Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer I, Threat Hunting, Security Incident Response Team (SIRT)

$136k - $184k

Amazon Locker

Amazon's Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting engineers to proactively identify and eliminate threats wherever they may exist.

Our Threat Hunting team hunts for adversarial activity using a variety of tools, methods, intelligence, and techniques. They work hands-on with security logs and are encouraged to be creative and develop innovative techniques to illuminate threat activities. With your technical expertise, you will be solving security challenges at scale and working to protect applications powering the most sophisticated e-Commerce platform ever built.

If you are someone who enjoys researching threats, diving deep into large datasets, and building innovative capabilities to solve everyday problems, we'd like to meet you. Your work will be essential to maintaining customer trust and delivering a delightful experience for our customers.

This position requires that the candidate selected be a US Person.

Key job responsibilities

- You will query big data repositories to identify threat activities which pose a risk to Amazon customers and data.

- You will work alongside incident response teams and provide direct support to ongoing investigations and efforts to identify and contain security events.

- You will analyze security log data, identify threat behaviors, and develop custom threat detection and threat hunting strategies.

- You will author scripts and build custom capabilities to uncover threats and enable threat hunting operations at Petabyte scale.

- You will participate in an on-call rotation and provide ad hoc support to internal customers during non-business hours.

A day in the life

- Query, collate, and analyze machine-generated data for indications of digital threat activities.

- Develop database searches to extract security artifacts and threat signals from large and diverse datasets.

- Work alongside other engineers to improve security and reduce operating risk for our customers.

- Monitor cybersecurity media, blog posts, and other sources to maintain awareness of the threat landscape.

- Assist in designing and developing innovative capabilities to identify cyber threat activities at scale.

- Work individually and/or as a team on high priority security issues.

About the team

Amazon's Threat Hunting team is a component of the Security Incident Response Team (SIRT) and is responsible for proactively seeking out threat activities which pose a risk to our customers and business operations. Our threat hunters work alongside incident response engineers to support ongoing security investigations. This team works in a dynamic environment with shifting priorities.

Why Amazon Security

At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training and Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

#JoinDefSec

BASIC QUALIFICATIONS

- 2+ years of web protocols, common security attacks, and remediation (non-internship) experience

- Bachelor's degree in Engineering, Computer Science, or a related field

- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent

- Experience with web protocols, common security attacks, and remediation (non-internship)

- Experience solving basic problems by writing code or scripts with some assistance

PREFERRED QUALIFICATIONS

- Experience with AWS services or other cloud offerings

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at

USA, VA, Arlington - 136,000.00 - 184,000.00 USD annually
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Security Engineer I, Threat Hunting, Security Incident Response Team (SIRT) in Arlington, VA vacancy
  • $159.3k - $202.4k

     ...Amazon's Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the...  ...customers. Key job responsibilities - You will query and...  ...You will work alongside incident responders and support...  ...Incident Response Team (SIRT) and is responsible for... 
    Suggested
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    3 days ago
  • CoStar Group, Inc. is looking for an experienced cyber-security professional in Arlington, Virginia, to lead incident response activities and oversee security assessments. Candidates should have a Bachelor’s degree, 8+ years in IT, and strong scripting skills. Responsibilities... 
    Suggested

    CoStar Group, Inc.

    Arlington, VA
    2 days ago
  •  ...Cooperative Bank, N.A. is looking for an experienced security professional to monitor security alerts and support incident response efforts. This role involves analyzing...  ...skills and a proactive approach to threat hunting are essential for maintaining operational continuity... 
    Suggested

    National Cooperative Bank, N.A.

    Arlington, VA
    17 hours ago
  • $150k - $201.6k

     ...excellent opportunity for a Senior IT Security Engineer, Threat Response . This position could be based...  ...Operations Center (SOC), incident response teams, and other IT stakeholders to stay...  ...and support. Proactive Threat Hunting: Conduct advanced threat hunting... 
    Suggested
    Temporary work
    Remote work
    Flexible hours

    Orrick

    Washington DC
    2 days ago
  • $178.4k - $226.7k

     ...Description The Threat Intelligence for Global Enterprise Response (TIGER) team, part of Amazon Cyber Threat Intelligence...  ...Our intelligence supports incident response teams, red teams,...  ...is required. As a Senior Security Intelligence Engineer, you will help enhance our... 
    Suggested
    Flexible hours
    Night shift
    Weekend work

