Aller au contenuAller au pied de page
  • Emplois
  • Entreprises
  • Salaires
  • Pour les employeurs

      Boostez votre carrière

      Découvrez votre salaire potentiel, décrochez des emplois de rêve et partagez vos témoignages de manière anonyme.

      employer cover photo
      employer logo
      employer logo

      Amazon

      Employeur impliqué

      À propos
      Avis
      Salaires et avantages
      Emplois
      Entretiens
      Entretiens
      Recherches associées: Avis sur Amazon | Offres d’emploi chez Amazon | Salaires chez Amazon | Avantages sociaux chez Amazon
      Entretiens chez AmazonEntretiens d’embauche pour Applications Security Engineer chez AmazonEntretien chez Amazon


      Glassdoor

      • À propos
      • Récompenses
      • Blog
      • Nous contacter
      • Guides

      Employeurs

      • Compte employeur gratuit
      • Centre employeur
      • Blog pour les employeurs

      Informations

      • Aide
      • Règles de la communauté
      • Conditions d'utilisation
      • Confidentialité et choix publicitaires
      • Ne pas vendre ni partager mes informations
      • Outil de consentement aux cookies

      Travailler avec nous

      • Annonceurs
      • Carrières
      Télécharger l'application

      • Parcourir par :
      • Entreprises
      • Emplois
      • Lieux

      Copyright © 2008-2026. Glassdoor LLC. « Glassdoor », son logo, « Worklife Pro » et « Bowls » sont des marques déposées de Glassdoor LLC.

      Entreprises suivies

      Tenez-vous au courant des dernières opportunités et profitez de conseils d’initiés en suivant les entreprises de vos rêves.

      Recherche d’emplois

      Obtenez des recommandations et des mises à jour personnalisées en démarrant vos recherches.

      Meilleures entreprises pour « Rémunération et avantages » près de chez vous

      avatar
      Google
      4.5★Rémunération et avantages
      avatar
      Amazon Web Services
      3.9★Rémunération et avantages
      avatar
      Meta
      4.6★Rémunération et avantages
      avatar
      LinkedIn
      4.0★Rémunération et avantages

      Entretien pour Applications Security Engineer

      27 mars 2020
      Candidat à l'entretien anonyme
      Londres, Angleterre

      Autres retours d’entretien d’embauche pour un poste comme Applications Security Engineer chez Amazon

      Entretien pour Application Security Engineer

      28 févr. 2025
      Candidat à l'entretien anonyme
      Londres, Angleterre
      Aucune offre
      Aucune offre
      Expérience négative
      Entretien moyen

      Candidature

      J'ai postulé en ligne. J'ai passé un entretien chez Amazon (Londres, Angleterre) en févr. 2020

      Entretien

      With all respect to the interviewer's point of view, I believe some of the questions did not quite match the job description. To start with, here are the "responsibilities" taken from the job description: Responsibilities: · Application security reviews · Penetration testing · Projects and research work as needed · Security training and outreach to internal development teams · Security guidance documentation · Security tool development · Security metrics delivery and improvements · Assistance with recruiting activities and administrative work As per item number 1, this is what I do on a daily basis at my current work (especially on a code security level), however, there were no questions regarding that at all. The second item is something I have done in the past, I must admit I am no expert on that but still, no direct questions were asked in relation to that, only a few indirect questions about SQL Injection and XSS (all of which I successfully answered), so this item was only partially covered. A per 3rd item, only questions related to types and formal definition of "threat modeling" was asked. I did not know the official description and different types of that but this is something I do at my current job on a regular basis (in average, every month). The only thing is, what Threat modelling means for my current company is different from its general meaning and I made all that clear to the interviewer but apparently it wasnt enough. Long story short on that, I do have experience on Threat Modelling but from the way it was asked, it sounded like I did not know it enough. As per item 4, this is one of strongest points yet it was not even mentioned by the interviewer. At my current company, we conduct such training for development teams more or less every month. Plus, I am also personally an instructor on Udemy (which is also stated in my CV). As per item 5, Documentation in English is also one of my strongest points but it wasnt mentioned at all either. Item 6, here the interviewer asked one question: "what was the last tool and which problem did it solve?" it was indeed a good question and I gave a good answer but the thing is, it did not even cover the surface of my security tool development experience in Python! As the last tool I worked on wasnt even connected to security Item 7 is also something I am familiar with as improving metrics is something we do regularly for our SAST project, since you can say we are the ones who started this project from scratch in my current company. In other words, we still have the ownership of the project in addition to the technical aspects. Therefore, we are still working on improving the metrics (e.g. reducing the number of false-positives). This item was not mentioned either. Per item 8, I dont have experience on that but if it was asked, I would say I would be willing to do that. Instead of focusing on those areas, the interviewer decided to start the technical part with a totally different subject, i.e. internals of SSH. Now one might still argue that this is something an application security engineer should know that but actually this can be only considered as an additional attribute (as it is stated under "preferred qualifications" and only after making sure that the main responsibilities are covered. However, for such a position, if one starts the technical interview around that, in my opinion, something is just not right. Furthermore, this Network topic is not something I am completely blank on at all either. In fact, I do have experience on packet analysis and Network Security since I worked on that in the past but as you can imagine, for the last 1,5 year I have been working on a completely different field (Application sec/code sec). As a side note, I can easily recover that after reading some documentation for 10-15 minutes. There were 1 or 2 more questions which I could not answer (I believe one of them was on GPG encryption), all of which also suffered from the same thing In addition to all of that, I made it clear to the interviewer that I am interested in Machine Learning and its relationship with security. Moreover, I added that I had the mathematical background ) for that as I studied Electronics Engineering in one of the best engineering faculties of Turkey (probably the best) and if enough opportunity was given, I would be ready to learn all the ML stuff and contribute. How many of the applicants for IT Security can say something like that in your opinion? I am pretty sure most of them dont even know anything about basic things like limits, series, derivatives, probability etc. My math knowledge has also become a bit rusty as I learnt all that years ago but still, for me it would be a matter of "re-learning" I have also sent a similar email to AWS recruitment team after the interview but they did not even bother to answer.

