Senior Security Engineer, AI Application Security, Leo Security

Amazon Leo


Job Location:

Redmond, WA - USA

Monthly Salary: Not Disclosed
Posted on: 2 days ago
Vacancies: 1 Vacancy

Job Summary

Amazon Leo is an initiative to launch a constellation of Low Earth Orbit satellites that will provide low-latency high-speed broadband network connectivity to unserved and underserved communities around the world. Have you wanted an opportunity to secure an advanced satellite broadband telecom service The Leo Security team owns the security of product and operations of Leo end-to-end. We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and to protect the integrity and confidentiality of our customer data. Our team drives the research & development deployment and operation of several mission-critical security systems and mechanisms. You will work in a start-up like environment backed by Amazons infrastructure to bootstrap security mechanisms and help instill the security culture in the organization.

Export Control Requirement
Due to applicable export control laws and regulations candidates must be a U.S. citizen or national U.S. permanent resident (i.e. current Green Card holder) or lawfully admitted into the U.S. as a refugee or granted asylum.


Key job responsibilities
Serve as the organizations AI security subject matter expert. Drive AI tool approval reviews lead security reviews for AI-integrated systems and make policy decisions on AI adoption.

Represent security in cross-Amazon AI security working groups and drive cross-team alignment on AI policy direction. Mentor and backstop AI leads across teams on AI consultations and reviews.

Define and drive implementation of proactive security controls for AI applications including GenAI-powered tools agentic systems and LLM-integrated services. Guide teams towards solutions that are secure by default; if secure-by-default solutions dont exist invent and propose them.

Develop and implement security controls for the AI software development lifecycle ensuring builders build secure AI applications by default.

Assess and drive mitigation of AI-specific security risks including prompt injection model abuse data exfiltration unauthorized tool invocation and autonomy boundary violations at scale.

Establish environment-specific security bar threat models and defense priorities for AI systems. Construct security frameworks rubrics and runbooks for AI-related problem domains that enable others to apply your work in a repeatable way.

Collaborate with builder teams to assess technical debt and risk in AI systems. Provide strategic direction that addresses vulnerabilities and fortifies our products. Lead the burn down of long-term AI security risk.

Drive adoption of AI security guardrails testing frameworks and monitoring across the organization.
Collaborate with business leaders to define AI security priorities. Support leaders by acting as a trusted advisor and providing direction that makes security easy. Help leaders measure their orgs security execution.

Work with builder teams to understand their build processes and ensure they use appropriate security linting static analysis and AI-specific testing tools. Instill a security culture in builder teams.

Mentor builders who aspire to become security advocates and security engineers via 1-1 sessions and office hours.

Assist Red Teams in identifying AI security testing priorities. Scope penetration tests for AI systems and help deep-dive on these engagements.

Support security incident investigations related to AI systems including prompt injection attacks model misuse and data exfiltration attempts. Investigate emerging AI security issues root cause them and devise mechanisms to prevent them.

Propose a security vision for AI that delivers security and protects our customers.

Leverage support from automation teams that find discoverable vulnerabilities. Advocate for the creation and deployment of new testing tools and detection mechanisms.

And last of allhack some really cool bleeding edge tech!

A day in the life
In this highly dynamic role youll be accountable for deciding where your time investments provide the most value. You will have a blend of proactive and reactive work. Teams will reach out for ideas on how to handle a wide variety of security problems. You can anticipate implementation questions like:
- Were integrating a third-party AI toolwhat are the security privacy compliance and export control implications
- We need to deploy an agentic system that invokes MCP toolshow do we define autonomy boundaries and prevent prompt injection
- Whats the right way to scope IAM permissions for a Bedrock inference endpoint with cross-partition data access
- Weve experienced an AI-related incident and need to perform root cause analysis to identify what security controls failed.
- We want to build AI-powered security tooling (e.g. automated threat modeling code scanning)how do we do this securely
When youre not working on responding to the questions of your builder teams you will be evaluating overall org performance to identify architectural defects and proposing new security initiatives to correct problems in the org. You will help Amazon maintain a high bar for customer security.


About the team
* Diverse Experiences Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description we encourage candidates to apply. If your career is just starting hasnt followed a traditional path or includes alternative experiences dont let it stop you from applying.
* Why Amazon Security At Amazon security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazons products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud devices retail entertainment healthcare operations and physical stores.
* Inclusive Team Culture In Amazon Security its in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas perspectives and voices.
* Training & Career Growth Were continuously raising our performance bar as we strive to become Earths Best Employer. Thats why youll find endless knowledge-sharing training and other career-advancing resources here to help you develop into a better-rounded professional.
* Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home theres nothing we cant achieve.

- 5 years of any combination of the following: application security frameworks identity and access controls incident response mobile security cloud computing and security AI security threat intelligence and penetration testing experience
- Demonstrated experience security-reviewing or architecting at least three of: AWS-hosted inference (Bedrock IAM scoping KMS region/partition constraints) agentic systems (autonomy boundaries prompt injection tool-use mediation) MCP servers (data access patterns registration/compliance agentic MCP risk) model hosting infrastructure 3P AI tool security review (data flow analysis ingress/egress control ECI/ITAR scoping)
- 3 years of hands-on AI/ML security work (security reviews of AI-integrated systems threat modeling for AI tools exposure to common AI architectures such as inference platforms agentic systems MCP/tool-use and 3P AI tools)
- Experience driving formal security reviews (ASR or equivalent) of complex AI systems through to certification with comfort in risk-based review prioritization
- Knowledge of common AI security risks (prompt injection data poisoning model extraction insecure tool use autonomy boundary violations)
- Demonstrated experience driving security policy decisions in cross-team or cross-org working group settings comfortable navigating consensus among technical and non-technical stakeholders
- 5 years of experience communicating complex technical concepts to non-technical audiences with strong written and verbal skills and the ability to work effectively across internal and external organizations

- Knowledge of cloud computing services and deployment architecture
- Experience developing security controls and tooling across the AI-SDLCincluding secure design review threat modeling code scanning and security testing of LLM-based applicationswith programming/scripting skills sufficient to build or drive adoption of automated security tools that work at scale

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status disability or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process including support for the interview or onboarding process please visit for more information. If the country/region youre applying in isnt listed please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience qualifications and location. Amazon also offers comprehensive benefits including health insurance (medical dental vision prescription Basic Life & AD&D insurance and option for Supplemental life plans EAP Mental Health Support Medical Advice Line Flexible Spending Accounts Adoption and Surrogacy Reimbursement coverage) 401(k) matching paid time off and parental leave. Learn more about our benefits at WA Redmond - 178400.00 - 226700.00 USD annually


Required Experience:

Senior IC

Amazon Leo is an initiative to launch a constellation of Low Earth Orbit satellites that will provide low-latency high-speed broadband network connectivity to unserved and underserved communities around the world. Have you wanted an opportunity to secure an advanced satellite broadband telecom servi...

About Company

Company Logo

Free shipping on millions of items. Get the best of Shopping and Entertainment with Prime. Enjoy low prices and great deals on the largest selection of everyday essentials and other products, including fashion, home, beauty, electronics, Alexa Devices, sporting goods, toys, automotive ... View more

View Profile View Profile