Amazon Web Services
Cloud Services
SecurityEngineer
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Engineer at Amazon Web Services. Skills: Incident response, Threat detection, Security monitoring, SIEM. Perform security event monitoring. Perform incident management”
Industry & Context.
Root cause analysis
On-call duties, Australian Government Security Vetting Agency clearance
What They're Looking For.
Must Have
Good working knowledge of foundational systems, Good understanding of incident response, Experience with SIEM tools, Excellent analytical skills, Excellent problem-solving skills, Excellent communication skills, Hold Australian Government Security Vetting Agency clearance
Nice to Have
2+ years experience as SOC Analyst, 2+ years experience as Defensive Cyber Role, Demonstrated experience incident response, Demonstrated experience threat detection, Demonstrated experience security monitoring, Technical working knowledge Cryptography, Technical working knowledge Identity & Access Management, Technical working knowledge Application Security, Experience with AWS products, Experience with AWS services
What You'll Do.
Perform security event monitoring
Perform incident management
Perform incident response
Develop SIEM detections
Maintain SIEM detections
Develop SIEM dashboards
Maintain SIEM dashboards
Develop SIEM correlation rules
Tune SIEM correlation rules
Maintain SIEM correlation rules
Conduct proactive threat hunting
Conduct threat analysis
Investigate security alerts
Respond to security alerts
Investigate security incidents
Respond to security incidents
Be escalation point for alerts
Be escalation point for incidents
Support integration security data
Support optimisation security data
Contribute continuous improvement SOC
Contribute automation initiatives
Perform on-call duties
Monitor security alerts
Investigate suspicious activities
Analyse network traffic
Determine legitimate threats
Determine false positives
Coordinate immediate response actions
Write security detections
Implement custom detection rules
Tune existing security signatures
Create automated alerts
Proactively search logs
Proactively search endpoint data
Proactively search system activities
Identify advanced persistent threats
Identify security breaches
Work with service teams
Remediate identified vulnerabilities
Coordinate security patches
Coordinate system hardening
Provide security guidance
Ensure implementation security controls
Create security performance indicators
Develop executive reports
Build real-time dashboards
How You'll Work.
Team & Collaboration
Work closely with security team; Collaborate with IT teams; Collaborate with network teams; Collaborate with application teams
Communication Scope
Executive-level reports
Full Job Description
Amazon Web Services (AWS) is the leading cloud service provider, providing virtualised infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises to large government customers, run their operations and applications on AWS’ highly secure infrastructure. AWS Security is looking for a Security Systems Engineer to play a pivotal role in ensuring the security and integrity of our systems and infrastructure. You will work closely with our security team to implement and maintain robust security measures that adhere to Australian Government security requirements, including the Protective Security Policy Framework (PSPF) and the Information Security Manual (ISM). Key job responsibilities • Performing security event monitoring, incident management and response. • Develop, tune, and maintain SIEM detections, dashboards, and correlation rules • Conduct proactive threat hunting and analysis to identify suspicious behaviour • Investigate, respond and be the escalation point for security alerts and incidents • Support the integration and optimisation of security data sources within SIEM platforms • Contribute to continuous improvement of SOC processes and automation initiatives including authoring SOC SOP’s and runbooks. • Apply frameworks such as MITRE ATT&CK and NIST in concert with the ISM and PSPF to guide security operations. • Perform on-call duties as required, out of business hours. Hold or be able to attain an Australian Government Security Vetting Agency clearance (see https://www1.defence.gov.au/security/clearances) A day in the life A typical day for a Security Engineer may involve Responding to new detections: Monitor security alerts in real-time, investigate suspicious activities by analysing logs and network traffic, determine if incidents are legitimate threats or false positives, and coordinate i
Applying for this Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Amazon Web Services?
Real rants from real employees. Read before you apply.