About the job
Amazon Enterprise Security Products is a newly launched group building intelligent, cloud-agnostic security tools using AI-first development practices. Here, you build AI and you build with AI — at the same time. This is not a traditional Security role. It's a chance to shape the future of security tooling with a small, fast team that ships like a startup and deploys like Amazon.
Responsibilities
* Drive security architecture for AI powered products: Lead security decisions across product development workstreams, ensuring AI powered security tooling is secure by design from the ground up. Shape threat models, security patterns, and guardrails that scale across multi cloud environments.
* Embed security into the builder experience: Partner with engineering leaders across Amazon Security and AESP to reduce friction for builders developing secure services. Champion security practices that accelerate rather than slow delivery in a fast moving, startup paced environment.
* Influence the design of AI integrated security products: Bring deep security expertise to the intersection of AI and product development. Guide the team in building agentic systems, RAG architectures, and intelligent automation pipelines that solve industry wide security problems.
* Evaluate and advance AI assisted security practices: Assess how emerging AI capabilities including agentic coding and AI assisted workflows can strengthen security posture, accelerate threat detection, and improve the team's development practices.
Qualifications
Minimum
5+ years of non-internship background in troubleshooting systems issues, analyzing logs, or automating complex tasks using command line tools experience
5+ years of work in identifying security issues and risks, and developing mitigation plans experience
4+ years of (non-intternship) scripting, programming, and security code review in common programming languages experience
Knowledge of at least two of the following programming languages: Scala, Java, Python, C/C++, or Go
Experience (non-internship) in scripting, programming, and security code reviewing in a common programming language
Experience (non-internship) in industry-based security vulnerabilities identification, attack patterns, and remediation techniques
Experience as a mentor, tech lead or leading an engineering team
Experience with AI/ML technologies
Experience communicating across technical and non-technical audiences, including executive level stakeholders or clients
Experience evaluating or implementing security practices for agentic AI systems, RAG architectures, or LLM integrated products
Preferred
Experience applying threat modeling or other risk identification techniques or equivalent
Experience with security in service-oriented architectures/microservices and web services
Track record of building and scaling security engineering teams in high growth or startup environments
Experience with threat modeling for AI powered applications and data pipelines