Security Engineer, AWS Customer Incident Response Team (CIRT)
Amazon • Austin, Texas, United States
No Relocation
Posted: August 7, 2026
Additional Content
Description
- Do you want to work on planetary scale incident response solutions in the cloud? Are you skilled at performing Security Incident Response activities and helping customers build threat detection and incident
Description
- Do you want to work on planetary scale incident response solutions in the cloud? Are you skilled at performing Security Incident Response activities and helping customers build threat detection and incident response capabilities using highly scalable computing architectures? Are you excited to help customers respond to security incidents and automate security operations giving them unprecedented capability and agility? Do you enjoy working on fast-paced complex projects focused on game changing business outcomes for customers globally? As a member of the AWS Customer Incident Response Team in the AWS Security organization, you will have the opportunity to help customers respond to security incidents and pioneer technically superb security solutions to help customer operate securely in the cloud. Building on those experiences you’ll collaborate with AWS service teams on new features, innovate with new technologies, and explore new challenges. The AWS Customer Incident Response team, a part of AWS Security, leverages the expertise and ingenuity of our builders to establish scalable security solutions for both internal and external customers that drive business outcomes. Our goal of securing the world’s workloads and building a brighter future for humanity requires us to focus on reliable delivery of bar raising security outcomes and investment in security mechanisms and automation on behalf of our customers Cloud security is our highest priority at AWS. As an AWS customer, you benefit from an environment built to meet the requirements of the most security-sensitive organizations. As an AWS Security team member, you will help secure that environment for our customers while working on security products for a variety of platforms and technologies, all operating at massive scale. We are looking for an experienced security engineer with an ability to scale security and make the right trade-off decisions that enable us to offer secure, innovative solutions to customers. Key job responsibilities • Perform and oversee incident response operations • Become a deep technical resource that earns the trust of customer stakeholders before, during, and after a security event. • Independently contribute to teams that include Amazonians, partners, and customers to build and deploy threat detection and incident response capabilities. • Design, build, and deploy solutions to automate security operations and incident response on AWS. • Independently contribute to internal builder projects to develop new consulting engagement models and capabilities for customers. • Develop high-quality content, such as automation tools, reference architectures, and white papers to help our consultants, partners, and customers build on the work that we deliver. • Innovate on behalf of customers by translating your thoughts into actionable results. • Mentor and invest in our consultants, partners, and customers to raise the bar for our customers. • On-call required. About the team Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying. Why Amazon Security? At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores. Inclusive Team Culture In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices. Training & Career Growth We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.
Basic Qualifications
- - 2+ years of scripting, programming, and security code review in a common programming language (non-internship) experience - Bachelor's degree in a STEM field (Science, Technology, Engineering, Mathematics), or 2+ years of IT Security experience - Experience in troubleshooting systems issues, analyzing logs, or automating basic tasks using command line tools (non-internship experience) - Experience working as part of a computer Security Incident Response Team (CSIRT) or Product Security Incident Response Team (PSIRT) - Fluency building AI tools