Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering

Amazon Web Services, Inc.

Dallas (TX)

On-site

USD 120,000 - 180,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AWS Forward Deployed Engineering (FDE) seeks a Security Engineer to embed within enterprise customers, securing production AI systems from design through deployment. You’ll review architectures, build tooling, and implement guardrails for AI/ML pipelines in customer environments.

You will work hands-on with production code, cloud infrastructure, and AI/ML workflows, collaborating with senior security engineers while owning real security deliverables early in engagements.

Responsibilities

  • Conduct security design reviews, code reviews, and architecture assessments for production AI systems (agentic workflows, RAG pipelines, orchestration layers, model integrations) under guidance from senior security engineers
  • Perform threat modeling and penetration testing for AI/ML applications deployed in customer environments; identify vulnerabilities and work with FDE engineers to implement fixes before production release
  • Build and maintain security automation: scanning tools, CI/CD security gates, guardrail testing scripts, secrets detection, and dependency vulnerability checks for forward-deployed AI systems
  • Implement security controls for AI-specific threats: prompt injection prevention, output filtering, data isolation, model API endpoint hardening, and guardrail configuration
  • Support security incident response for FDE-delivered production AI systems; assist with triage, root cause analysis, and remediation under senior engineer guidance
  • Document security findings, patterns, and remediation guidance as reusable playbooks and runbooks that benefit future FDE engagements
  • Contribute to the FDE security accelerator library: reusable modules, templates, and reference configurations that help FDE engineers build secure AI systems faster
  • Requires up to 25% travel

Job description

AWS Forward Deployed Engineering (FDE) embeds AI engineers directly inside strategic enterprise customers to design, build, and deploy production-grade AI systems. We are looking for a Security Engineer to join the FDE security team and help secure production AI systems deployed in customer environments.

You will conduct security reviews, write security tooling, perform threat modeling, and implement controls that protect AI systems built by FDE engineers. You work alongside FDE delivery pods in customer environments, getting hands-on with production code, cloud infrastructure, and AI/ML pipelines. You learn fast, ship fast, and build security into the system rather than bolting it on after the fact.

This is a hands-on security engineering role where you spend most of your time writing code, reviewing architectures, and testing systems. You work with senior security engineers who will mentor you, but you own real security deliverables from your first engagement. If you want to learn AI security by doing it, in production, at enterprise scale, this is the role.

This position requires that the candidate selected be a US Citizen.

Key job responsibilities
  • Conduct security design reviews, code reviews, and architecture assessments for production AI systems (agentic workflows, RAG pipelines, orchestration layers, model integrations) under guidance from senior security engineers
  • Perform threat modeling and penetration testing for AI/ML applications deployed in customer environments; identify vulnerabilities and work with FDE engineers to implement fixes before production release
  • Build and maintain security automation: scanning tools, CI/CD security gates, guardrail testing scripts, secrets detection, and dependency vulnerability checks for forward-deployed AI systems
  • Implement security controls for AI-specific threats: prompt injection prevention, output filtering, data isolation, model API endpoint hardening, and guardrail configuration
  • Support security incident response for FDE-delivered production AI systems; assist with triage, root cause analysis, and remediation under senior engineer guidance
  • Document security findings, patterns, and remediation guidance as reusable playbooks and runbooks that benefit future FDE engagements
  • Contribute to the FDE security accelerator library: reusable modules, templates, and reference configurations that help FDE engineers build secure AI systems faster
  • Requires up to 25% travel
A day in the life

You start the morning running your automated security scan against a new Bedrock-powered application an FDE pod shipped overnight, triaging the findings and filing issues for two real vulnerabilities. Mid-morning you pair with an FDE engineer to fix an IAM policy that's overly permissive for their multi-agent orchestration system. After lunch you're writing a Python script that automates guardrail bypass testing for the team's standard deployment pattern. You close out the day joining a threat modeling session led by a senior security engineer, where you learn how to assess data flow risks in a customer's RAG pipeline. Every week you're working on a different AI architecture, building skills you can't get anywhere else.

About the team

AWS Forward Deployed Engineering embeds AI engineers directly inside strategic enterprise customers to build production AI systems. AWS invested $1B in this initiative. We move at the speed of the customer: demonstrating ROI in weeks, not quarters. We are customer-obsessed. We lead customers toward outcomes, build together, and leave behind scalable patterns. Security is our enabling function: without it, nothing goes to production. Our culture is people-first, anti-burnout, bold, and engineering-excellence-driven.

ABOUT AWS
Diverse Experiences

Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.

Why AWS

Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.

Work/Life Balance

We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud.

Inclusive Team Culture

AWS values curiosity and connection. Our employee-led and company-sponsored affinity groups promote inclusion and empower our people to take pride in what makes us unique. Our inclusion events foster stronger, more collaborative teams. Our c

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Manager, Security Engineer, FDE, Forward Deployed Engineering
Sr Manager, Security Engineer, FDE, Forward Deployed Engineering

Amazon Web Services, Inc. • Arlington (VA)

On-site
USD 180,000 - 230,000
Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering
Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering

Socket.dev • Boston (MA)

On-site
USD 159,000 - 202,000
Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering
Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering

Amazon • Dallas (TX)

On-site
USD 159,000 - 202,000
Production AI Security Engineer
Production AI Security Engineer

Amazon Web Services, Inc. • Dallas (TX)

On-site
USD 120,000 - 180,000
Hands-on AI Security Engineer — Production Systems
Hands-on AI Security Engineer — Production Systems

Amazon • Dallas (TX)

On-site
USD 159,000 - 202,000
Sr Manager, Security Engineer, FDE, Forward Deployed Engineering
Sr Manager, Security Engineer, FDE, Forward Deployed Engineering

Socket.dev • Boston (MA)

On-site
USD 208,000 - 282,000
Forward Deployed Engineer, FDE US Government
Forward Deployed Engineer, FDE US Government

Amazon • Arlington (VA)

On-site
USD 144,000 - 194,000
Health insurance
401(k) matching
Paid time off
+1
AI Security Engineer, AI Security
AI Security Engineer, AI Security

Amazon.com Services LLC • Austin (TX)

On-site
USD 130,000 - 180,000
Principal Forward Deployed Engineer, Forward Deployed Engineering
Principal Forward Deployed Engineer, Forward Deployed Engineering

Amazon Web Services, Inc. • Arlington (VA)

On-site
USD 210,000 - 270,000
Forward Deployed Security Engineer
Forward Deployed Security Engineer

OpenAI • Washington

Hybrid
USD 180,000 - 240,000
Relocation assistance
Hybrid work model