Applied Scientist, Leo Security

Amazon

Herndon (VA)

On-site

USD 143,000 - 193,000

Full time

11 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Amazon Leo is seeking an Applied Scientist to join the founding Engineering and R&D team for Leo Infrastructure and IP Security. You will build models to baseline threat actor behavior using diverse telemetry, while ensuring privacy-preserving data representations and production-ready detections.

The role requires advanced degrees with practical ML experience, deep learning fluency, and a strong track record in statistical modeling.

Qualifications

  • 3+ years of building models for business application experience
  • PhD, or Master's degree and 4+ years of CS, CE, ML or related field experience
  • Experience with statistical modeling and analysis of large, heterogeneous datasets, including anomaly detection, time-series analysis, or behavioral baselining
  • Fluency in Python; experience with a systems language such as Rust or C++ is a plus
  • Experience with popular deep learning frameworks (e.g., PyTorch, TensorFlow)

Responsibilities

  • Build behavioral and statistical models that baseline normal activity across heterogeneous security telemetry, including specialized industrial-control and factory-floor data sources, so detections extend to new environments with low false-positive rates
  • Design privacy-preserving representations of sensitive security data, and verify that models and detections tuned against them remain accurate against the real data
  • Define the methodology and own the analysis for difficult, loosely defined problems: gather complex data across domains, select the right techniques from a range of data science methods
  • Develop the metrics and evaluation frameworks that measure model and detection performance against threat actor behavior before a model is trusted in production
  • Contribute to the team's neurosymbolic reasoning platform, adapting state-of-the-art techniques and shipping components at production quality
  • Document your work with the rigor of a peer-reviewed publication, and communicate results clearly to scientific and security-operations audiences

Skills

Python
Statistical modeling
Time-series analysis
Deep learning

Education

PhD
Master's degree with 4+ years experience

Tools

PyTorch
TensorFlow

Job description

Description

Amazon Leo is a constellation of Low Earth Orbit satellites that will provide low-latency, high-speed broadband network connectivity to unserved and underserved communities around the world.



We are looking for an Applied Scientist to join the founding cohort of the Engineering and R&D team within Leo Infrastructure and IP Security. The team defends the manufacturing lines, launch sites, and global ground infrastructure behind the constellation from the most sophisticated threat actors on the planet. The data is unlike anything you have worked with: badge and door-access events, asset movement, network telemetry, and industrial control signals from factories, ground stations, and launch facilities, all of which must be modeled, baselined, and defended. You will build the statistical and behavioral models that separate threat actor behavior from the noise of a global operation, and the privacy-preserving data representations that let detection science scale without exposing sensitive data. This is an R&D role with a production mandate: every model you build becomes part of the system Leo's security teams use to protect the constellation.



Export Control Requirement

Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.



Key job responsibilities


  • Build behavioral and statistical models that baseline normal activity across heterogeneous security telemetry, including specialized industrial-control and factory-floor data sources, so detections extend to new environments with low false-positive rates.

  • Design privacy-preserving representations of sensitive security data, and verify that models and detections tuned against them remain accurate against the real data — turning data-protection guarantees into measurable, provable properties rather than assertions.

  • Define the methodology and own the analysis for difficult, loosely defined problems: gather complex data across domains, select the right techniques from a range of data science methods, and justify your approach with evidence.

  • Develop the metrics and evaluation frameworks that measure model and detection performance against threat actor behavior before a model is trusted in production.

  • Contribute to the team's neurosymbolic reasoning platform, adapting state-of-the-art techniques from the literature and shipping components at production quality.

  • Document your work with the rigor of a peer-reviewed publication, and communicate results clearly to both scientific and security-operations audiences.



A day in the life

You will move between analysis and production in the same week: profiling a telemetry source the team has never modeled, establishing what normal looks like for it, and shipping the baseline as a component detections build on. Security engineers on your team translate threat intelligence into the adversary behaviors that matter; you build and tune the models that detect those behaviors and evaluate model performance against them. You might spend a morning chasing a false-positive pattern to its statistical root cause, and the afternoon verifying that an anonymized dataset still preserves the signal a detection depends on. You will work semi-autonomously with guidance from senior scientists, backtest candidate detections against retained telemetry, and deliver scientific artifacts that ship.



