Amazon.com Inc logo

Security Engineer, Security for Employee and Legal Systems (SEALS)

Amazon.com Inc
  • Seattle, WA
    4 days ago

    Job Description

    The Security for Employee and Legal Systems (SEALS) team protects Amazon"s enterprise HR and Legal applications. Millions of Amazonians use these systems to review their pay, manage their benefits, update their personal information, and handle confidential legal matters. Protecting that data is the core of what SEALS does, and the customers who depend on us are the people who work here.

    The applications we protect are increasingly built with GenAI, and many of them now embed GenAI features and agentic workflows of their own. That shifts the security work. You will threat model LLM-backed applications, assess risks such as prompt injection, insecure model output handling, and over-broad agent permissions, and secure transitive authentication as agents act on behalf of users. You will also use GenAI to scale your own delivery, from automated code review to detection authoring.

    SEALS delivers ambient security. Builders get security feedback while they write code, at commit time, so risks are caught and fixed during development. As a Security Engineer on SEALS, you will be an embedded partner to your builder teams and own the security outcomes for your domain.

    Strong candidates bring depth in application security: threat modeling, architecture and design reviews, secure code review, and hands-on remediation. You will contribute autonomously within the team, deliver risk reduction across the full lifecycle, and mentor peers, while seeking guidance from managers and technical leaders on the hardest tradeoffs.

    Key job responsibilities

    Own the security outcomes for your assigned SEALS builder teams and the HR and Legal applications they run.

    Threat model GenAI and LLM-backed applications, covering risks such as prompt injection, insecure output handling, data leakage through model context, and excessive agent authority.

    Secure agentic workflows, including transitive authentication and scoped authorization as agents act on behalf of users.

    Author and refine automated detection rules that catch risks at code commit and give builders a fix they can accept immediately.

    Use GenAI to scale delivery across your domain, including AI-assisted code review, detection authoring, and triage.

    Drive paved-path adoption (Secure CDK Blueprints, automated patching, standardized authorization, transitive authentication for agentic workflows) so preventable issues do not occur.

    Hunt for risk the tooling missed through adversarial analysis and manual secure code review in Java, Python, and JavaScript, then turn each escape into a new detection.

    Provide security architecture guidance and lead the security outcomes of design reviews for your team and customers.

    Prioritize remediation by business impact, and escalate to leadership when a builder wants to accept a launch-blocking risk.

    Communicate security outcomes clearly, in writing and verbally, to security and service team leadership.

    A day in the life

    You are the security engineer your builder teams want in the room. On a given day you might threat model a new LLM feature for an HR application, write a detection rule that closes a gap a production finding revealed, pair with a builder to fix an authorization flaw while the code is fresh, or review the design of an agentic workflow before it ships. You articulate risk clearly to technical and non-technical audiences, prioritize pragmatically, and guide partners toward secure solutions. You mentor other engineers on the team and raise the bar around you.

    About the team

    SEALS sits within Corporate Services Security (CPSS), the Amazon security team aligned with Finance & Global Business Services, People eXperience & Technology, Legal, and Global Communications and Community Impact. We engage development teams early so our stakeholders can build and scale securely.

    Numbers & Facts

    LocationSeattle, WA
    IndustryRetail
    Company Size10,000 employees or more
    Year Founded1994
    Websitehttp://Amazon.com/militaryroles

    About Company

    At Amazon, we don’t wait for the next big idea to present itself. We envision the shape of impossible things and then we boldly make them reality. So far, this mindset has helped us achieve some incredible things. Let’s build new systems, challenge the status quo, and design the world we want to live in. We believe the work you do here will be the best work of your life.

    Wherever you are in your career exploration, Amazon likely has an opportunity for you. Our research scientists and engineers shape the future of natural language understanding with Alexa. Fulfillment center associates around the globe send customer orders from our warehouses to doorsteps. Product managers set feature requirements, strategy, and marketing messages for brand new customer experiences. And as we grow, we’ll add jobs that haven’t been invented yet.

    It’s Always Day 1
    At Amazon, it’s always “Day 1.” Now, what does this mean and why does it matter? It means that our approach remains the same as it was on Amazon’s very first day – to make smart, fast decisions, stay nimble, invent, and stay focused on delighting our customers. In our 2016 shareholder letter, Amazon CEO Jeff Bezos shared his thoughts on how to keep up a Day 1 company mindset. “Staying in Day 1 requires you to experiment patiently, accept failures, plant seeds, protect saplings, and double down when you see customer delight,” he wrote. “A customer-obsessed culture best creates the conditions where all of that can happen.” You can read the full letter here

    Our Leadership Principles
    Our Leadership Principles help us keep a Day 1 mentality. They aren’t just a pretty inspirational wall hanging. Amazonians use them, every day, whether they’re discussing ideas for new projects, deciding on the best solution for a customer’s problem, or interviewing candidates. To read through our Leadership Principles from Customer Obsession to Bias for Action, visit https://www.amazon.jobs/principles

    Skills

    • Analysis Skillsunmatched
    • Applications Securityunmatched
    • Artificial Intelligence (AI)unmatched
    • Authenticationunmatched
    • Blueprintsunmatched
    • Business Servicesunmatched
    • Code Reviewsunmatched
    • Communication Skillsunmatched
    • Compensation and Benefitsunmatched
    • Computer Programmingunmatched
    • Computer Securityunmatched
    • Embedded Systemsunmatched
    • Establish Prioritiesunmatched
    • Financeunmatched
    • Human Resources Softwareunmatched
    • Information/Data Security (InfoSec)unmatched
    • Injectionsunmatched
    • International Businessunmatched
    • Javaunmatched
    • JavaScriptunmatched
    • Leadershipunmatched
    • Legalunmatched
    • Machine Toolunmatched
    • Mentoringunmatched
    • Python Programming/Scripting Languageunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Security Designunmatched
    • Software Patchesunmatched
    • Team Lead/Managerunmatched
    • Threat Modelingunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder