Security Manager, Vulnerability Management and Remediation Operations
Austin, Texas, USA
Amazon.com
Free shipping on millions of items. Get the best of Shopping and Entertainment with Prime. Enjoy low prices and great deals on the largest selection of everyday essentials and other products, including fashion, home, beauty, electronics, Alexa...
The Vulnerability Management and Remediation Operations (VMR Operations) organization is looking for a Security Manager with deep technical expertise in security operations and program management to lead our Austin-based team.
Amazon develops products and services that transform the way customers live. Across teams and geographies, we strive to delight customers and earn their trust. Members of the Stores Security team are guardians of that trust. From drones to grocery stores and everything in between, our mission is to assess risk, classify data and systems, detect potential intrusion, and respond quickly to security events across Amazon’s critical business functions, including Retail, Customer Service, Worldwide Operations, Consumer Payments, Physical Stores, and Healthcare.
Within Stores Security, the VMR Operations organization is responsible for all aspects of creating, managing, and remediating security issues across Amazon. Additionally, VMR Operations is responsible running Amazon’s Vulnerability Management lifecycle including vulnerability intake, assessment, discovery, and remediation.
Key job responsibilities
- You will be driving the day-to-day operations of your team across multiple vulnerability management functions, including vulnerability assessments and detection development.
- You will partner with your peers in Seattle, Sydney, and London to continuously improve our operational mechanisms.
- You will partner with builders and leaders across Amazon to ensure proper mitigation and remediation of security issues.
- You will leverage relationships with engineers across Stores Security, business teams, and leaders throughout Amazon prioritize deliverables, escalate roadblocks, and improve organizational processes.
- You will build trust with Principal Engineers and executive leaders by leveraging your technical expertise to understand technical challenges, design improved solutions, and hold a high program bar.
- You will use your information security expertise to champion and drive risk-based decisions across complex, multi-disciplinary programs to ensure Amazon properly manages security risk.
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
- Bachelor’s Degree in Computer Science, Information Security, Information Technology, or equivalent work experience
- Minimum of five (5) years of experience in threat intelligence, vulnerability management, or other related discipline
- Minimum of two (2) years of engineering or people leadership experience
- Excellent communication and data presentation skills that allow you to clearly, compellingly, and effectively influence audiences internally and externally, across organizational boundaries
- Experience performing risk assessments of vulnerabilities and evaluating compensating and mitigating controls in large, complex infrastructures
- Experience hiring, mentoring, and leading Security Engineers and Technical Program Managers
- Relevant industry certifications (ISC2, ISACA, SANS/GIAC, CompTIA, Microsoft, Linux, AWS)
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
Amazon develops products and services that transform the way customers live. Across teams and geographies, we strive to delight customers and earn their trust. Members of the Stores Security team are guardians of that trust. From drones to grocery stores and everything in between, our mission is to assess risk, classify data and systems, detect potential intrusion, and respond quickly to security events across Amazon’s critical business functions, including Retail, Customer Service, Worldwide Operations, Consumer Payments, Physical Stores, and Healthcare.
Within Stores Security, the VMR Operations organization is responsible for all aspects of creating, managing, and remediating security issues across Amazon. Additionally, VMR Operations is responsible running Amazon’s Vulnerability Management lifecycle including vulnerability intake, assessment, discovery, and remediation.
Key job responsibilities
- You will be driving the day-to-day operations of your team across multiple vulnerability management functions, including vulnerability assessments and detection development.
- You will partner with your peers in Seattle, Sydney, and London to continuously improve our operational mechanisms.
- You will partner with builders and leaders across Amazon to ensure proper mitigation and remediation of security issues.
- You will leverage relationships with engineers across Stores Security, business teams, and leaders throughout Amazon prioritize deliverables, escalate roadblocks, and improve organizational processes.
- You will build trust with Principal Engineers and executive leaders by leveraging your technical expertise to understand technical challenges, design improved solutions, and hold a high program bar.
- You will use your information security expertise to champion and drive risk-based decisions across complex, multi-disciplinary programs to ensure Amazon properly manages security risk.
About the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why Amazon Security
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Basic Qualifications
- Bachelor’s Degree in Computer Science, Information Security, Information Technology, or equivalent work experience
- Minimum of five (5) years of experience in threat intelligence, vulnerability management, or other related discipline
- Minimum of two (2) years of engineering or people leadership experience
Preferred Qualifications
- Experience building and operating Vulnerability Management, Threat Intelligence, Incident Response, or other security programs with hundreds of stakeholders and executive leadership visibility- Excellent communication and data presentation skills that allow you to clearly, compellingly, and effectively influence audiences internally and externally, across organizational boundaries
- Experience performing risk assessments of vulnerabilities and evaluating compensating and mitigating controls in large, complex infrastructures
- Experience hiring, mentoring, and leading Security Engineers and Technical Program Managers
- Relevant industry certifications (ISC2, ISACA, SANS/GIAC, CompTIA, Microsoft, Linux, AWS)
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Categories:
Incident Response Jobs
Leadership Jobs
Tags: AWS Cloud CompTIA Computer Science GIAC Incident response ISACA Linux Risk assessment SANS Threat intelligence Vulnerabilities Vulnerability management
Perks/benefits: Career development Flex hours Team events
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Specialist jobsProduct Security Engineer jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSenior Cybersecurity Engineer jobsSystems Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsSenior Network Security Engineer jobsInformation Security Manager jobsCyber Security Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsSecurity Consultant jobsIT Security Engineer jobsSecurity Specialist jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsCybersecurity Specialist jobsSenior Software Engineer jobs
Encryption jobsTS/SCI jobsSaaS jobsJava jobsBash jobsThreat detection jobsTop Secret jobsTerraform jobsSplunk jobsRMF jobsSDLC jobsIDS jobsIPS jobsSOC 2 jobsSQL jobsMalware jobsCompTIA jobsFinance jobsDocker jobsForensics jobsActive Directory jobsIntrusion detection jobsITIL jobsGIAC jobsDoDD 8570 jobs
VPN jobsOWASP jobsIT infrastructure jobsHIPAA jobsCRISC jobsAnsible jobsTCP/IP jobsCCSP jobsClearance Required jobsData Analytics jobsMITRE ATT&CK jobsBanking jobsOSCP jobsNIST 800-53 jobsZero Trust jobsCISO jobsJira jobsUNIX jobsSOAR jobsEndpoint security jobsDNS jobsSOX jobsIndustrial jobsGCIH jobsPolygraph jobs