Skip to content
NEXTMOVEFDE careers · United States

Security Engineer, Forward Deployed Engineering, Forward Deployed Engineering

AI summary of the role

Hands-on security engineering role embedded in AWS Forward Deployed Engineering, securing production AI systems (agentic workflows, RAG pipelines) built for strategic enterprise customers.

What you’ll do

  • Conduct security design reviews, code reviews, and architecture assessments for production AI systems
  • Perform threat modeling and penetration testing for AI/ML applications in customer environments
  • Build and maintain security automation: scanning tools, CI/CD gates, guardrail testing, secrets detection
  • Implement security controls for AI-specific threats: prompt injection prevention, output filtering, data isolation, endpoint hardening

What you’ll bring

  • 2+ years of threat modeling, secure coding, identity management, software development, cryptography, or network security experience
  • 2+ years of scripting, programming, and security code review in common languages
  • 2+ years hands-on building AI/agentic systems
  • Bachelor's degree in computer science or equivalent

Technologies

AWS · Bedrock · Python · CI/CD · IAM · threat modeling · penetration testing · RAG · agentic workflows · guardrails

About Amazon (incl AWS)

Online retail, third-party marketplace, Prime/ads/devices, and AWS — the world's largest cloud platform powering startups and enterprises.

Public

Source and classification

Production engineering · Evidence for this classification:

AWS Forward Deployed Engineering (FDE) embeds AI engineers directly inside strategic enterprise customers to design, build, and deploy production-grade AI systems. We are looking for a Security Engineer to join the FDE security team and help secure production AI systems deployed in customer environments. You will conduct security reviews, write security tooling, perform threat modeling, and implement controls that protect AI systems built by FDE engineers. You work alongside FDE delivery pods in customer environments, getting hands-on with production code, cloud infrastructure, and AI/ML pipelines. You learn fast, ship fast, and build security into the system rather than bolting it on after the fact. This is a hands-on security engineering role where you spend most of your time writing code, reviewing architectures, and testing systems. You work with senior security engineers who will
More from the job description

AWS Forward Deployed Engineering (FDE) embeds AI engineers directly inside strategic enterprise customers to design, build, and deploy production-grade AI systems. We are looking for a Security Engineer to join the FDE security team and help secure production AI systems deployed in customer environments. You will conduct security reviews, write security tooling, perform threat modeling, and implement controls that protect AI systems built by FDE engineers. You work alongside FDE delivery pods in customer environments, getting hands-on with production code, cloud infrastructure, and AI/ML pipelines. You learn fast, ship fast, and build security into the system rather than bolting it on after the fact. This is a hands-on security engineering role where you spend most of your time writing code, reviewing architectures, and testing systems. You work with senior security engineers who will mentor you, but you own real security deliverables from your first engagement. If you want to learn AI security by doing it, in production, at enterprise scale, this is the role. This position requires that the candidate selected be a US Citizen. Key job responsibilities - Conduct security design reviews, code reviews, and architecture assessments for production AI systems (agentic workflows, RAG pipelines, orchestration layers, model integrations) under guidance from senior security engineer [... source excerpt omitted ...] rm threat modeling and penetration testing for AI/ML applications deployed in customer environments; identify vulnerabilities and work with FDE engineers to implement fixes before production release - Build and maintain security automation: scanning tools, CI/CD security gates, guardrail testing scripts, secrets detection, and dependency vulnerability checks for forward-deployed AI systems - Implement security controls for AI-specific threats: prompt injection prevention, output filtering, data isolation, model API endpoint hardening, and guardrail configuration - Support security incident response for FDE-delivered production AI systems; assist with triage, root cause analysis, [... source excerpt omitted ...] e team's standard deployment pattern. You close out the day joining a threat modeling session led by a senior security engineer, where you learn how to assess data flow risks in a customer's RAG pipeline. Every week you're working on a different AI architecture, building skills you can't get anywhere else. About the team AWS Forward Deployed Engineering embeds AI engineers directly inside strategic enterprise customers to build production AI systems. AWS invested $1B in this initiative. We move at the speed of the customer: demonstrating ROI in weeks, not quarters. We are customer-obsessed. We lead customers toward outcomes, build together, and leave behind scalable patterns. S

How jobs are selected

Employer postings · Data from · Sources