Position Details
About this role
Perform penetration testing and independent vulnerability research on proprietary software and hardware for AWS services. Manually audit in-house source code, write proof-of-concept code, communicate findings to developers, and provide long-term risk mitigation guidance.
Key Responsibilities
- Perform penetration testing of complex AWS-related software and hardware
- Manually audit source code to find security issues
- Write proof of concept code to demonstrate severity
- Partner with AWS developers to improve application security
- Provide actionable long-term risk mitigation guidance
Technical Overview
This role combines offensive and verification-oriented security testing (penetration testing, red teaming, bug hunting, CTF) with manual source code auditing and Python scripting. It requires deep AWS security knowledge across S3, Lambda, EC2, KMS, and IAM, plus expertise in web application security, network security, authentication/authorization, cryptography, and security automation.
Ideal Candidate
The ideal candidate is a senior Security Engineer with 4+ years of hands-on security testing experience including penetration testing, vulnerability testing, and red teaming. They can manually audit source code across languages (including Python) to identify security issues and provide AWS-focused risk mitigation guidance using services like S3, Lambda, EC2, KMS, and IAM.
Must-Have Skills
Required Skills
Hard Skills
Soft Skills
Industry & Role
Keywords for Your Resume
Deal Breakers
Bachelor's degree required (or foreign equivalent in specified fields), 4+ years of experience in required security testing and manual source code auditing, Experience with AWS technologies and services (S3, Lambda, EC2, KMS, and IAM)
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile