About The Position

The Threat Intelligence for Global Enterprise Response (TIGER) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable intelligence on advanced cyber threats to Amazon employees and company assets. We obtain indicators and other intelligence from a variety of internal and external sources and use that information to develop an understanding of sophisticated actors and their tools, techniques, and procedures (TTPs). Our intelligence supports incident response teams, red teams, detections teams and teams working to prevent financial loss to the company. We leverage that understanding to proactively identify and mitigate malicious activity. The successful candidate will analyze both attributed and unattributed actor TTPs to generate intelligence and insights into current threats. A deep understanding of current cyber threat actors as well as experience performing question-driven analysis is required. As a Senior Security Intelligence Engineer, you will help enhance our capabilities by identifying new data sources, formulating new analytic techniques, and working across teams to drive their supporting capabilities. You will likewise work to harness expansive data sets and generate actionable and unique insights from them using database querying and statistical analysis. Your efforts will uncover previously-unknown threats and help drive innovation and continual improvement in the "state-of-the-art" of cyber threat intelligence analysis and dissemination at Amazon.

Requirements

  • Bachelor's degree in Computer Science or a related field
  • 5+ years of any combination of the following: application security frameworks, identity and access controls, incident response, mobile security, cloud computing and security, AI security, threat intelligence, and penetration testing experience
  • Experience that includes strong analytical skills, attention to detail, and effective communication abilities
  • Experience with SQL and Python scripting
  • Extensive experience tracking sophisticated cyber threat groups (5+ years)

Nice To Haves

  • Master's degree in Computer Science or a related field
  • Strong understanding of Windows, Linux, and or OS X internals
  • Experience with malware analysis, network flow analysis, and large scale data analysis.
  • Experience with modern threat intelligence platforms (TIPs), especially the Vertex Project's Synapse, and their APIs
  • Experience building and conducting analysis leveraging AWS services. Experience building automated tools in the Python programming language.

Responsibilities

  • Draft and publish finished written threat intelligence products based on findings.
  • Analyze large and unstructured data sets to discover new threats, uncover trends, and identify anomalies indicative of malicious activities.
  • Perform deep dive analysis of malicious artifacts.
  • Create security techniques and automation for internal use that enable you and others to operate at high speed and broad scale.
  • Contribute to Amazon's understanding of the current threat landscape and the techniques, tactics, and procedures associated with specific threats.
  • Periodic on-call responsibilities.

Benefits

  • health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage)
  • 401(k) matching
  • paid time off
  • parental leave
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service