Technical Program Manager, Stores Security, Penetration Testing
GB, Virtual Location - Uk
Amazon.com
Free shipping on millions of items. Get the best of Shopping and Entertainment with Prime. Enjoy low prices and great deals on the largest selection of everyday essentials and other products, including fashion, home, beauty, electronics, Alexa...
Amazon Stores Penetration Testing is seeking a Security Technical Program Manager (TPM) II to help keep Amazon's applications and services secure for its customers. This team is responsible for supporting penetration testing Amazon’s services, applications, and websites; and partnering with service teams to remediate weaknesses and sharpen our software development lifecycle. You will be challenged with opportunities, both technologically and as a leader, but will also be a great deal of fun if hacking Amazon sounds exciting to you. You will be in direct contact with teams in a variety of business verticals, giving you first hand knowledge about how Amazon is built and how it operates at a deep, technical level. Additionally, you will leverage the knowledge you gain about Amazon to find new ways to drive improvements to services, processes, and technologies throughout the company.
Covering a broad range of work, this role is focused on supporting the Proactive Pentest team for EMEA and APAC customers in driving strategic application penetration testing initiatives by influencing key stakeholders and partnering with teams throughout Amazon to enable the implementation of innovative security solutions and mechanisms to improve pentesting capabilities, quality, efficiency, and scale. Additionally, you’ll be using your program/project management and technical skills to continually improve and mature the program, support Pentest program managers orchestrating application penetration testing engagements, maintain tooling and processes across internal and third-party vendors, and help look around corners in order to raise Amazon’s high security bar. You’ll also be working across the Pentest team of highly-skilled security engineers, all working with a singular focus of maintaining our customer’s trust.
A person in this role must show exemplary judgment in making technical trade-offs between short-term fixes and long-term security and business goals. They must also demonstrate resilience and navigate ambiguous situations with composure and tact. Above all else, a strong sense of customer obsession is necessary to focus on the ultimate goal of keeping Amazon and its customers secure.
Key job responsibilities
• Provide technical and platform support to internal customers for penetration testing programs, engagements, and tools
• Support scoping and intake of penetration testing engagements
• Develop and implement improvements to penetration testing processes
• Ensure penetration testing deliverables meet our high standards both technically and professionally
• Refine mechanisms for measuring quality and efficiency of penetration testing engagements
• Collaborate and communicate with leadership, partner teams, and application owners to prioritize and drive the resolution of discovered security issues
• Coordinate across Application Security and Amazon to understand and support cross-organizational initiatives
• Promote effective teamwork, communication, collaboration and commitment across multiple disparate groups with competing priorities
• Identify, develop, and implement internal program and process improvements
• Manage and coordinate third-party vendors and associated budgeting
• Develop, track, and report metrics
• Monitor and report delivery against program goals
About the team
About Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon and AWS’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
- 3+ years of technical product or program management experience
- 2+ years of project management disciplines including scope, schedule, budget, quality, along with risk and critical path management experience
- Bachelor's degree in engineering, computer science or equivalent
- Knowledge of system or security design approaches with experience influencing engineering and architectures to deliver results
- Experience with internal tools, Adobe Workfront, QuickSight and other AWS services, and automation
Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice (https://www.amazon.jobs/en/privacy_page) to know more about how we collect, use and transfer the personal data of our candidates.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
Covering a broad range of work, this role is focused on supporting the Proactive Pentest team for EMEA and APAC customers in driving strategic application penetration testing initiatives by influencing key stakeholders and partnering with teams throughout Amazon to enable the implementation of innovative security solutions and mechanisms to improve pentesting capabilities, quality, efficiency, and scale. Additionally, you’ll be using your program/project management and technical skills to continually improve and mature the program, support Pentest program managers orchestrating application penetration testing engagements, maintain tooling and processes across internal and third-party vendors, and help look around corners in order to raise Amazon’s high security bar. You’ll also be working across the Pentest team of highly-skilled security engineers, all working with a singular focus of maintaining our customer’s trust.
A person in this role must show exemplary judgment in making technical trade-offs between short-term fixes and long-term security and business goals. They must also demonstrate resilience and navigate ambiguous situations with composure and tact. Above all else, a strong sense of customer obsession is necessary to focus on the ultimate goal of keeping Amazon and its customers secure.
Key job responsibilities
• Provide technical and platform support to internal customers for penetration testing programs, engagements, and tools
• Support scoping and intake of penetration testing engagements
• Develop and implement improvements to penetration testing processes
• Ensure penetration testing deliverables meet our high standards both technically and professionally
• Refine mechanisms for measuring quality and efficiency of penetration testing engagements
• Collaborate and communicate with leadership, partner teams, and application owners to prioritize and drive the resolution of discovered security issues
• Coordinate across Application Security and Amazon to understand and support cross-organizational initiatives
• Promote effective teamwork, communication, collaboration and commitment across multiple disparate groups with competing priorities
• Identify, develop, and implement internal program and process improvements
• Manage and coordinate third-party vendors and associated budgeting
• Develop, track, and report metrics
• Monitor and report delivery against program goals
About the team
About Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon and AWS’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Basic Qualifications
- 3+ years of technical product or program management experience
- 2+ years of project management disciplines including scope, schedule, budget, quality, along with risk and critical path management experience
- Bachelor's degree in engineering, computer science or equivalent
Preferred Qualifications
- Experience in cybersecurity, penetration testing, vulnerability/risk assessment, or related areas.- Knowledge of system or security design approaches with experience influencing engineering and architectures to deliver results
- Experience with internal tools, Adobe Workfront, QuickSight and other AWS services, and automation
Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice (https://www.amazon.jobs/en/privacy_page) to know more about how we collect, use and transfer the personal data of our candidates.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
5
0
0
Categories:
Leadership Jobs
PenTesting Jobs
Tags: Application security Automation AWS Cloud Computer Science Pentesting Privacy Risk assessment SDLC
Perks/benefits: Career development Flex hours Startup environment Team events
Regions:
Remote/Anywhere
Europe
Country:
United Kingdom
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Specialist jobsSenior Cloud Security Engineer jobsInformation System Security Officer jobsSenior Security Analyst jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsInformation Security Manager jobsSystems Engineer jobsSenior Information Security Analyst jobsSenior Network Security Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsSecurity Specialist jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsThreat Intelligence Analyst jobsSenior Software Engineer jobs
Java jobsEncryption jobsEDR jobsBash jobsTS/SCI jobsIDS jobsIPS jobsThreat detection jobsSQL jobsTerraform jobsSDLC jobsSplunk jobsMalware jobsTop Secret jobsFinance jobsDocker jobsForensics jobsSOC 2 jobsRMF jobsActive Directory jobsCompTIA jobsIntrusion detection jobsITIL jobsOWASP jobsGIAC jobs
DoDD 8570 jobsVPN jobsAnsible jobsHIPAA jobsOSCP jobsIT infrastructure jobsData Analytics jobsTCP/IP jobsUNIX jobsCCSP jobsCRISC jobsSAP jobsBanking jobsSANS jobsSOAR jobsSOX jobsJavaScript jobsMITRE ATT&CK jobsSecurity strategy jobsClearance Required jobsMachine Learning jobsZero Trust jobsDNS jobsJira jobsPolygraph jobs