Senior Application Security Engineer, AWS Generative AI Security

3 months ago


San Francisco, United States Amazon Development Center U.S., Inc. Full time
Do you thrive on the challenge of threat modeling and fortifying the defenses of AI/Generative AI and cloud systems? Are you excited by the prospect of identifying customer security expectations for AI systems and influencing builders to embrace secure-by-default practices, making the secure path the seamless choice for our customers? As a Senior Security Engineer (AppSec) on the AWS Generative AI security team, you will be entrusted with the security review and threat modeling of AWS Generative AI offerings.

Our team is responsible for setting and holding the highest security bar for Generative AI offerings from AWS. We conduct security reviews, penetration testing, build security automation, and implement whatever mechanisms are necessary to ensure the high security bar for AWS Generative AI offerings for our customers. While Generative AI systems share components with traditional distributed systems, they also present unique challenges, such as model security, agentic behavior, security issues arising from the non-deterministic nature of LLMs, and GPU-level compute isolation complexities. We seek Security experts to join our group and tackle these security challenges head-on, safeguarding our customers' Generative AI workloads.

A Senior Security Engineer at Amazon is expected to be strong in multiple domains and provide significant contributions to the AWS IT Security team and to multiple groups throughout Amazon. Security engineers are expected to develop elegant solutions to complex business problems and apply appropriate technologies while following security engineering best practices. You are also expected to mentor more junior engineers and be a security thought leader for the organization.

A Senior Security Engineer must foster constructive dialogue and seek resolution when confronted with discordant views. Engineers in this role are expected to participate fully in the planning of the AWS IT Security team's work and constantly seek opportunities for process improvement. They should also have a deep understanding of at least one specialty for which they are a sought-out resource (both within AWS Security and by groups throughout Amazon), while having an understanding of the application of information security in a broad range of technical areas.

Key job responsibilities
• Perform threat modeling and ensure proper controls are in place for AWS distributed systems, with a primary focus on AI/Generative AI systems.

• Actively engage with customers, stakeholders, and industry experts, capturing customer security expectations for AI/Generative AI systems and incorporating them into the security bar.

• Influence builders to be better security owners, actively engaging with them to innovate faster and bring mechanisms for upholding the high security bar.

• Proactively influence AI/Generative AI systems to have security features that exceed customer security expectations for their workloads.

• Produce guidance to shift security left for builders and scale security ownership by commoditizing it.

• Obsess over automating well-paved paths for scaling, allowing engineers to focus on high-judgment work.

• Security tool development

• Delivering and improving security metrics

• Assisting with recruiting activities and administrative work

About the team
About Amazon Security

Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.

Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.

Inclusive Team Culture
In Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.

We are open to hiring candidates to work out of one of the following locations:

Arlington, VA, USA | Atlanta, GA, USA | Austin, TX, USA | Cupertino, CA, USA | Herndon, VA, USA | New York, NY, USA | San Diego, CA, USA | San Francisco, CA, USA | Seattle, WA, USA

BASIC QUALIFICATIONS

- A bachelor's degree in computer science, cybersecurity, information security, a similar technical field, or equivalent professional experience can substitute for a degree.
- Minimum of 5 years of experience in defensive security, threat modeling, and security review processes.
- Minimum of 5 years of experience with any combination of the following: IAM, Security Engineering, Cryptography, Vulnerability Management, Supply Chain Security, Network security, Threat modelling or Penetration testing.
- Expertise in distributed systems security, fundamental cloud security concepts around IAM, cryptography, and other security features.

PREFERRED QUALIFICATIONS

- Hands-on experience with AWS basic security building blocks (IAM, KMS, CloudTrail, etc.) and their effective utilization for security controls.
- Hands-on experience with AWS Services and threat modeling around them.
- Experience in developing automation solutions for security.
- Nice to have - Expertise with security threats and mitigations involving Gen AI models, including multi-modal models encompassing text, image, audio, and video.
- Nice to have - Expertise with security threats and mitigations concerning automations built on the non-deterministic output of Gen AI.



  • San Francisco, California, United States Amazon Development Center U.S., Inc. Full time

    About the RoleWe are seeking a highly skilled Senior Cloud Security Engineer to join our AWS Generative AI security team at Amazon Development Center U.S., Inc. As a Senior Cloud Security Engineer, you will be responsible for ensuring the security and integrity of our Generative AI offerings.Key ResponsibilitiesPerform threat modeling and ensure proper...


  • San Francisco, California, United States Robust Intelligence Full time

    Company OverviewRobust Intelligence is dedicated to mitigating AI-related risks. As AI becomes integral to automated decision-making, we face significant challenges that require innovative solutions. Our primary offering is designed to seamlessly integrate with existing AI frameworks, addressing both inadvertent and deliberate failure modes. With the rise of...


  • San Francisco, California, United States Amazon Development Center U.S., Inc. Full time

    About the RoleWe are seeking a highly skilled Senior Cloud Security Engineer to join our AWS Generative AI security team at Amazon Development Center U.S., Inc. As a Senior Cloud Security Engineer, you will be responsible for ensuring the security and integrity of our Generative AI offerings.Key ResponsibilitiesPerform threat modeling and ensure proper...


  • San Francisco, California, United States Radiant Security Full time

    About usRadiant Security is the maker of the industry's first AI SOC Analyst, which uses Gen AI to emulate the experience, processes, and decision-making of top-tier security analysts. With Radiant, alerts are sent to our AI analyst before they go to the SOC. Each alert is subjected to dozens to hundreds of dynamically selected tests used to determine...


