Sr. Security & Compliance Engineer, AWS Security Assurance Services, LLC at Amazon
Seattle, WA
$178,400–$226,700from the description
Jul 9, 2026
Seattle, WA
Jul 21, 2026
What this job asks for AI summary
A senior engineering role focused on designing and building security and compliance automation for heavily regulated enterprise AWS customers. Day-to-day work involves writing infrastructure-as-code, developing policy-as-code controls, architecting multi-account governance structures, and creating AI-assisted tooling that maps compliance frameworks to AWS implementations. Suits an experienced cloud security engineer comfortable owning technical decisions and communicating risk to executive audiences.
Senior level · 5+ years · Seattle, WA · Full-time
“or” means any one of them counts — you don't need all of them.
Posted 2 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 450 people in the Seattle, WA area plausibly meet what this posting asks for (information security analysts). range 240–590
Applicant volume Heavy — This req sits in a large pool with little in its requirements to thin it, and auto-apply tools fire at everything in the occupation. Applying early and leading with the rare skills below is what gets read.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $165,338 (middle half $132,613–$190,632). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (7)
The role is posted with three US locations (Dallas TX, Arlington VA, Seattle WA) at the same salary band ($178,400–$226,700/year); Seattle is listed as the primary location here but the role is multi-site.
The SOC classification is a genuine toss-up: the role is framed as a security/compliance engineering position (15-1212) but requires substantial software development output — writing IaC, Python, CDK, policy-as-code — which would also fit 15-1252. 15-1212 was chosen because the primary framing, team charter, and customer outcomes are security assurance and compliance.
The Basic Qualifications gate on 5+ years of security risk work and 4+ years of scripting/programming, plus knowledge of at least two named languages (Scala, Java, Python, C/C++, or Go). Python is listed as the primary language in both sections; the named alternatives reflect the 'at least two of' language requirement.
All Preferred Qualifications items (Terraform, AWS CDK, CloudFormation, specific AWS services, SCPs/RCPs, policy-as-code patterns, certifications) appear under the 'Preferred Qualifications' heading and are treated as preferred accordingly.
The 8+ years figure in Preferred Qualifications is a preferred (not required) experience level, so it is not reflected in the overall years minimum, which is set to the hard-required 5 years from Basic Qualifications.
The posting mentions travel to customer sites as needed; this role is not remote.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): security risk identification and mitigation, AWS Solutions Architect Professional.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.