About the Role
About the Role
The Software Development Engineer II role at AWS involves designing, building, and operating a multi-tenant platform for managing large-scale fleets of embedded devices. This position requires a strong focus on security engineering and distributed systems, ensuring high standards of reliability and compliance.
Key Job Responsibilities
- Build and maintain cryptographic trust infrastructure supporting multiple certificate authority hierarchies with offline validation mechanisms suited to disconnected environments.
- Implement multi-tenant data isolation using attribute-based access control (ABAC), row-level security, and transparent query rewriting — designed to scale from single-tenant to hundreds of tenants over a 5-year horizon.
- Develop cryptographic integrity mechanisms for configuration and audit data, including chained signatures and append-only tamper-evident logging.
- Engineer emergency access ('break-glass') workflows with time-bounded credentials, multi-party approval, and segregated audit trails.
- Ensure all cryptographic operations leverage FIPS 140-2 Level 3 validated key management with strict key isolation boundaries.
- Design reconciliation protocols where edge devices remain the recommended source of truth, with backend systems maintaining synchronized projections.
A Day in the Life
You'll be building the backbone of a platform that securely manages thousands of embedded devices in some of the most demanding operational environments. Your work will directly impact fleet reliability, security posture, and operational efficiency at scale — solving problems that few engineers ever get to tackle.
About The Team
Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating — that’s why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.
Why AWS?
Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we’re building an environment that celebrates knowledge-sharing and mentorship. Our senior members enjoy one-on-one mentoring and thorough, but kind, code reviews. We care about your career growth and strive to assign projects that help our team members develop your engineering expertise so you feel empowered to take on more complex tasks in the future.
Requirements
Cryptographic Infrastructure
Experience in building and maintaining cryptographic trust infrastructure.
Data Isolation Techniques
Knowledge of implementing multi-tenant data isolation using ABAC and row-level security.
Integrity Mechanisms
Ability to develop cryptographic integrity mechanisms for configuration and audit data.
Emergency Access Workflows
Experience in engineering emergency access workflows with time-bounded credentials.
Nice to Have
Possession of an active TS/SCI security clearance is preferred.
Familiarity with cloud computing principles and AWS services.
Benefits
Career Growth
Opportunities for mentorship and career development.
Innovative Environment
Work in a team that values knowledge-sharing and innovation.