Be at the heart of actionFly remote-controlled drones into enemy territory to gather vital information.

Apply Now

Principal Security Engineer, Autonomous Security

Amazon
Greater London
4 weeks ago
Create job alert

We are looking for an experienced Principal Security Engineer to join the Autonomous Security team in London. You will be a key technical leader in a team responsible for building and scaling AI-powered security solutions across Amazon's global infrastructure. This team is transforming how Amazon approaches security through autonomous detection, assessment, and remediation of security issues. We partner with security teams and service teams across Amazon to embed autonomous security capabilities throughout the development lifecycle.

You will be an expert across security automation, AI/ML systems, and application security, and will be sought out for advice on autonomous security solutions. Your role will help ensure our autonomous systems make provably correct security decisions at scale, while setting standards and defining best practices for AI-powered security. You will proactively shape the future of security automation across Amazon and be a critical leader in driving the adoption of autonomous security solutions.


Key job responsibilities
•Architecting autonomous security solutions that can scale across hundreds of thousands of applications while maintaining high precision and cost efficiency
• Setting technical direction for autonomous remediation systems, ensuring security fixes can be safely and automatically deployed
• Partnering with automated reasoning and AI scientists to develop provable security approaches for autonomous systems
• Developing and validating security patterns for AI-powered security tools, ensuring they meet Amazon's high security bar
• Leading technical design reviews and providing guidance on security automation best practices
• Building trust with security teams through rigorous validation of autonomous security decisions
• Mentoring engineers and influencing teams across Amazon on security automation
• Creating frameworks and tools that enable secure integration of AI capabilities into security workflows
• Driving adoption of autonomous security solutions by demonstrating clear security value and operational efficiency
• Continuously improving our autonomous systems based on operational metrics and security team feedback


A day in the life
A typical day as a Principal Security Engineer in Autonomous Security might include:
Morning:
• Leading a technical design review for our new autonomous remediation system, discussing approaches to prove the correctness of automated fixes
• Writing code to prototype a new security validation pattern that could be used across our autonomous agents
• Meeting with our Applied Science team to review the precision metrics of our latest security detection models
Afternoon:
• Participating in Architecture Review Board meetings to influence security automation standards across Amazon
• Providing technical guidance to teams building on our Cataphract platform
• Deep-dive session with our research team on their latest autonomous penetration testing capabilities
Throughout the week, you might:
• Partner with security teams to understand their challenges and demonstrate how autonomous solutions can help
• Review critical security decisions made by our autonomous systems
• Write design documents for new autonomous security capabilities
• Present to VP-level stakeholders on our autonomous security roadmap
• Mentor senior engineers on security automation best practices
• Collaborate with automated reasoning scientists on formal verification approaches
Your focus will shift between hands-on technical work, strategic planning, and influence activities, always driving towards our goal of transforming security through autonomous systems.


About the team
First, we're tackling the challenge of frugal scaling across Amazon's entire application landscape. While we can theoretically test and secure everything, doing so efficiently and cost-effectively at our scale requires innovative approaches that balance security, performance, and cost.

Second, we're pioneering provable security in autonomous remediation. Working alongside automated reasoning scientists, you'll architect solutions that can definitively prove the correctness of our autonomous security decisions. This is crucial as we push towards automatic code remediation in builder pipelines - a challenge that demands perfect precision.

BASIC QUALIFICATIONS

• Experience in security engineering, with significant experience in security automation or security tooling development
• Deep expertise in application security and proven track record of driving security solutions at scale
• Strong software development background with demonstrated ability to write and review production-grade code
• Experience leading technical security initiatives across multiple teams and stakeholders
• Proven ability to influence senior technical leaders and build trust with security organizations

PREFERRED QUALIFICATIONS

• Experience with AI/ML systems and their security implications
• Track record of building and deploying automated security solutions in large-scale environments
• Experience with formal methods, automated reasoning, or similar approaches to validating security decisions
• Background in security testing, penetration testing, or vulnerability assessment
• History of contributions to security automation or tooling in the broader security community
• Experience driving adoption of new security technologies across large engineering organizations


Related Jobs

View all jobs

Principal Security Engineer

Principal Security Engineer

Principal Security Engineer

▷ [3 Days Left] Principal Security Engineer...

Principal Cyber Security Engineer

Principal OT Cyber Security Engineer

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

The Future of Cybersecurity Jobs: Careers That Don’t Exist Yet

Cyber security has become one of the most critical issues of our age. Once regarded as a technical problem confined to IT departments, it is now a board-level priority, a government mandate, and a daily necessity for individuals. The shift towards cloud services, remote working, connected devices, and artificial intelligence has dramatically increased the risks of digital attacks. In the UK, cyber security is central to national resilience. The government has identified cyber as a “tier one” threat to national security, alongside terrorism and pandemics. The private sector, from banks to retailers, now sees data breaches and ransomware as existential risks. Global spending on cyber security is projected to exceed $250 billion by 2030, with the UK already home to a thriving cyber industry employing tens of thousands. Yet, as powerful as the industry already is, we are only at the beginning. The technologies shaping the next two decades—AI, quantum computing, edge computing, extended reality, and biotechnology—will radically reshape cyber security. Many of the most vital cyber security jobs of the future don’t exist yet. This article explores why new roles will emerge, the careers likely to appear, how today’s jobs will evolve, why the UK is well-positioned, and how professionals can prepare now.

Seasonal Hiring Peaks for Cybersecurity Jobs: The Best Months to Apply & Why

The UK's cybersecurity sector has emerged as one of the most critical and lucrative technology markets, with roles spanning from security analysts to penetration testers and chief information security officers. With cybersecurity positions commanding salaries from £28,000 for junior security analysts to £140,000+ for senior security architects, understanding when organisations actively recruit can dramatically impact your career trajectory in this essential field. Unlike traditional IT sectors, cybersecurity hiring follows distinct patterns influenced by threat landscapes, regulatory compliance cycles, and incident response requirements. The sector's unique combination of perpetual threat evolution, regulatory pressures, and skills shortages creates predictable hiring windows that strategic professionals can leverage to advance their careers in protecting Britain's digital infrastructure. This comprehensive guide explores the optimal timing for cybersecurity job applications in the UK, examining how cyber threat cycles, compliance deadlines, and government initiatives influence recruitment patterns, and why strategic timing can determine whether you join a cutting-edge security consultancy or miss the opportunity to defend against tomorrow's cyber threats.

Pre-Employment Checks for Cyber Security Jobs: DBS, References & Right-to-Work and more Explained

The cyber security sector in the UK stands at the forefront of protecting national infrastructure, business operations, and personal data from increasingly sophisticated cyber threats. As organisations across all sectors recognise cyber security as a critical business function, employers are implementing the most rigorous pre-employment screening processes in the technology industry to ensure they recruit professionals capable of defending against advanced persistent threats and maintaining the highest standards of security and trustworthiness. Whether you're a penetration tester, security analyst, incident response specialist, or chief information security officer, understanding the comprehensive vetting requirements is essential for successfully advancing your career in this security-critical field. This detailed guide explores the extensive background checks and screening processes you'll encounter when applying for cyber security positions in the UK, from fundamental eligibility verification to the most stringent security clearance requirements and specialised threat intelligence assessments.