Job Description
Amazon's Corporate Security Response (AWS CorpSec) team is the front line defending one of the world's largest and most complex corporate environments. We detect, investigate, and respond to security threats across Amazon — from targeted campaigns to advanced persistent threats — operating as part of a global, follow-the-sun security response capability.
We are seeking a Security Engineering Manager to serve as a Site Lead for our APAC location. This is a hands-on technical leadership role where you will lead a team of security engineers while personally driving complex investigations, shaping autonomous security tooling, and raising the bar for operational excellence across the team. This is not a coordination role. You will investigate. You will build. You will lead from the front.
Key job responsibilities
**Lead Security Incident Response Operations**
- Own and drive complex security investigations end-to-end — from triage through containment, remediation, and closure
- Lead cross-functional incident coordination with Legal, Security, and engineering leadership, delivering clear risk assessments and recommended actions
- Maintain situational awareness of the global threat landscape and translate intelligence into actionable defensive measures
**Shape Autonomous Security Investigation**
- Define investigation user stories that codify expert security tradecraft into autonomous agent behavior
- Own the quality feedback loop: review agentic output, validate scoring, and drive precision/recall toward production targets
- Review guardrails and policies governing autonomous agent actions, balancing automation velocity with safety
**Build and Lead a High-Performing Team**
- Recruit, develop, and retain security engineers who thrive in ambiguity, form independent risk assessments, and drive outcomes through direct action
- Provide technical mentorship across incident response, threat analysis, forensics, and security automation
**Drive Automation and Process Improvement**
- Identify recurring patterns and systemic gaps, then deliver detection rules and automation to close them
- Lead the transition from manual investigation to scalable agentic capabilities, measuring throughput improvements
About the team
CorpSec Response operates 24/7 as a global, follow-the-sun team protecting Amazon's corporate infrastructure. We combine deep human expertise with leading autonomous investigation capabilities. Our engineers are hands-on investigators who also shape the AI systems that augment their work — creating a unique feedback loop between human security expertise and machine-scale automation.
Inclusive Team Culture
We are committed to building a diverse and inclusive team. Amazon's culture of inclusion is reinforced within our Leadership Principles, which remind team members to seek diverse perspectives, learn and be curious, and earn trust.
Work-Life Balance
We value sustainable performance. Our follow-the-sun model means you're not carrying a pager 24/7 — your node owns its shift, and clean handoffs are a core operational discipline.
Growth and Impact
This role offers a rare combination: hands-on technical security work at massive scale, leadership of a high-performing team, and direct influence over an AI-augmented security platform. You'll grow as both a security practitioner and a technical leader.
Mentorship and Career growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Basic Qualifications
- 5+ years of managing and developing teams experience
- 5+ years of progressive work within a software security team or related operating environment experience
- Bachelor's degree in Computer Science, Information Security, or a related field
- Knowledge of security of web services, video content protection technologies, cryptography, network security protocols and operating system security
- Experience applying threat modeling or other risk identification techniques or equivalent
Preferred Qualifications
- information security professional certification (SANS GIAC, CISSP etc.)
- Master's degree in Computer Science or a related field
- Knowledge of information security technologies such as security design review, threat modeling, risk analysis, and software testing techniques
- Experience managing remote team members
Acknowledgement of country:
In the spirit of reconciliation Amazon acknowledges the Traditional Custodians of country throughout Australia and their connections to land, sea and community. We pay our respect to their elders past and present and extend that respect to all Aboriginal and Torres Strait Islander peoples today.
IDE statement:
Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit
https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.