    Amazon

    Arlington, VA
    4 days ago
  • $136k - $184k

     ...advancing the state of threat detection at scale to mitigate...  ...? Amazon Stores Security's Threat Detection team is looking for a highly motivated Security Engineer to join our team. In this...  ...will work closely with Incident Response, Threat Hunting, Threat Intelligence, and... 
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago
  •  ...Threat Detection Security Engineer Job Description Overview CoStar...  ...cyber threat center team to provide continuous...  ...from home on Friday. Responsibilities Own cyber security incidents from identification...  ...Execute threat hunts in the CoStar enterprise... 
    Full time
    Work at office
    Work from home
    Monday to Thursday

    CoStar Group

    Arlington, VA
    2 days ago
  •  ...Security Engineer - Threat Intel New York City, NY; Remote-Friendly...  ...as a whole. Our team is a quickly growing...  ...within our Detection & Response team exists to make sure...  ...drives our detections, hunts, and defensive...  ...detection engineers and incident responders to make sure... 
    Work at office
    Remote work
    Visa sponsorship
    Flexible hours

    Anthropic

    Washington DC
    1 day ago
  • $104k - $166k

     ...Cyber Incident Response Analyst with OT/ICS/SCADA / Travel...  ...Category Intel and Threat Analysis Clearance...  ...with technical teams, forensic analysts, and...  ...conduct proactive threat hunts, and contribute to solutions...  ...Experience conducting security site assessments,... 
    Contract work
    Currently hiring
    Shift work
    1 day per week

    Peraton

    Arlington, VA
    3 days ago
  • A leading cyber security firm in Arlington, VA, is seeking a Cyber Eviction Analyst to support incident response for government agencies experiencing cyber attacks. The ideal candidate...  ...serving as a subject matter expert on threat actor tools, documenting findings, and... 

    ARSIEM

    Arlington, VA
    3 days ago
  • $83.5k - $87.5k

    Overview The Cyber Incident Response Analyst role is pivotal in reinforcing the client’s...  ...SOPs). Escalate cases to specialized teams (e.g., Threat Hunting, Vulnerability Management) where...  ...related discipline such as Homeland Security or Business, or a combination of education... 
    Temporary work
    Work at office
    Local area
    Flexible hours
    Shift work

    Cayuse Holdings

    Washington DC
    17 hours ago
  •  ...The ideal applicant should have a bachelor's degree, over 5 years of cybersecurity experience, and relevant certifications such as CEH or CISSP. Key responsibilities include incident coordination, analysis of logs, and direct system remediation. #J-18808-Ljbffr AGR LLC
    Full time
    Immediate start

    AGR LLC

    Suitland, MD
    3 days ago
  • Incident Response Expert / Cyber Eviction Analyst Location...  ...Top Secret Security Clearance Node....  ...deep knowledge of threat actor tools,...  ...incident response teams in high‑stakes environments...  ...: Serving as a hunt and incident...  ..., Computer Engineering, or a related field... 

    Node.Digital LLC

    Arlington, VA
    3 days ago
  •  ...Control System Cyber Threat Intelligence...  ...responding to cyber incident reports. Demonstrated...  ...Active Top Secret Security Clearance with SCI...  ...). SANS GIAC Response and Industrial Defense...  ...operational teams and senior leaders...  ...response and threat hunting missions. Identify... 
    Currently hiring

    Peraton

    Arlington, VA
    17 hours ago
  •  ...performing processing, triage, threat analysis, and response to cyber incident reports. Experience...  ...necessary to ensure security and safe function of IC...  ...priorities for operational teams, including the forward...  ...incident response and threat hunting functions. Analyze... 
    Currently hiring

    Peraton

    Arlington, VA
    17 hours ago
  •  ...Security Engineer Detection & Response Security is at the foundation of OpenAI's mission...  ...humanity. The Security team protects OpenAI's technology...  ...with the right telemetry, threat models, and response...  ...on threat detection and/or incident response experience, including... 

    OpenAI

    Washington DC
    17 hours ago
  •  ...estate information is seeking a Lead Security Engineer in Arlington, VA. The ideal candidate...  ...Information Security and a strong background in incident response and technical assessments. The role...  ...ability to collaborate across diverse teams. Join to help drive security... 

