14 hours ago

Senior Security Engineer, Annapurna Labs

Amazon Web Services (AWS)

On Site
Full Time
₪500,000
Haifa, Haifa District, Israel

Job Overview

Job TitleSenior Security Engineer, Annapurna Labs
Job TypeFull Time
Offered Salary₪500,000
LocationHaifa, Haifa District, Israel

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

About AWS Utility Computing

AWS Utility Computing (UC) drives product innovations, from foundational services such as Amazon S3 and Amazon EC2, to consistently released new features that distinguish AWS in the industry. As part of the UC organization, you'll support the development and management of Compute, Database, Storage, Internet of Things (IoT), Platform, and Productivity Apps services across AWS. Within AWS UC, Amazon Dedicated Cloud (ADC) roles engage with customers requiring specialized security solutions for their cloud services.

About Annapurna Labs

Annapurna Labs is looking for a Senior Security Engineer to help ensure that our hardware platforms, software deliverables, and devices are secured against the latest threats.

Key Job Responsibilities

  • Responsible for the security assurance of our products, influencing and scrutinizing design and implementation.
  • Develop elaborate threat models, suggesting and reviewing effective solutions and mitigations.
  • Lead vulnerability research, penetration testing, automated penetration testing solutions, and methodologies such as fuzzing and static analysis.
  • Mentor service teams in adding security testing tools and practices to their development processes.
  • Serve as a technical leader within the Annapurna security team, providing advice on technical and business issues.
  • Manage time efficiently and deliver results effectively, even in the face of uncertainty.
  • Proactively share knowledge across the Amazon community and become a key company resource in core security areas.
  • Lead security reviews of large Amazon projects, setting standards and defining best practices for AWS Security teams.
  • Exercise exemplary judgment in making technical trade-offs between short-term versus long-term security and business goals.
  • Demonstrate resilience and navigate difficult situations with composure and tact.
  • Maintain a broad understanding of the AWS business and its interconnections.
  • Provide training, advice, and mentorship to other engineers throughout AWS.

Basic Qualifications

  • 5+ years of low-level systems security research and vulnerability testing experience.
  • Experience developing security tools (fuzzers, scanners, analysis frameworks).
  • Security architecture design and threat modeling experience.
  • Proficiency in C and experience with Python.
  • Deep knowledge of security aspects of ARM/x86 processor architectures.
  • Strong understanding of hardware security (secure boot, cryptographic implementations, side-channel attacks).
  • Knowledge of security protocols and cryptographic primitives.
  • Technical English proficiency.

Preferred Qualifications

  • Background in firmware reverse engineering and vulnerability research.
  • Experience with fuzzing frameworks (AFL++, libFuzzer, Syzkaller).
  • Knowledge of virtualization security or hypervisor technologies.
  • Familiarity with AWS services.
  • Technical leadership, mentoring, and cross-functional collaboration.
  • Security publications (research, CVEs).
  • CTF, bug bounty, or competitive security research background.

Key skills/competency

  • Low-level security
  • Vulnerability research
  • Penetration testing
  • Threat modeling
  • Security architecture
  • Hardware security
  • C/Python programming
  • ARM/x86 architecture
  • Cryptography
  • Fuzzing

Tags:

Security Engineer
Low-level security
Vulnerability research
Penetration testing
Threat modeling
Security architecture
Hardware security
Firmware reverse engineering
Fuzzing
Cryptography
AWS security
C programming
Python programming
ARM architecture
x86 architecture
Secure boot
Hypervisor technologies
Static analysis
Security protocols
Technical leadership

Share Job:

How to Get Hired at Amazon Web Services (AWS)

  • Research AWS & Annapurna Labs culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor to understand their innovation-driven environment.
  • Tailor your resume for Senior Security Engineer roles: Highlight your 5+ years of low-level security research, vulnerability testing, and threat modeling experience, using keywords from the job description.
  • Prepare for technical depth: Showcase deep expertise in C/Python, ARM/x86 security, hardware security, and fuzzing frameworks relevant to Annapurna Labs' work.
  • Emphasize leadership and mentorship: Be ready to discuss experiences leading security reviews, mentoring engineers, and collaborating cross-functionally within a large organization like AWS.
  • Demonstrate business acumen and judgment: Prepare examples illustrating your ability to balance security and business goals and navigate complex technical trade-offs effectively.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background