Manager III, Security Engineer, InfraSec Access Boundary Security
Amazon Web Services (AWS) · Seattle, WA · 3 wk ago
EngineeringFull-time
Key job responsibilities
- Lead and develop a team of security engineers focused on network boundary protection, access controls, and vulnerability management across AWS's global infrastructure.
- Define and execute the strategic vision for securing AWS's operational network from device provisioning through decommissioning.
- Drive adoption of AI/ML-powered security solutions, including anomaly detection, automated reasoning for configuration validation, and machine learning for exposure identification.
- Own end-to-end security validation processes, ensuring consistent enforcement of access protection policies at scale.
- Partner cross-functionally with Infrastructure Security teams to identify gaps, reduce risk, and raise the security bar.
- Establish and track operational metrics to measure team effectiveness, threat detection coverage, and incident response readiness.
- Recruit, mentor, and retain top security engineering talent while fostering a culture of ownership, innovation, and operational excellence.
- Communicate security posture, risks, and strategic priorities to senior leadership with clarity and precision.
- Champion continuous improvement through automation, tooling investments, and process optimization to stay ahead of evolving threats.
- 5+ years of managing and developing teams experience
- 5+ years of progressive work within a software security team or related operating environment experience
- Bachelor's degree in Computer Science, Information Security, or a related field
- Knowledge of security of web services, video content protection technologies, cryptography, network security protocols and operating system security
- Experience in managing and developing teams
- Experience in progressive work within a software security team or related operating environment
- Experience applying threat modeling or other risk identification techniques or equivalent
- Information security professional certification (SANS GIAC, CISSP etc.)
- Master's degree in Computer Science or a related field
- Knowledge of information security technologies such as security design review, threat modeling, risk analysis, and software testing techniques
- Experience managing remote team members