▷ Urgent Pentest Security Engineer, Devices
5 days ago
Pentest Security Engineer, Devices & Services Pentesting
Job ID: 2874681 | Amazon Development Center Germany GmbH
Come join our penetration testing team dedicated to the detection and exploitation of vulnerabilities from Amazon’s consumer services and devices to the Kuiper satellites. This includes conducting in-depth reviews of complex service workflows including authentication mechanisms, AI, mobile, web applications, and web service APIs. Pentesters also invent new ways to automate and improve their work with techniques including AI/LLMs, fuzzing, detection at scale, and static analysis.
Our team operates under the Amazon Devices and Services Trust & Security (DSTS) organization which was formed in 2014 with the mission of protecting Amazon Devices & Services (D&S) customers’ trust, data, and the systems on which they rely. We protect customers by performing security reviews, offensive testing, vulnerability assessments, and provide guidance for remediations. We drive down costs by building and automating security foundations and integrating them into design and release processes.
The DSTS penetration testing organization is growing and seeking an experienced web penetration tester to help shape the future of Amazon’s service security. You will work with builder teams and product owners to perform penetration testing and identify high-impact security vulnerabilities across the web services ecosystem supporting Amazon’s devices. The ideal candidate will be expected to comprehend large complex web service architectures, dive deep into a service's source code, and to get some exposure to device penetration tests.
In this role, you will be part of a dedicated team of talented penetration testers identifying vulnerabilities in the devices and services ecosystem. You will strive to understand systems, software, and services deeply and develop creative ways to break assumptions in order to find vulnerabilities. You care deeply about keeping millions of customers that rely on Amazon’s consumer products safe and are passionate about mitigating vulnerabilities by providing actionable guidance to product teams.
Key job responsibilities
1. Contribute to penetration tests against services and software released by Amazon’s Devices & Services organization. This includes working closely with builder teams to find vulnerabilities, develop proof of concept exploits, report findings, and validate patches.
2. Analyze and identify security vulnerabilities in source code using both automated and manual static analysis tools and techniques.
3. Review and influence technical solutions to mitigate security vulnerabilities by providing actionable long-term risk mitigation guidance to drive security improvements.
4. Provides impactful security contributions to large product lines through close collaboration with our partner builder teams.
5. Develop detailed technical documentation describing identified vulnerabilities, associated impact, and recommended remediation to guide communication with internal engineering stakeholders and leadership.
6. Continuous growth and development of technical skillsets while contributing to standing projects for program improvement in DSPT.
BASIC QUALIFICATIONS
1. Bachelor’s degree in Computer Science or related field and 1+ year of equivalent industry experience or 3+ years of equivalent industry experience.
2. Core understanding of web application and service API vulnerabilities (e.g. mass assignment, broken object/function level authorization, JWT/OAuth, injection, business logic flaws, excessive data exposure, etc.).
3. Experience tracing sources and sinks during code review to identify vulnerabilities, and providing contextual remediation guidance to address vulnerability root cause.
4. Experience designing and reviewing secure system architectures through the use of Threat Modeling incorporating sophisticated and modern attacks.
5. Knowledge of cloud service providers and their offerings, preferably AWS, and its various technologies and services.
PREFERRED QUALIFICATIONS
1. Foundational knowledge of hardware security fundamentals.
2. Experience in CTF competitions, CVE research, and/or Bug Bounty recognition.
3. Experience with Microservice architectures, AI/ML technologies, scripting and tooling, or pentesting as part of an SDLC operation of a large-scale enterprise environment.
4. Published security research (e.g. conference presentations, whitepapers, blog posts).
Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build.
Posted: January 27, 2025
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.
#J-18808-Ljbffr
-
Pentest Security Engineer II, Devices
1 week ago
Dublin, Ireland Amazon Full timePentest Security Engineer II, Devices & Services Pentesting Job ID: 2858054 | Amazon Development Center Germany GmbH - C92 Come join our penetration testing team dedicated to the detection and exploitation of vulnerabilities across Amazon’s portfolio ranging from consumer services and devices to the Kuiper satellites. This includes conducting in-depth...
-
▷ [Urgent] Graduate IT Security Analyst
2 weeks ago
Dublin, Ireland Mercury Engineering Full timeBeware of Fraudulent Mercury Job Postings. Fraudsters may be posting fake job listings claiming to be from Mercury. Legitimate Mercury job offers will never ask for personal information or upfront payments. Always verify job postings through official Mercury channels. Graduate IT Security Analyst, Dublin, Ireland Mercury is the European leader in...
-
Electronic Security Engineer
7 days ago
Dublin, Ireland BIM Recruiter Full timeIf you are currently in an Installation or Commissioning Engineer role within the security sector in Ireland and you are unhappy with your current job, for whatever reason, please Contact BIM Recruiter TODAY.We are working with some of the markets leading electronic security companies and we are recruiting right across the island of IrelandWe urgently need...
-
(Apply in 3 Minutes) Security Service Engineer
2 weeks ago
Dublin, Ireland Chubb Fire and Security Ltd Full timeSecurity Service Engineer Apply to locations: Chubb Dublin, Unit 3/4, Deansgrange Business Park, Deansgrange, Dublin, A94 D954 Time type: Full time Posted on: 30+ Days Ago Job requisition id: JR40000185 It's fun to work in a company where people truly BELIEVE in what they're doing! Think you know Chubb? We might just surprise you! Chubb is so much more...
