Wireless Security Engineer II, Wireless Security
Application deadline: August 8, 2026. This position requires that the candidate selected be a US Citizen and may require up to 50% travel within and outside the United States.
About the role
The Amazon Wireless Security Assessments team delivers continuous wireless risk transparency for Amazon facilities. We build and operate detection and assessment capabilities that identify wireless threats across Amazon facilities. This role combines working knowledge of wireless security with deep expertise in data telemetry, detection engineering, and security automation. You'll own the detection engineering lifecycle for wireless threats, turning raw RF telemetry and system logs into production detection logic at global scale with AI-assisted tooling.
Responsibilities
- Design, build, test, and maintain cloud-based detection logic for wireless security threats using telemetry from distributed sensor systems and enterprise security tooling
- Analyze large-scale security data — RF metadata, wireless IDS alerts, syslog, and custom sensor telemetry — to identify anomalies, trends, and security issues
- Develop and refine data pipelines that ingest, normalize, and enrich wireless telemetry for continuous assessment and detection
- Own wireless security investigations from framing through outcome delivery
- Leverage and improve AI-assisted workflows — working alongside automation tooling for data collection, triage, and pattern recognition
- Conduct targeted on-site wireless assessments when physical validation is required, using wireless capture and analysis tools across relevant protocols
- Author risk-calibrated findings and drive remediation with facility owners and partner teams
- Build tools and automation that increase the team's detection coverage and operational efficiency
- Present findings, briefs, and analysis to senior leadership, internal departments, and stakeholders
- Engage with partner teams to understand security concerns and educate on wireless security topics
A day in the life
You start your morning reviewing detection performance — checking for alerts that fired overnight, tuning a rule that's generating noise, and investigating an anomalous telemetry pattern flagged for your review. You write a new detection for a wireless protocol behavior you researched last week, validate it against historical data, and push it to production. After lunch, you work on improving a data pipeline that normalizes sensor telemetry from a newly deployed site, then pair with a teammate to refine triage logic in an automated workflow. Later in the week, you might fly to a facility to validate a detection hypothesis with hands-on RF capture — confirming what the data told you, or discovering what it missed.
About the team
The Wireless Security Assessments team provides wireless risk transparency across Amazon facilities. We integrate AI-assisted workflows into our operating model so engineers focus on judgment and outcomes rather than mechanical data collection. We are a small, high-autonomy team within a larger global security organization.
Requirements
Basic Qualifications
- 3+ years of security-related professional experience
- 3+ years of experience in detection engineering, security data analysis, or security operations engineering
- 1+ years of hands-on experience with wireless security tools and concepts (e.g., wireless packet capture, spectrum analysis, WIDS, or wireless protocol analysis across 802.11, Bluetooth, IoT, or cellular)
- Experience with detection engineering and/or anomaly detection within security — writing detection logic, security rules, or threat signatures for production monitoring systems
- Experience with log aggregation and analysis platforms (e.g., Splunk, OpenSearch, ELK, or equivalent) or security data lakes
- Experience directly working with cloud hosting technologies (AWS, Azure, etc.)
- Software engineering fundamentals with proficiency in Python (or similar) for tooling, automation, and data analysis
- Experience applying threat modeling or other risk identification techniques
Preferred Qualifications
- Experience with AWS products and services (S3, Athena, Lambda, CloudWatch, Kinesis, or equivalent)
- Experience building detection-as-code frameworks or custom detection pipelines
- Experience with LLM-assisted security workflows, agentic orchestration, or AI-augmented security operations (e.g., automated triage, enrichment pipelines, agent-based task execution)
- Experience building data pipelines for security telemetry (ingestion, normalization, enrichment, alerting)
- Experience with software-defined radios and RF signal analysis
- Experience with wireless intrusion detection systems (WIDS) or continuous monitoring platforms
- Knowledge of security telemetry across 2+ domains (e.g., hosts, networks, cloud, physical security, wireless)
- Experience with multiple wireless protocols: 802.11, Bluetooth, IoT (Zigbee, LoRa), Cellular (2G-5G), two-way radio systems
- Experience with threat intelligence, threat hunting, or attacker tradecraft frameworks (e.g., MITRE ATT&CK)
- Bachelor's degree in computer science, electrical engineering, cybersecurity, or equivalent experience
Pay
The base salary range for this position is $159,300 - $202,400 USD annually. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location.
Benefits
- Comprehensive health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans)
- Employee Assistance Program (EAP) and Mental Health Support
- Medical Advice Line
- Flexible Spending Accounts
- Adoption and Surrogacy Reimbursement coverage
- 401(k) matching
- Paid time off and parental leave
Learn more about our benefits at amazon.jobs/en/benefits.