The Specialized businesses security team at Amazon is responsible for the security of Amazon devices and their connected backend services including Alexa, the Kindle, Fire TV, network systems such as Kuiper and Sidewalk, and Ring devices such as video doorbell, cameras, and lighting. SBS team members are the experts in secure development and implementation, pen-testing, and the secure development lifecycle.
The Specialized business security Cryptography (DS-Crypto) team in SBS sets strategic direction for use of cryptography in the SBS organization through research, development, training and consultation. The team is looking for strong crypto security engineers to design, analyze, review, implement and review implementations of cryptographic solutions in devices and cloud services. You will own the design, analysis and implementation of cryptographic solutions, own key deliverables and have opportunities to extend existing systems and build others from scratch. You will interact with other Cryptographers, Security Engineers and Applied Scientists and convert their vision into a technical solution. You will participate in the development of guidance and training material regarding secure/proper use of cryptography for other software Builders. This is a high visibility and fast-paced environment where you will make a direct impact on the customer experience and the bottom line of the company. We have ambitious goals to build high impact cryptography solutions and to delight our customers with a great product.
Key job responsibilities
Key job responsibilities
High-level responsibilities for this position include but are not limited to:
* Gather and analyze business and functional requirements, and translate business requirements into technical design specifications.
* Design, review and analyze cryptographic solutions for devices and cloud services.
* Work closely with software development engineers to implement cryptographic solutions.
* Ensure that code developed by you in collaboration with software development engineers is high-quality, efficient, testable and maintainable.
* Be responsible for technical problem solving, meeting product objectives, and developing best practices.
* Track and report on metrics which are key performance indicators, allowing performance improvements so that the desired outcomes are achieved to plan and in a timely manner.
* Serve as an essential technical resource for builders in Specialized Business teams in the full development cycle of cryptography related software.
* Work in an agile development environment.
A day in the life
The SBS-Crypto Team researches advances in cryptographic standards and algorithms, serving as experts for post-quantum cryptography, homomorphic encryption, lightweight cryptography, security protocols, and the implementation of these technologies. When new cryptographic technologies are needed and unavailable, SBS-Crypto builds (or partners with development teams to build) such capabilities to expand the technology shelf of available solutions. Team members provide the cryptographic expertise for SBS development teams for consultative design exploration and security design reviews. Cryptography team members contribute to advancing SBS level-of-knowledge by developing and leading training classes and adding to the cryptography and devices security body-of-knowledge increasing development team's self-sufficiency.
BASIC QUALIFICATIONS
- 3+ years of scripting, programming, and security code review in a common programming language (non-internship) experience
- Bachelor's degree in a STEM field (Science, Technology, Engineering, Mathematics), or 3+ years of IT Security experience
- 3+ years of non-internship professional experience in the development of cryptographic solutions
- 3+ years of leading design or architecture and implementation of systems using cryptographic algorithms, public-key infrastructure and hardware security modules.
- 3+ years of threat modeling for cryptographic solutions.
PREFERRED QUALIFICATIONS
- 2+ years of any combination of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, system administration and network security experience
- Experience with AWS products and services
- 3+ years of full software development life cycle, including coding standards, code reviews, source control management, build processes, testing, and operations experience
- Master's degree in computer science or equivalent
- Familiarity with post-quantum cryptographic algorithms and public key cryptography. Experience developing security protocols from public standards and/or academic papers.
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, CA, Sunnyvale - 166,600.00 - 212,800.00 USD annually
USA, NY, New York - 159,300.00 - 212,800.00 USD annually
USA, VA, Herndon - 159,300.00 - 202,400.00 USD annually
USA, WA, Seattle - 159,300.00 - 202,400.00 USD annually