Amazon
Senior Security Engineer, Ads Security
At a Glance
About This Role
Responsibilities
- Design and build AI powered security automation solutions to fix security issues at scale.
- Develop and maintain agentic AI workflows that enable faster security issue resolution.
- Build evaluation frameworks and feedback loops to continuously measure and improve the accuracy, reliability, and safety of AI driven security tools.
- Partner with other teams at Amazon to fine tune models for specific use cases in Amazon Ads, including anomaly detection, log analysis, and natural language security querying.
- Define technical roadmaps for security automation initiatives, influencing org level priorities and driving alignment across partner teams.
- Author and review technical design documents, threat models, and architecture proposals for security automation services.
- Mentor engineers across the organization on best practices such as secure AI/ML system development and security automation patterns.
- Establish operational excellence standards for AI security systems, including monitoring, alerting, and human in the loop safeguards.
- Participate in on call rotations for security automation services, ensuring rapid response to production incidents and service degradation.
- Provide regular updates to leadership on project status, risks, and strategic decisions through written narratives and review mechanisms.
- Contribute to operational planning (OP1/OP2) including goal setting, resource planning, and roadmap prioritization for the team.
- Participate in helping to grow and develop a high performing engineering team.
- Support team development through code reviews, technical mentoring, career coaching, and fostering a culture of continuous learning.
- Perform ad-hoc security related initiatives as needed
Requirements
- 5+ years of any combination of the following: application security frameworks, identity and access controls, incident response, mobile security, cloud computing and security, AI security, threat intelligence, and penetration testing experience
- 2+ years of demonstrated experience utilizing AI/ML technologies for security use cases, including prompt engineering, LLM integration, or ML pipeline development.
- Strong programming proficiency in Python, with additional experience in at least one of: Java, Go, Rust, or TypeScript.
- Experience with cloud security architecture (AWS preferred) including IAM, VPC, KMS, and security monitoring services.
- Proven ability to design and deliver large scale distributed systems with high availability and operational maturity.
- Track record of influencing technical strategy and driving cross team alignment on security initiatives.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- Familiarity with Amazon Bedrock, SageMaker, or similar managed AI/ML services for production model deployment.
- Demonstrated success applying generative AI to reduce mean time to detect (MTTD) or mean time to respond (MTTR) in security operations.
- Contributions to open source security tools or published research in AI for cybersecurity.
- Experience with retrieval augmented generation (RAG) architectures for security knowledge bases and documentation.
- Advanced degree (MS/PhD) in Computer Science, Machine Learning, Cybersecurity, or a related field.
- AWS certifications (Security Specialty, Solutions Architect, or Machine Learning Specialty).
Benefits & Perks
About Amazon
We create and provide access to world-class entertainment through Amazon Originals, Prime Video, Audible, Amazon Games, Twitch, Amazon Music, Prime Gaming, and more. Check out The Lord of the Rings: The Rings of Power and Thursday Night Football exclusively on Prime Video!
Security at Amazon
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Application security (AppSec) is the process of designing, building, and testing”
Security Team
Org Structure & Reporting Line:"security is central to maintaining customer trust"(used as organizational priority language)
Key Initiatives
Shift Left in Practice, security training and outreach for internal development teams
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn