Skip to contentSkip to footer
  • Community
  • Jobs
  • Companies
  • Salaries
  • For employers
      Notifications

      Loading...

      Elevate your career

      Discover your earning potential, land dream jobs, and share work-life insights anonymously.

      employer cover photo
      employer logo
      employer logo

      Amazon

      Engaged employer

      About
      Reviews
      Pay and benefits
      Jobs
      Interviews
      Interviews
      Related searches: Amazon reviews | Amazon jobs | Amazon salaries | Amazon benefits | Amazon conversations
      Amazon interviewsAmazon Applications Security Engineer interviewsAmazon interview


      Glassdoor

      • About / Press
      • Awards
      • Blog
      • Research
      • Contact Us
      • Guides

      Employers

      • Free Employer Account
      • Employer Centre
      • Employers Blog

      Information

      • Help
      • Guidelines
      • Terms of Use
      • Privacy and Ad Choices
      • Do Not Sell Or Share My Information
      • Cookie Consent Tool
      • Security

      Work With Us

      • Advertisers
      • Careers
      Download the App

      • Browse by:
      • Companies
      • Jobs
      • Locations
      • Communities
      • Recent posts

      Copyright © 2008-2026. Glassdoor LLC. "Glassdoor," "Worklife Pro," "Bowls" and logo are proprietary trademarks of Glassdoor LLC.

      Company Bowl sample

      Want the inside scoop on your own company?

      Check out your Company Bowl for anonymous work chats.

      Bowls

      Get actionable career advice tailored to you by joining more bowls.

      Followed companies

      Stay ahead in opportunities and insider tips by following your dream companies.

      Job searches

      Get personalised job recommendations and updates by starting your searches.

      Top companies for "Compensation and Benefits" near you

      avatar
      Google
      4.5★Compensation and benefits
      avatar
      Booking.com
      4.2★Compensation and benefits
      avatar
      Amazon Web Services
      3.9★Compensation and benefits
      avatar
      Meta
      4.6★Compensation and benefits

      Applications Security Engineer Interview

      27 Mar 2020
      Anonymous interview candidate
      London, England
      No offer
      Negative experience
      Average interview

      Application

      I applied online. I interviewed at Amazon (London, England) in Feb 2020

      Interview

      With all respect to the interviewer's point of view, I believe some of the questions did not quite match the job description. To start with, here are the "responsibilities" taken from the job description: Responsibilities: · Application security reviews · Penetration testing · Projects and research work as needed · Security training and outreach to internal development teams · Security guidance documentation · Security tool development · Security metrics delivery and improvements · Assistance with recruiting activities and administrative work As per item number 1, this is what I do on a daily basis at my current work (especially on a code security level), however, there were no questions regarding that at all. The second item is something I have done in the past, I must admit I am no expert on that but still, no direct questions were asked in relation to that, only a few indirect questions about SQL Injection and XSS (all of which I successfully answered), so this item was only partially covered. A per 3rd item, only questions related to types and formal definition of "threat modeling" was asked. I did not know the official description and different types of that but this is something I do at my current job on a regular basis (in average, every month). The only thing is, what Threat modelling means for my current company is different from its general meaning and I made all that clear to the interviewer but apparently it wasnt enough. Long story short on that, I do have experience on Threat Modelling but from the way it was asked, it sounded like I did not know it enough. As per item 4, this is one of strongest points yet it was not even mentioned by the interviewer. At my current company, we conduct such training for development teams more or less every month. Plus, I am also personally an instructor on Udemy (which is also stated in my CV). As per item 5, Documentation in English is also one of my strongest points but it wasnt mentioned at all either. Item 6, here the interviewer asked one question: "what was the last tool and which problem did it solve?" it was indeed a good question and I gave a good answer but the thing is, it did not even cover the surface of my security tool development experience in Python! As the last tool I worked on wasnt even connected to security Item 7 is also something I am familiar with as improving metrics is something we do regularly for our SAST project, since you can say we are the ones who started this project from scratch in my current company. In other words, we still have the ownership of the project in addition to the technical aspects. Therefore, we are still working on improving the metrics (e.g. reducing the number of false-positives). This item was not mentioned either. Per item 8, I dont have experience on that but if it was asked, I would say I would be willing to do that. Instead of focusing on those areas, the interviewer decided to start the technical part with a totally different subject, i.e. internals of SSH. Now one might still argue that this is something an application security engineer should know that but actually this can be only considered as an additional attribute (as it is stated under "preferred qualifications" and only after making sure that the main responsibilities are covered. However, for such a position, if one starts the technical interview around that, in my opinion, something is just not right. Furthermore, this Network topic is not something I am completely blank on at all either. In fact, I do have experience on packet analysis and Network Security since I worked on that in the past but as you can imagine, for the last 1,5 year I have been working on a completely different field (Application sec/code sec). As a side note, I can easily recover that after reading some documentation for 10-15 minutes. There were 1 or 2 more questions which I could not answer (I believe one of them was on GPG encryption), all of which also suffered from the same thing In addition to all of that, I made it clear to the interviewer that I am interested in Machine Learning and its relationship with security. Moreover, I added that I had the mathematical background ) for that as I studied Electronics Engineering in one of the best engineering faculties of Turkey (probably the best) and if enough opportunity was given, I would be ready to learn all the ML stuff and contribute. How many of the applicants for IT Security can say something like that in your opinion? I am pretty sure most of them dont even know anything about basic things like limits, series, derivatives, probability etc. My math knowledge has also become a bit rusty as I learnt all that years ago but still, for me it would be a matter of "re-learning" I have also sent a similar email to AWS recruitment team after the interview but they did not even bother to answer.

