About The Position

The Threat Intelligence for Global Enterprise Response (TIGER) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable intelligence on advanced cyber threats to Amazon employees and company assets. We obtain indicators and other intelligence from a variety of internal and external sources and use that information to develop an understanding of sophisticated actors and their tools, techniques, and procedures (TTPs). Our intelligence supports incident response teams, red teams, detections teams and teams working to prevent financial loss to the company. We leverage that understanding to proactively identify and mitigate malicious activity. The successful candidate will analyze both attributed and unattributed actor TTPs to generate intelligence and insights into current threats. A deep understanding of current cyber threat actors as well as experience performing question-driven analysis is required. As a Senior Security Intelligence Engineer, you will help enhance our capabilities by identifying new data sources, formulating new analytic techniques, and working across teams to drive their supporting capabilities. You will likewise work to harness expansive data sets and generate actionable and unique insights from them using database querying and statistical analysis. Your efforts will uncover previously-unknown threats and help drive innovation and continual improvement in the "state-of-the-art" of cyber threat intelligence analysis and dissemination at Amazon.

Requirements

  • Bachelor's degree in Computer Science or a related field
  • Experience as a mentor, tech lead or leading an engineering team
  • 5+ years of experience tracking sophisticated cyber threat groups

Nice To Haves

  • Master's degree in Computer Science or a related field
  • Experience with Linux and/or Windows Operating System support including in-depth understanding of one or both OSs, configuring, managing or troubleshooting systems at scale
  • Experience with malware analysis, network flow analysis, and large scale data analysis.
  • Experience with modern threat intelligence platforms (TIPs), especially the Vertex Project's Synapse, and their APIs
  • Experience building and conducting analysis leveraging AWS services.
  • Experience building automated tools in the Python programming language.

Responsibilities

  • Draft and publish finished written threat intelligence products based on findings.
  • Analyze large and unstructured data sets to discover new threats, uncover trends, and identify anomalies indicative of malicious activities.
  • Perform deep dive analysis of malicious artifacts.
  • Create security techniques and automation for internal use that enable you and others to operate at high speed and broad scale.
  • Contribute to Amazon's understanding of the current threat landscape and the techniques, tactics, and procedures associated with specific threats.
  • Periodic on-call responsibilities.

Benefits

  • health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage)
  • 401(k) matching
  • paid time off
  • parental leave
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service