Seattle, WA

Salary
$136,000–$184,000from the description
Posted
Jul 2, 2026
Location
Seattle, WA
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

This role sits within Amazon's Secure Third Party Tools team, which evaluates and reduces security risks associated with external vendors and their products that interact with Amazon data. Day-to-day work involves conducting security assessments and deep-dive reviews of third-party integrations, building monitoring tools, developing security baselines, and maintaining threat models. It suits engineers with a background in application security, vulnerability analysis, or security testing who are comfortable working across multiple internal and external teams.

Mid level · Seattle-Tacoma-Bellevue, WA · Bachelor's required · Full-time

Must have (7)
application securitysecurity code reviewsecurity testingpenetration testingthreat modelingweb protocolsscripting/coding
Nice to have (1)
AWS, Azure or GCP

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What won't set you apart
application security40%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $165,338 (middle half $132,613–$190,632). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (5)

The role sits in Amazon's Secure Third Party Tools (S3T) team and is titled 'Security Engineer' with no level modifier — advertised seniority is Unspecified. The requirements describe foundational-to-intermediate skills (basic problem-solving with code, non-internship experience) consistent with a Mid-level hire despite the broad scope described in the narrative.

The degree requirement is a hard gate: 'Bachelor's degree in Engineering, Computer Science, or a related field' appears in Basic Qualifications with no 'or equivalent experience' escape clause.

AWS experience appears only under Preferred Qualifications and is marked accordingly; Azure and GCP are listed as alternatives since the posting says 'or other cloud offerings'.

The role has a meaningful software-development component (building tools, writing scripts, code reviews), which is why 15-1252 Software Developers is noted as a runner-up, but the primary day-to-day work — security assessments, risk reviews, threat modeling, and third-party security posture — aligns more closely with 15-1212 Information Security Analysts.

'scripting/coding' is listed as a required skill based on the Basic Qualifications gate: 'Experience solving basic problems by writing code or scripts.' No specific language is named, so no canonical tool name can be assigned; the skill is retained as a concrete capability gate rather than a soft skill.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