      Interview questions [1]

      Question 1

      Explain how SSH Works
      Answer question
      8

      Other Applications Security Engineer interview reviews for Amazon

      Application Security Engineer Interview

      28 Feb 2025
      Anonymous interview candidate
      London, England
      No offer
      Positive experience
      Average interview

      Application

      I applied online. I interviewed at Amazon (London, England) in Jan 2025

      Interview

      Code review and threat modelling. Interviewer asked questions about vulnerabilities in code, why they exist and how to fix them. Threat modelling was on a scenario of a hypothetical app.

      Interview questions [1]

      Question 1

      Find vulnerabilities in this piece of code
      Answer question

      Application Security Engineer Interview

      29 Oct 2024
      Anonymous interview candidate
      Bengaluru
      No offer
      Negative experience
      Average interview

      Application Security Engineer Interview

      24 Oct 2024
      Anonymous interview candidate
      No offer
      Negative experience
      Average interview

      Application

      I applied online. The process took 4 weeks. I interviewed at Amazon in Oct 2024

      Interview

      Flawed Interview Process with Rescheduling Issues , Bias, favorism and no respect for time I’ve interviewed at Amazon multiple times, and unfortunately, my experience has been consistently negative. There’s a serious lack of respect for candidates’ time — my interview was rescheduled four times, which is not only unprofessional but also demonstrates their disregard for the candidate experience. During the interviews, I delivered strong technical solutions, including a thorough secure code review with precise mitigations and a comprehensive threat model aligned with the data flow diagram (DFD). Despite this, I received a rejection the very next day with no constructive feedback whatsoever. It was as though my technical performance was irrelevant, and the decision had already been made before the interviews took place. I strongly believe that the hiring process, particularly in India and with Indian interviewers, is riddled with favoritism and nepotism. While Amazon promotes itself as an equal opportunity employer, I’ve seen candidates with far less experience and qualifications—lacking certifications, threat modeling expertise, or notable achievements in bug bounties—get hired over more qualified candidates. It seems they already have their preferred candidates lined up through referrals or internal connections, making the entire process feel biased and predetermined. This lack of transparency and fairness undermines Amazon’s credibility as a company that values talent and merit. I hope others take caution before investing significant time and energy into a flawed process like this. Overall, the experience has left me questioning the fairness and transparency of Amazon's hiring practices, especially considering how biased and unprofessional the process seems to be at times.

      Interview questions [1]

      Question 1

      Secure code review with mitigations Threat model
      Answer question

      Application

      I applied online. The process took 2 months. I interviewed at Amazon (Bengaluru) in Oct 2024

      Interview

      "Flawed interview process shows favoritism, bias, and lack of respect for candidates’ time" As someone who has interviewed with Amazon multiple times, both for local and international roles, I’ve consistently encountered serious issues with their hiring process. There’s a noticeable pattern of favoritism, where decisions appear to be pre-determined, often based on internal referrals, personal connections, or even favoritism towards specific geographical backgrounds, rather than the skills and qualifications of candidates. In my experience, I’ve seen individuals with significantly less experience, no certifications, little to no public recognition for security work, and no bug bounty experience being selected over others who possess these qualifications. Despite my best efforts in the interviews—including providing detailed secure code reviews with precise mitigations and presenting a comprehensive threat model—I received a rejection the very next day, with no constructive feedback to explain the decision. This gave the impression that the outcome was already decided, making the interview process feel like a mere formality. Additionally, my interview was rescheduled four times, which demonstrated a lack of respect for candidates’ time and effort. Some interviewers I encountered were even rude, which left a negative impression of the professionalism Amazon claims to uphold. This experience reflects a process that is not only disorganized but also lacking respect for candidates who invest considerable time and effort in their applications. Another major concern is the lack of diversity and potential bias in hiring. I’ve observed that few candidates from certain Indian regions, especially those outside preferred geographical areas, seem to make it through the process. Panels predominantly include interviewers from specific regions, which doesn’t reflect the diversity Amazon claims to champion and raises questions about inherent biases within the hiring process. Overall, this experience has left me questioning the fairness, transparency, and professionalism of Amazon’s hiring practices. It’s frustrating to think that if a candidate is pre-selected through internal favoritism, others are still subjected to a pretentious interview process that wastes time and energy. I believe Amazon should reassess its interview practices to truly promote a fair, diverse, and respectful environment for all candidates.

      Interview questions [1]

      Question 1

      Threat model , code review
      Answer question
      2