About The Team

Leo Infrastructure and IP Security protects the people, facilities, hardware, and supply chain behind a global satellite constellation. The Engineering and R&D team within this organization builds the platforms and tooling the security pillar teams operate on, moving security operations from manual triage to correlation-based detection, automated response, and agentic AI. The team is composed of applied scientists, software engineers, and security engineers working across physical and digital security domains.



Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.



Training & Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.



Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.



Basic Qualifications


  • 3+ years of building models for business application experience

  • PhD, or Master's degree and 4+ years of CS, CE, ML or related field experience

  • Experience with statistical modeling and analysis of large, heterogeneous datasets, including anomaly detection, time-series analysis, or behavioral baselining

  • Fluency in Python; experience with a systems language such as Rust or C++ is a plus

  • Experience with popular deep learning frameworks (e.g., PyTorch, TensorFlow)



Preferred Qualifications


  • Experience in one or more of the following domains: access-control system and methodology, network security, application-and system-development security, security architecture and models, cryptography, and operations security

  • Experience in professional software and systems development

  • Publications at top-tier peer-reviewed machine learning, data mining, or security venues (e.g., NeurIPS, ICML, ICLR, KDD, CCS, USENIX Security)

  • Experience with privacy-preserving machine learning, including synthetic data generation, anonymization, or differential privacy, and validating fidelity of transformed data

  • Experience designing evaluation frameworks and metrics for models where ground truth requires human judgment

  • Experience modeling operational or sensor telemetry, including industrial control systems (OT/SCADA), IoT, or physical-world event data



Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.



Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner.



The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.




  • USA, VA, Arlington - 142,800.00 - 193,200.00 USD annually

  • USA, VA, Herndon - 142,800.00 - 193,200.00 USD annually

  • USA, WA, BELLEVUE - 142,800.00 - 193,200.00 USD annually

  • USA, WA, Seattle - 142,800.00 - 193,200.00 USD annually



Company - Amazon.com Services LLC - A57



Job ID: A10502686

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Applied Scientist, Leo Security
Applied Scientist, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 143,000 - 193,000
Applied Scientist, Leo Security
Applied Scientist, Leo Security

Amazon Science • Seattle (WA)

On-site
USD 143,000 - 193,000
Health insurance
RSUs / stock options
401(k) matching
+2
Applied Scientist, Leo Security
Applied Scientist, Leo Security

Amazon • San Francisco (CA), Northern (KY)

Hybrid
USD 143,000 - 193,000
Health insurance
401(k) matching
Paid time off
+1
Senior Applied Scientist, Leo Security
Senior Applied Scientist, Leo Security

Amazon • Bellevue (WA)

On-site
USD 167,000 - 226,000
Senior Applied Scientist, Leo Security
Senior Applied Scientist, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 167,000 - 226,000
Software Development Manager, Leo Security
Software Development Manager, Leo Security

Amazon • Arlington (VA)

On-site
USD 185,000 - 250,000
Health insurance
RSUs
401(k) matching
Sr Security Engineer, Leo Security
Sr Security Engineer, Leo Security

Amazon • Arlington (VA)

On-site
USD 178,000 - 227,000
Sr Security Engineer, Network, Leo Security
Sr Security Engineer, Network, Leo Security

Amazon • Herndon (VA)

On-site
USD 178,000 - 227,000
Software Development Engineer, Leo Security
Software Development Engineer, Leo Security

Amazon • Herndon (VA)

On-site
USD 144,000 - 194,000
Health insurance
401(k) matching
Paid time off
+2
Senior Software Development Engineer, Leo Security
Senior Software Development Engineer, Leo Security

Amazon • Bellevue (WA)

On-site
USD 168,000 - 227,000
Health insurance
401(k) matching
Paid time off
+1