      Questions d'entretien [1]

      Question 1

      Explain how SSH Works
      Répondre à cette question
      8
      Expérience positive
      Entretien moyen

      Candidature

      J'ai postulé en ligne. J'ai passé un entretien chez Amazon (Londres, Angleterre) en janv. 2025

      Entretien

      Code review and threat modelling. Interviewer asked questions about vulnerabilities in code, why they exist and how to fix them. Threat modelling was on a scenario of a hypothetical app.

      Questions d'entretien [1]

      Question 1

      Find vulnerabilities in this piece of code
      Répondre à cette question

      Entretien pour Application Security Engineer

      29 oct. 2024
      Candidat à l'entretien anonyme
      Bengaluru
      Aucune offre
      Expérience négative
      Entretien moyen

      Candidature

      J'ai postulé en ligne. Le processus a pris 2 mois. J'ai passé un entretien chez Amazon (Bengaluru) en oct. 2024

      Entretien

      "Flawed interview process shows favoritism, bias, and lack of respect for candidates’ time" As someone who has interviewed with Amazon multiple times, both for local and international roles, I’ve consistently encountered serious issues with their hiring process. There’s a noticeable pattern of favoritism, where decisions appear to be pre-determined, often based on internal referrals, personal connections, or even favoritism towards specific geographical backgrounds, rather than the skills and qualifications of candidates. In my experience, I’ve seen individuals with significantly less experience, no certifications, little to no public recognition for security work, and no bug bounty experience being selected over others who possess these qualifications. Despite my best efforts in the interviews—including providing detailed secure code reviews with precise mitigations and presenting a comprehensive threat model—I received a rejection the very next day, with no constructive feedback to explain the decision. This gave the impression that the outcome was already decided, making the interview process feel like a mere formality. Additionally, my interview was rescheduled four times, which demonstrated a lack of respect for candidates’ time and effort. Some interviewers I encountered were even rude, which left a negative impression of the professionalism Amazon claims to uphold. This experience reflects a process that is not only disorganized but also lacking respect for candidates who invest considerable time and effort in their applications. Another major concern is the lack of diversity and potential bias in hiring. I’ve observed that few candidates from certain Indian regions, especially those outside preferred geographical areas, seem to make it through the process. Panels predominantly include interviewers from specific regions, which doesn’t reflect the diversity Amazon claims to champion and raises questions about inherent biases within the hiring process. Overall, this experience has left me questioning the fairness, transparency, and professionalism of Amazon’s hiring practices. It’s frustrating to think that if a candidate is pre-selected through internal favoritism, others are still subjected to a pretentious interview process that wastes time and energy. I believe Amazon should reassess its interview practices to truly promote a fair, diverse, and respectful environment for all candidates.

      Questions d'entretien [1]

      Question 1

      Threat model , code review
      Répondre à cette question
      2

      Entretien pour Application Security Engineer

      24 oct. 2024
      Candidat à l'entretien anonyme
      Aucune offre
      Expérience négative
      Entretien moyen

      Candidature

      J'ai postulé en ligne. Le processus a pris 4 semaines. J'ai passé un entretien chez Amazon en oct. 2024

      Entretien

      Flawed Interview Process with Rescheduling Issues , Bias, favorism and no respect for time I’ve interviewed at Amazon multiple times, and unfortunately, my experience has been consistently negative. There’s a serious lack of respect for candidates’ time — my interview was rescheduled four times, which is not only unprofessional but also demonstrates their disregard for the candidate experience. During the interviews, I delivered strong technical solutions, including a thorough secure code review with precise mitigations and a comprehensive threat model aligned with the data flow diagram (DFD). Despite this, I received a rejection the very next day with no constructive feedback whatsoever. It was as though my technical performance was irrelevant, and the decision had already been made before the interviews took place. I strongly believe that the hiring process, particularly in India and with Indian interviewers, is riddled with favoritism and nepotism. While Amazon promotes itself as an equal opportunity employer, I’ve seen candidates with far less experience and qualifications—lacking certifications, threat modeling expertise, or notable achievements in bug bounties—get hired over more qualified candidates. It seems they already have their preferred candidates lined up through referrals or internal connections, making the entire process feel biased and predetermined. This lack of transparency and fairness undermines Amazon’s credibility as a company that values talent and merit. I hope others take caution before investing significant time and energy into a flawed process like this. Overall, the experience has left me questioning the fairness and transparency of Amazon's hiring practices, especially considering how biased and unprofessional the process seems to be at times.

      Questions d'entretien [1]

      Question 1

      Secure code review with mitigations Threat model
      Répondre à cette question