hirly

Amazon

Security Engineer II, CLS Application Security

Irvine, California, USA

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Amazon first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Role family
Engineering
Seniority
Mid level
Country
US
Work mode
On-site / unstated
First seen by hirly
30 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Love the idea of stopping security problems before they ever reach production — at a scale most engineers never get to touch? Come build automation and AI-powered tooling that protects the software behind Amazon's fulfillment, delivery, and grocery operations.

We're a security team that cares about work-life harmony and meaningful work, and we invent novel ways to reduce risk at scale. You'll embed security early in the development lifecycle, partner directly with builder teams, and own a strategic project end to end while helping builders ship secure software faster. If you'd rather build a mechanism that prevents a whole class of vulnerabilities than review the same issue twice, you'll fit right in here.

  • Key job responsibilities
  • - Lead a strategic security initiative end to end — scoping, design, implementation, testing, deployment, and maintenance — while guiding other engineers along the way.
  • - Build security automation and AI-powered tooling that scales beyond one-off reviews: prevention rules, secure defaults, and paved paths that stop vulnerabilities before they reach production.
  • - Review application architecture and designs, leading security design reviews and steering builders toward secure-by-default solutions.
  • - Consult directly with development teams, resolving findings and giving fast, actionable guidance that meets or exceeds the security bar.
  • - Find opportunities to centralize controls so many teams can adopt one solution instead of each building their own, reusing what already exists wherever possible.
  • - Dig into ambiguous, high-impact risks, spot patterns across a large application footprint, and fix root causes with reproducible mechanisms that are simple, maintainable, and built to last.
  • - Communicate risk and recommendations clearly to engineers, partner security teams, and business stakeholders, and speak up for the right outcome even when it isn't the popular one.
  • - Coach and mentor teammates to raise the bar on how the team works and the value it delivers.
  • A day in the life
  • Most days you'll split your time between the strategic project you own and the builders who need you. You might start by advancing your project — designing a piece of automation or AI tooling — then jump into a design review to help a team ship securely, or dig into a tricky consult where the right answer isn't obvious. You'll partner closely with development teams across our operations and grocery businesses, and with other security teams whose work connects to yours. When an urgent security issue comes up, you'll help contain it and make sure the fix sticks.
  • About the team
  • We embed security early in the development lifecycle, meeting builders where they are so issues get caught before they reach production. Our vision is a world where security is built in: guidance shows up right when builders need it, automation catches preventable issues, and our people focus on the risks that truly need human judgment. We live by a few tenets — automate to scale and save human expertise for judgment, design security in rather than bolt it on, prevent instead of react, and earn builder trust through clarity. We care about meaningful work and work-life harmony, and we have fun inventing.
  • Diverse Experiences
  • Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
  • Why Amazon Security?
  • At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
  • Inclusive Team Culture
  • In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
  • Training & Career Growth
  • We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
  • Work/Life Balance
  • We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

Basic qualifications

  • - 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience
  • - Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent
  • - Experience owning and leading significant projects from concept to deployment
  • - Experience communicating security risk to technical and non-technical stakeholders in writing
  • - 3+ years of application security engineering experience (security design reviews, threat modeling, code-level vulnerability analysis)
  • - Experience carrying a builder-facing security consult load (intake, triage, guidance, resolution tracking)

Preferred qualifications

  • - Experience in a logistics/operations environment
  • - Experience in root cause analysis and error correction, identifying changes to procedures and systems to implement long-term fixes and avoid repeating issues
  • - Experience in mentoring, leading, or managing more junior engineers
  • - Experience with cloud security in AWS (IAM, VPC, KMS, CloudTrail, or equivalent services)
  • - Experience building automated security controls or shifting security left in CI/CD pipelines

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Los Angeles County applicants: Job duties for this position include: work safely and cooperatively with other employees, supervisors, and staff; adhere to standards of excellence despite stressful conditions; communicate effectively and respectfully with employees, supervisors, and staff to ensure exceptional customer service; and follow all federal, state, and local laws and Company policies. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness and professionalism, and safeguard business operations and the Company’s reputation. Pursuant to the Los Angeles County Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qua

Original posting on Amazon's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job