  • San Francisco, United States Perplexity AI Full time

    Job DescriptionJob DescriptionPerplexity is seeking an experienced Cloud Security Engineer. You will be a critical hands-on member of the technical staff responsible for designing, implementing and maintaining secure systems to protect the organization's digital assets. You will help ensure the highest level of security across the enterprise while...


  • San Francisco, United States Perplexity AI Full time

    Job DescriptionJob DescriptionPerplexity is seeking an experienced Cloud Security Engineer. You will be a critical hands-on member of the technical staff responsible for designing, implementing and maintaining secure systems to protect the organization's digital assets. You will help ensure the highest level of security across the enterprise while...


  • San Francisco, California, United States Operant AI Full time

    Job OverviewPosition: Senior Backend Software Engineer - Cloud SecurityCompany Overview:Operant AI is dedicated to enhancing cybersecurity in the modern digital landscape. Our innovative technology addresses critical challenges in cloud-native security, safeguarding applications from infrastructure to APIs, and data to AI. We are committed to integrating...


  • San Francisco, California, United States Perplexity AI Full time

    Job OverviewPerplexity AI is on the lookout for a skilled Cloud Security Specialist. This role is pivotal as you will be an integral part of our technical team, responsible for the design, implementation, and maintenance of secure systems aimed at safeguarding the organization's digital resources. Your efforts will be essential in ensuring top-tier security...


  • San Francisco, California, United States Radiant Security Full time

    About usRadiant Security is the maker of the industry's first AI SOC Analyst, which uses Gen AI to emulate the experience, processes, and decision-making of top-tier security analysts. With Radiant, alerts are sent to our AI analyst before they go to the SOC. Each alert is subjected to dozens to hundreds of dynamically selected tests used to determine...


  • San Francisco, United States Operant AI Full time

    Job DescriptionJob DescriptionSecurity Research EngineerWho We Are:We're in business to secure the modern world. Operant's unique technology solves several of the biggest problems in modern cybersecurity - protecting applications across every layer of the cloud native stack from infra to APIs, and data to AI. We are passionate about bringing state of...


  • San Francisco, California, United States Worldcoin Full time

    About the OpportunityWe are seeking a highly skilled Senior Application Security Engineer to join our team at Worldcoin. As a key member of our security team, you will play a critical role in ensuring the security and integrity of our applications.Key Responsibilities:Perform security-focused code reviews and own the vulnerability management processSupport...

  • Senior AI/ML Engineer

    22 hours ago


    San Jose, California, United States ThisWay Full time

    Job Opportunity at ThisWayThisWay is seeking a highly skilled Principal AI/ML Engineer to lead the development and evolution of AI platforms and products within the Security AI team.Key Responsibilities:Develop and implement AI-based solutions to drive innovation and maintain a competitive edge in the AI and machine learning space.Collaborate with...

  • Senior Data Engineer

    3 months ago


    San Francisco, California, United States Nightfall AI Full time

    Nightfall AI ) is the unified platform that prevents data leaks and enables secure collaboration by protecting sensitive data and controlling how it's shared. For decades, legacy data leak prevention (DLP) solutions have failed to adequately protect sensitive information. Traditional DLP is outdated, intrusive, and complex - it wasn't designed for today's...

  • Senior Data Engineer

    3 months ago


    San Francisco, United States Nightfall AI Full time

    Nightfall AI (www.nightfall.ai) is the unified platform that prevents data leaks and enables secure collaboration by protecting sensitive data and controlling how it's shared. For decades, legacy data leak prevention (DLP) solutions have failed to adequately protect sensitive information. Traditional DLP is outdated, intrusive, and complex - it...


  • San Francisco, California, United States Attentive Full time

    About AttentiveAttentive is a leading AI marketing platform that empowers brands to enhance their messaging effectiveness through personalized SMS and email communications. By integrating intelligence throughout the consumer purchasing journey, Attentive enables businesses to engage in hyper-personalized interactions with their customers at scale. Utilizing...


  • San Francisco, California, United States Hayden AI Technologies, Inc Full time

    About Hayden AI Technologies, Inc.We are a pioneering technology company harnessing the power of artificial intelligence and machine learning to transform the way governments and businesses address real-world challenges.Our innovative mobile perception system empowers our clients to accelerate transit, enhance street safety, and drive forward a sustainable...


  • San Francisco, California, United States Operant AI Full time

    Job OverviewSenior Site Reliability EngineerAs the inaugural SRE within our organization, we are looking for an individual to establish Operant's SRE strategy and operations aimed at ensuring the resilience and security of our platforms and services. If you are enthusiastic about the prospect of being an early engineer at a startup ready to revolutionize...


  • San Francisco, California, United States Operant AI Full time

    Job DescriptionPosition: Senior Frontend Software EngineerCompany Overview:Operant AI is dedicated to enhancing cybersecurity in the modern digital landscape. Our innovative technology addresses significant challenges in contemporary cybersecurity, safeguarding applications across all layers of the cloud-native architecture, from infrastructure to APIs, and...


  • San Francisco, United States Amazon Web Services, Inc. Full time

    Do you love experimenting with new programming tools and technologies? Are you excited to explore how generative AI will transform how software is designed, implemented, and deployed? Do you gain satisfaction from helping other software developers by sharing your knowledge? If so, then this might be your dream job Amazon Web Services (AWS) is seeking a...


  • San Francisco, California, United States Untether AI Full time

    Untether AI is looking for a talented AI Applications Engineer to join our Product team to support our customers with SDK for our custom AI accelerator devices. You will be working with data scientists to ensure their AI workloads are ported and running efficiently on Untether AI products. Must be a US citizen to apply.Ideal candidate profileYou have...