-
Dublin, Ireland Amazon Full timeSr. Software Development Engineer, Device Farm Job ID: 2599145 | Amazon Development Center U.S., Inc. Device Farm is building the world's largest cloud of real physical smart devices @AWS. With millions of developers writing apps, AWS Device Farm brings devices closer to the developers by providing them instantaneous remote access to real devices in AWS...
-
Senior Network Security Engineer
2 weeks ago
Dublin, Ireland SOLAS IT RECRUITMENT Full timeSenior Network Security Engineer We are seeking a skilled Network Security Engineer to manage and secure our network infrastructure. The ideal candidate will have extensive experience with Cisco Networks and a deep understanding of network security principles and practices. Responsibilities: - Manage the security of Cisco routers, switches, networking...
-
Urgent! IT Security Engineer
2 weeks ago
South Dublin, Ireland FoodCloud Full timeJob Application - IT Security Engineer Jan 2025 Published Date: 2025-01-07, Tallaght FoodCloud has a vision for a world where no good food goes to waste and the only thing bigger than our vision is our drive – we are an organisation of doers that are driven by kindness, fairness and a desire to help people and the planet. Would you like to join an...
-
Senior Software Engineer
2 weeks ago
Dublin, Ireland SOLAS IT RECRUITMENT Full timeSenior C# or VB.Net Developer – Hybrid We are looking for an experienced Senior C# or VB.Net Developer to join our client's team in Dublin. You will work on developing and maintaining software solutions, focusing on web-based and mobile platforms. This role requires a strong background in software development and familiarity with key technologies that...
-
Senior Device Design Engineer
3 weeks ago
Dublin, Ireland Hyper Recruitment Solutions LTD Full timeWe are currently looking for a Senior Device Design Engineer to join a leading Pharmaceutical company based in the Dublin area. As the Senior Device Design Engineer, you will be responsible for driving the design and development of innovative combination products, contributing to a diverse range of exciting projects.KEY DUTIES AND RESPONSIBILITIES:Your...
-
IT Security Engineer
2 weeks ago
Dublin, Ireland Rainmaker Business Technologies Full timeLocation: 88 Sandymount Road, Sandymount Village, Dublin 4 Job type: Fulltime, Permanent, On-premises Additional benefits: Income Protection, Death In Service Benefit Job Description: IT Security Engineer Minimum Experience: 3-5 years Qualifications: BSc. In Software Engineering or a similar technical discipline Rainmaker Business Technologies provides...
-
Dublin, Ireland Amazon Full timeAmazon Lab126 is an inventive research and development company that designs and engineers high-profile, portable, hand-held consumer electronic products like the Kindle. The products we design and engineer are easy-to-use and offer user benefits that are only made possible through tightly integrated digital technologies and wireless connectivity. Lab126...
-
Dublin, Ireland Amazon Full timeSoftware Developer Engineer, Device Software Services The Amazon Devices team designs and engineers high-profile consumer electronics, including the best-selling Kindle family of products. We have also produced groundbreaking devices like Fire tablets, Fire TV, Amazon Dash, and Amazon Echo. What will you help us create? A Software Developer Engineer (SDE)...
-
Dublin, Ireland Amazon Full timeSoftware Development Engineer, Amazon Security Platform Engineering Job ID: 2792417 | Amazon Data Services Ireland Limited At Amazon, security is job zero. Amazon Security Platform Engineering provides the tools that allow Amazon to secure the cloud, our employees, and our customers. Security is critical to Amazon's customer trust. The Amazon Security...
-
Software Development Engineer, Device OS
5 days ago
Dublin, Ireland Amazon Full timeSoftware Development Engineer, Device OS About Lab126: Amazon Lab126 is an inventive research and development company that designs and engineers high-profile consumer electronics. Lab126 began in 2004 as a subsidiary of Amazon.com, Inc., originally creating the best-selling Kindle family of products. Since then, Lab126 has produced groundbreaking devices...
-
Front End Engineer
1 week ago
Dublin, Ireland Amazon Full timeDo you want to build frameworks for the next generation of UI apps running on Amazon Devices? Do you believe in the “Write Once Run Anywhere” coding paradigm? How about your code providing a positive impact to our smart home customers by ensuring unique Amazon technologies are easily available to app developers? Do you want to work in a horizontal team...
-
Dublin, Ireland Johnson Controls, Inc. Full timeJob Title: Installation Engineer – Fire and Security. Ready for your next big opportunity? We’ve got it right here! About Us: At Johnson Controls, we’re the global leader in Engineering & Integrated Solutions, specializing in Security. We’re the name behind some of the biggest brands, and our cutting-edge technology keeps us ahead of the...
-
▷ Urgent! Lead Security Engineer
2 weeks ago
Dublin, Ireland J.P MORGAN S.E Dublin Branch Full timeJob Description Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies. As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity & Technology Controls, you...
-
Lead Information Security Engineer
5 days ago
Dublin, Ireland CareerArc Full timeOur Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart, and accessible. Our technology and innovation,...
-
Senior Product Engineer
2 weeks ago
Dublin, Ireland PM Group Full timeOverview Who we are PM Group is an employee owned, international project delivery firm with a team of 3,700 + people. We are world leaders in the pharma, food, medtech and mission critical sectors. From our network of offices in Europe, Asia and the US, we work with the world's leading organisations. We are focused on growing a sustainable business centred...
-
Senior Product Engineer
19 hours ago
Dublin, Ireland PM Group Full timeOverview Who we are PM Group is an employee owned, international project delivery firm with a team of 3,700 + people. We are world leaders in the pharma, food, medtech and mission critical sectors. From our network of offices in Europe, Asia and the US, we work with the world's leading organisations. We are focused on growing a sustainable business centred...