginia, USA
    Full-time
    American International Group Inc.AIG) is a leading global insurance organization.AIG member companiesprovidea wide range of property casualty insurance in approximately 70 countries andjurisdiction...Show more
    Last updated: 2 hours ago • Promoted • New!
    Security Engineer / Architect (ISSE)

    Security Engineer / Architect (ISSE)

    Reflexive Concepts • Fort Belvoir, VA, United States
    Full-time
    Reflexive Concept is seeking a skilled Security Engineer / Architect to join our team! .The candidate will be required to understand and document a systems design and implementation that encompass m...Show more
    Last updated: 15 hours ago • Promoted • New!
    Associate Engineer, SOAR Information Security

    Associate Engineer, SOAR Information Security

    Marriott • Bethesda, MD, United States
    Full-time
    Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAP ().Marriott wishes to add an Associate Engineer to Cyber Analytics and Automation team for our ...Show more
    Last updated: 1 day ago • Promoted
    Associate Security Systems Engineer - Access Control & CCTV

    Associate Security Systems Engineer - Access Control & CCTV

    Kastle Systems • Sterling, VA, United States
    Full-time
    Together, We Enhance Innovation and Growth.G specializes in advanced physical electronic security and life safety solutions. I2G has proven experience in surveillance, access control, and intrusion ...Show more
    Last updated: 1 day ago • Promoted
    Security Engineer (ISSE) Columbia, MD

    Security Engineer (ISSE) Columbia, MD

    Polaris Consulting Group • Columbia, MD, United States
    Full-time
    Polaris is looking for an Information Systems Security Engineer (ISSE).Candidate will perform system or network designs that encompass multiple enclaves, to include those with differing data protec...Show more
    Last updated: 30+ days ago • Promoted
    Incident Response Engineer

    Incident Response Engineer

    Leidos Inc • Alexandria, VA, United States
    Full-time
    At Leidos, we're not just delivering solutions - we're pioneering the future of defense and intelligence technology.Our diverse teams of innovators unite around a singular purpose : empowering our c...Show more
    Last updated: 19 days ago • Promoted
    IA & SS or Security Engineer

    IA & SS or Security Engineer

    AHU Technologies, Inc. • Washington, DC, United States
    Permanent
    Role : IA & SS Master (Security Engineer).The Security Engineer role will focus on designing and developing security architecture patterns that meet regulatory obligations and data protection requi...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

    Security Engineer II, Threat Hunting, Security Incident Response Team (SIRT)

    Amazon • Arlington, VA, United States
    Permanent
    Amazon Security is looking for an experienced Security Engineer who is excited by the idea of searching for undetected threat activities at petabyte scale. In this role, you will work alongside a te...Show more
    Last updated: 30+ days ago • Promoted
    Incident Response Engineer

    Incident Response Engineer

    Leidos • Alexandria, VA, United States
    Full-time
    At Leidos, we're not just delivering solutions - we're pioneering the future of defense and intelligence technology.Our diverse teams of innovators unite around a singular purpose : empowering our c...Show more
    Last updated: 1 day ago • Promoted
    Lead Adversarial Security Engineer

    Lead Adversarial Security Engineer

    Trellix • Washington, DC, United States
    Full-time
    Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
    Last updated: 1 day ago • Promoted
    Detection & Response Security Engineer, Threat Intelligence

    Detection & Response Security Engineer, Threat Intelligence

    META • Washington, DC, United States
    Full-time
    Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a...Show more
    Last updated: 1 day ago • Promoted
    Senior SOC Threat Intel Engineer (Hybrid)

    Senior SOC Threat Intel Engineer (Hybrid)

    First American Financial • Washington, DC, United States
    Full-time
    A financial services firm located in Washington, D.Senior Security Engineer to support Cyber Defense efforts.The role involves analyzing threat intelligence, conducting threat hunts, and improving ...Show more
    Last updated: 20 hours ago • Promoted • New!
    Security Engineer II, Security Incident Response Team (SIRT)

    Security Engineer II, Security Incident Response Team (SIRT)

    Amazon • Arlington, VA, United States
    Full-time
    Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team.In this role you will work within the Amazon Security Incident Response Team (SIRT).SIRT...Show more
    Last updated: 1 day ago • Promoted
    Cyberspace Intelligence Threat Analyst, Journeyman

    Cyberspace Intelligence Threat Analyst, Journeyman

    Leidos • Bethesda, MD, United States
    Full-time
    Looking for an opportunity to make an impact?.At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success.We empowe...Show more
    Last updated: 6 days ago • Promoted
    Cyber Security Incident Response Engineer :

    Cyber Security Incident Response Engineer :

    Akraya • Washington, DC, United States
    Full-time
    Primary Skills : Incident Response-Expert, Scripting-Advanced, TCP / IP-Expert, Security Analysis-Expert, Digital Forensics-Advanced Contract Type : W2 Only Duration : 8+ Months with Possible Extension ...Show more
    Last updated: 15 hours ago • Promoted • New!
    Associate Engineer, SOAR Information Security

    Associate Engineer, SOAR Information Security

    Marriott Hotels Resorts • Bethesda, Maryland, USA
    Full-time
    Marriott wishes to add an Associate Engineer to Cyber Analytics and Automation team for our Security Orchestration and Automated Response (SOAR) this role you will be responsible for gathering req...Show more
    Last updated: 5 days ago • Promoted
    Staff Information Security Engineer (Vulnerability Management)

    Staff Information Security Engineer (Vulnerability Management)

    Zscaler • McLean, Maryland, USA
    Full-time
    Zscaler accelerates digital transformation so our customers can be more agile efficient resilient and secure.Our cloud native Zero Trust Exchange platform protects thousands of customers from cyber...Show more
    Last updated: 2 days ago • Promoted
    Security Engineer, Investigations

    Security Engineer, Investigations

    META • Washington, DC, United States
    Full-time
    Meta), formerly known as Facebook Inc.When Facebook launched in 2004, it changed the way people connect.Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around t...Show more
    Last updated: 1 day ago • Promoted