Applied Scientist, Leo Security

Amazon Science

Seattle (WA)

On-site

USD 143,000 - 193,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Amazon Leo is seeking an Applied Scientist to join the founding cohort of the Engineering and R&D team within Leo Infrastructure and IP Security. You will build statistical and behavioral models to separate threat actor behavior from noise in diverse security telemetry and develop privacy-preserving data representations for scalable detections.

The role blends research with production mandates, shipping components used by security teams to protect the constellation, with opportunities to publish

Qualifications

  • 3+ years of building models for business applications.
  • PhD or Master’s + 4+ years in CS/CE/ML.
  • Experience with statistical modeling and analysis of large, heterogeneous datasets.
  • Fluency in Python; systems language such as Rust or C++ is a plus.
  • Experience with PyTorch and TensorFlow.

Responsibilities

  • Build behavioral and statistical models that baseline normal activity across heterogeneous security telemetry.
  • Design privacy-preserving representations of sensitive data and verify model detections remain accurate.
  • Define methodology and own analysis for difficult problems across data domains.
  • Develop metrics and evaluation frameworks for model and detection performance.
  • Contribute to neurosymbolic reasoning platforms and production-quality components.
  • Document work with rigorous communications for scientific and security audiences.

Skills

Statistical modeling
Anomaly detection
Time-series analysis
Behavior baselining
Python fluency
C++ knowledge
PyTorch
TensorFlow

Education

PhD
Master's + CS/CE/ML

Job description

Description

Amazon Leo is a constellation of Low Earth Orbit satellites that will provide low-latency, high-speed broadband network connectivity to unserved and underserved communities around the world.

Description

Amazon Leo is a constellation of Low Earth Orbit satellites that will provide low-latency, high-speed broadband network connectivity to unserved and underserved communities around the world. We are looking for an Applied Scientist to join the founding cohort of the Engineering and R\&D team within Leo Infrastructure and IP Security. The team defends the manufacturing lines, launch sites, and global ground infrastructure behind the constellation from the most sophisticated threat actors on the planet. The data is unlike anything you have worked with: badge and door-access events, asset movement, network telemetry, and industrial control signals from factories, ground stations, and launch facilities, all of which must be modeled, baselined, and defended. You will build the statistical and behavioral models that separate threat actor behavior from the noise of a global operation, and the privacy-preserving data representations that let detection science scale without exposing sensitive data. This is an R\&D role with a production mandate: every model you build becomes part of the system Leo's security teams use to protect the constellation.

Export Control Requirement

Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.

Key job responsibilities
  • Build behavioral and statistical models that baseline normal activity across heterogeneous security telemetry, including specialized industrial-control and factory-floor data sources, so detections extend to new environments with low false-positive rates.
  • Design privacy-preserving representations of sensitive security data, and verify that models and detections tuned against them remain accurate against the real data — turning data-protection guarantees into measurable, provable properties rather than assertions.
  • Define the methodology and own the analysis for difficult, loosely defined problems: gather complex data across domains, select the right techniques from a range of data science methods, and justify your approach with evidence.
  • Develop the metrics and evaluation frameworks that measure model and detection performance against threat actor behavior before a model is trusted in production.
  • Contribute to the team's neurosymbolic reasoning platform, adapting state-of-the-art techniques from the literature and shipping components at production quality.
  • Document your work with the rigor of a peer-reviewed publication, and communicate results clearly to both scientific and security-operations audiences.
A day in the life

You will move between analysis and production in the same week: profiling a telemetry source the team has never modeled, establishing what normal looks like for it, and shipping the baseline as a component detections build on. Security engineers on your team translate threat intelligence into the adversary behaviors that matter; you build and tune the models that detect those behaviors and evaluate model performance against them. You might spend a morning chasing a false-positive pattern to its statistical root cause, and the afternoon verifying that an anonymized dataset still preserves the signal a detection depends on. You will work semi-autonomously with guidance from senior scientists, backtest candidate detections against retained telemetry, and deliver scientific artifacts that ship.

About The Team

Leo Infrastructure and IP Security protects the people, facilities, hardware, and supply chain behind a global satellite constellation. The Engineering and R\&D team within this organization builds the platforms and tooling the security pillar teams operate on, moving security operations from manual triage to correlation-based detection, automated response, and agentic AI. The team is composed of applied scientists, software engineers, and security engineers working across physical and digital security domains.

Inclusive Team Culture

In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.

Training & Career Growth

We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there's nothing we can't achieve.

Basic Qualifications
  • 3+ years of building models for business application experience
  • PhD, or Master's degree and 4+ years of CS, CE, ML or related field experience
  • - Experience with statistical modeling and analysis of large, heterogeneous datasets, including anomaly detection, time-series analysis, or behavioral baselining
  • - Fluency in Python; experience with a systems language such as Rust or C++ is a plus
  • - Experience with popular deep learning frameworks (e.g., PyTorch, TensorFlow)
Preferred Qualifications
  • Experience in one or more of the following domains: access- control system and methodology, network security, application- and system-development security, security architecture and models, cryptography, and operations security
  • Experience in professional software and systems development
  • - Publications at top-tier peer-reviewed machine learning, data mining, or security venues (e.g., NeurIPS, ICML, ICLR, KDD, CCS, USENIX Security)
  • - Experience with privacy-preserving machine learning, including synthetic data generation, anonymization, or differential privacy, and validating fidelity of transformed data
  • - Experience designing evaluation frameworks and metrics for models where ground truth requires human judgment
  • - Experience modeling operational or sensor telemetry, including industrial control systems (OT/SCADA), IoT, or physical-world event data

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.

USA, WA, Seattle - 142,800.00 - 193,200.00 USD annually

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Applied Scientist, Leo Security
Applied Scientist, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 143,000 - 193,000
Applied Scientist, Leo Security
Applied Scientist, Leo Security

Amazon • Seattle (WA)

On-site
USD 143,000 - 193,000
Health insurance
401(k) matching
Parental leave
Applied Scientist, Leo Security
Applied Scientist, Leo Security

Amazon • San Francisco (CA), Northern (KY)

Hybrid
USD 143,000 - 193,000
Health insurance
401(k) matching
Paid time off
+1
Senior Applied Scientist, Leo Security
Senior Applied Scientist, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 167,000 - 226,000
Senior Applied Scientist, Leo Security
Senior Applied Scientist, Leo Security

Amazon • Seattle (WA)

On-site
USD 167,000 - 226,000
RSUs
Comprehensive benefits
Software Development Engineer, Leo Security
Software Development Engineer, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 144,000 - 194,000
Health insurance
RSUs
401(k) matching
+1
Sr Security Engineer, Leo Security
Sr Security Engineer, Leo Security

Socket.dev • Seattle (WA)

On-site
USD 178,000 - 227,000
Senior Software Development Engineer, Leo Security
Senior Software Development Engineer, Leo Security

Socket.dev • Bellevue (WA)

On-site
USD 168,000 - 227,000
Health insurance
401(k) matching
Paid time off
+1
Software Development Manager, Leo Security
Software Development Manager, Leo Security

Socket.dev • Bellevue (WA)

On-site
USD 185,000 - 250,000
Senior Software Development Engineer, Leo Security
Senior Software Development Engineer, Leo Security

Amazon • Bellevue (WA)

On-site
USD 168,000 - 227,000
Health insurance
401(k) matching
Paid time off
+1