k
klietus

Brett E

@klietus

Application Security Engineer

United States
English
About me
I am an Application Security Engineer and Software Engineer with 20+ years of experience architecting and securing cloud-native, distributed systems. I am an experienced leader in application security and a hands-on developer.... Read more

Skills

k
klietus
Brett E
Offline • 
Average response time: 7 hours

See my services

Full Stack Web Applications
I will review your applications for security defects

Work experience

Amazon

Amazon

9 yrs 4 mos

Software Engineer / Application Security Engineer

Aug 2016 - Dec 20215 yrs 4 mos

Consulted across AWS Professional Services to deliver security reviews and secure development guidance for 10+ product teams, integrating security into the SDLC from design through release. Executed SAST/DAST and manual penetration testing, exploited vulnerabilities to demonstrate impact, and negotiated technical remediation plans with engineering owners. As an SDE in AWS Security, automated and scaled vulnerability scanning for compliance regimes and helped operationalize security tooling and processes across teams. Designed and implemented authentication and authorization systems for customerfacing services and helped build a service development team within a sales organization.

Software Development Engineer

Jan 2010 - Jan 20144 yrs

Seattle Access Management Systems: Owned key permissions management infrastructure; led a project that replaced critical security components to reduce exposure of company assets. Armor: Contributed to systems for metric monitoring and anomaly detection; participated in the initial implementation of an automated deploymentfailure detection and response system that shortened incident response windows by 80%. The flagship product processed 500+ million metrics per month. Recruiting Technologies: Senior engineer leading a team and mentoring nine engineers across design, coding and debugging; owned end-to-end delivery and engineering best practices. Authored companywide training materials and delivered technical presentations and brownbag sessions.