The Role
Have you wanted an opportunity to find security issues in the chips and low level software that enables various Amazon digital products? Are you able to find bugs in chips by reviewing design and code and by performing tests? This position will provide you with a unique opportunity to do both
The Security team is responsible for identifying security flaws and guiding device business to achieve secure hardware architecture for chips used in Amazon devices like Fire TV, Eero, Alexa to name a few. This team partners with business team and performs chip level security testing, secure chip architecture design and advisory, system review, security review for Secure boot code, bootloader code and firmware.
In this role, you will:
*Help guide the secure development of devices at Amazon, from security design, threat modeling to code reviews, security testing and fuzzing
*Propose, research and develop tools and techniques to improve the security posture of devices at scale
*Provide technical security expertise and consultation to device product teams
*Identify security risks and work with product engineers to create mitigations
*Develop new security policies and procedures
*Empower others to improve their security acumen by promoting awareness and developing training materials
*Participate in projects that develop new intellectual property
BASIC QUALIFICATIONS
- 3+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Bachelor's degree in Electrical Engineering, Computer Engineering, or a related technical field
- Knowledge of hardware security mechanisms, including secure boot, trusted execution environments
- Knowledge of operating system internals, with emphasis on Linux and common RTOS environments
- Semiconductor reverse engineering
PREFERRED QUALIFICATIONS
- Master's degree or above in Computer Science, Computer Engineering, Electrical Engineering, or related fields
- Experience using scripting languages, such as Python, Perl, Linux bash
- Experience with hardware, system and network security, including use of cryptography in these verticals
- Strong code review and exploit development
- Hands on Fault injection and side channel attack and mitigation experience
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, WA, Seattle - 159,300.00 - 202,400.00 USD annually