    CoStar

    Arlington, VA
    17 hours ago
  • $159.3k - $202.4k

     ...Customer Ecosystems (ACES) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable...  ...analysis is required. As a Security Intelligence Engineer, you will help enhance our...  ...and access controls, incident response, mobile security,... 
    Work experience placement
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago
  • $131.3k - $237.35k

     ...experienced SME Cyber Incident Response Analyst to support...  ...government partners, engineers, and other industry teammates...  ...real‑world national security outcomes. Primary...  ...and respond to cyber threats across the enterprise...  ..., and operations teams to ensure timely containment... 
    Local area
    Immediate start

    Leidos

    Alexandria, VA
    3 days ago
  •  ...Analyst with strong qualifications in incident response and network security. The successful candidate will have at...  ...serving as a subject matter expert in threat analysis, providing technical solutions, collaborating across teams, and documenting findings. Join this innovative... 

    Nightwing Group

    Arlington, VA
    4 days ago
  •  ...Virginia is seeking an experienced SME Cyber Incident Response Analyst to join its team. This role involves monitoring and responding to cyber threats, leading incident response activities,...  ...to work on critical national security projects. #J-18808-Ljbffr Via Logic LLC

    Via Logic LLC

    Alexandria, VA
    1 day ago
  • Title: Cyber Threat Hunt Analyst Location: McLean, VA...  ...supporting the mission. Our Team is pushed every day...  ...’s toughest and most secure problems. If you are...  ...security posture. Responsibilities: Conduct threat hunting...  ...investigate security incidents. Provide detailed... 

    Cornerstone Defense LLC

    Mc Lean, VA
    3 days ago
  •  ...network traffic and identifying threats. The ideal candidate...  ...experience in cyber defense. Responsibilities include incident documentation, coordination with cyber defense teams, and evaluating network behaviors...  ...to work on impactful security initiatives in a dynamic environment... 

    NewGen Technologies

    Arlington, VA
    4 days ago
  • $300k - $405k

     ...a whole. Our team is a quickly growing...  ...researchers, engineers, policy...  ...Detection and Response engineer that will...  ...to monitor for threats, rapidly investigate incidents, and coordinate...  ...to shape our security capabilities from...  ...response, or threat hunting experience *... 
    Work at office
    Visa sponsorship
    Flexible hours

    Anthropic

    Washington DC
    3 days ago
  •  ...a skilled Cortex XSIAM Security Engineer to deploy, configure, and...  ...measurable improvements in threat detection and incident response times for our government...  ...with client SOC teams during active incidents,...  ...log analysis and threat hunting. Working knowledge of... 
    Work from home
    Flexible hours

    CELESTIAL INNOVATIONS GROUP LLC

    Washington DC
    3 days ago
  •  ...U.S., Inc. Position: Security Engineer III - AMZ25957.4 Location...  ...design reviews and threat modeling for new features...  ...management for Amazon product teams' software. 3. Lead holistic...  ...(2) Security Operations, Incident Response, Threat Hunting and Assurance... 

    Amazon

    Arlington, VA
    17 hours ago
  •  ...Insider Threat Detection Specialist A specialized security professional responsible for designing, implementing, and maintaining...  ..., security operations, and engineering teams to translate risk insights...  ...Translate threat intelligence and incident learnings into practical,... 

    Navstar

    McLean, VA
    4 days ago
  •  ...Associate Security Engineer AAMVA's Security team is looking for a highly motivated,...  ...Essential Duties and Responsibilities: Monitor Microsoft...  ...for Cloud alerts, triage incidents, and conduct initial investigations...  ...tune KQL queries for threat hunting, detection rules, and... 
    Work experience placement
    Flexible hours

    AAMVA (American Association of Motor Vehicle Administrators)

    Arlington, VA
    4 days ago
  • cFocus Software seeks a Security Engineer / SIEM Engineer to join...  ...SOC operations and incident response Experience with automation...  ...) Familiarity with threat intelligence and threat hunting techniques Required...  ...Collaborate with SOC/NOC teams to improve detection... 
    Remote work
    Night shift

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • $159.3k - $202.4k

     ...Description Amazon Healthcare Security's (HealthSec) AI team is hiring a Security Engineer II to secure GenAI...  ...detections and monitoring, and incident response. Working closely with AHS AI...  ...security tooling (e.g., automated threat modeling, code scanning, security... 
    Flexible hours

    Amazon

    Arlington, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer I, Threat Hunting, Security Incident Response Team (SIRT). Be the first to apply!