amazon

amazon

Posted via Amazon Jobs

Sr Security Engineer, Supply Chain, Leo Security

Posted Aug 28, 2026

Role at a glance

Job function
Software Engineering & IT Cybersecurity
Salary
$178.4K – $226.7K/yr
Location
Arlington, Virginia, United States Seattle, Washington, United States
Work arrangement
On-site
Employment
Internship
Experience
5+ years of experience in security engineering, security assessments, or security operations (non-internship)

Spotted an issue?

We’ll check it against the original posting.

Log in to report

Role Summary

AI-generated

The Systems Security Engineer will join the Leo Infrastructure and IP Security team’s supply chain security function, protecting contract manufacturers, component vendors, and service providers involved in building and handling Leo hardware. The role supports a growing supplier assessment program through onsite assessments, threat modeling of manufacturing and operational technology environments, and AI-assisted security tooling.

What You'll Do

  • Conduct threat modeling for supply chain and manufacturing environments, including OT/ICS and AI-integrated topologies, and translate...
  • Plan and lead onsite security assessments at supplier and contract manufacturer facilities, evaluating cybersecurity controls, physical...
  • Refine assessment methodology, scoring criteria, standards, and operational processes as the supplier portfolio expands.
  • Develop AI-assisted tooling to automate evidence collection, finding triage, and report generation.
  • Partner with infrastructure, site operations, procurement, and hardware engineering teams to implement network security mitigations and...

Generated from the employer's posting. Verify important details before applying.

View full posting

Qualifications

Required

  • 5+ years of work in identifying security issues and risks, and developing mitigation plans experience
  • 5+ years of experience in security engineering, security assessments, or security operations (non-internship)
  • Experience conducting security assessments or audits — including evaluating cybersecurity and physical security controls.
  • Knowledge of security frameworks and standards (e.g., NIST 800-53, NIST 800-161, ISO 27001, NIST 800-171, or equivalent)
  • Ability to document findings, develop risk ratings, and communicate complex security concepts to both technical and non-technical audiences

Preferred

  • Experience with supply chain risk management (SCRM) programs, third-party risk assessment, or vendor security evaluation
  • Experience conducting physical security assessments at manufacturing or industrial facilities (access controls, camera systems, visitor management, secure storage, environmental controls)
  • Experience assessing cybersecurity controls in manufacturing, hardware, or operational technology environments
  • Familiarity with supply chain security regulations and frameworks (NIST 800-161, NISTIR 8276, FAR/DFARS, CMMC, ITAR/EAR)
  • Experience working with or assessing suppliers in regulated industries (electronics manufacturing, contract manufacturing, or hardware supply chain)
  • Willingness to travel to supplier sites (domestic and international)

Original job description

Content provided by the employer

Amazon Leo is a constellation of Low Earth Orbit satellites delivering high-speed broadband connectivity to unserved and underserved communities worldwide. We are looking for a Systems Security Engineer to join the Leo Infrastructure and IP Security team, where you will work within the supply chain security program protecting the contract manufacturers, component vendors, and service providers who build and handle Leo hardware. As the constellation grows, so does the supplier portfolio — and this new role will help the team scale its assessment capability to match. You will conduct onsite cybersecurity and physical security assessments, perform threat modeling for manufacturing and operational technology (OT) environments, and build AI-assisted tooling that makes the program more efficient. If you want to defend space-grade hardware from sophisticated threat actors while shaping a security program from its early stages, we want to hear from you.

Key job responsibilities
- Conduct threat modeling for supply chain and manufacturing environments, including OT/ICS and AI-integrated topologies, and translate identified risks into findings with clear severity ratings and remediation guidance.
- Plan and lead onsite security assessments at supplier and contract manufacturer facilities, evaluating cybersecurity controls, physical security posture, and operational practices against {NAME}'s supplier security requirements.
- Contribute to maturing the supply chain security program by refining assessment methodology, scoring criteria, standards, and operational processes as the supplier portfolio expands.
- Develop AI-assisted tooling to automate evidence collection, finding triage, and report generation, improving the efficiency and consistency of the assessment workflow.
- Partner with infrastructure, site operations, procurement, and hardware engineering teams to implement network security mitigations and ensure security requirements are embedded in supplier contracts.

A day in the life
You might spend a morning onsite at a contract manufacturer, walking the production floor with the site security team to evaluate physical access controls, camera coverage, and secure storage areas. That afternoon you review the supplier's network architecture, identifying where sensitive data crosses trust boundaries and whether segmentation meets the bar. Between assessments, you refine scoring rubrics, build automation to streamline report generation, and collaborate with procurement to land security requirements in new supplier contracts.

About the team
Leo Infrastructure and IP Security protects the people, facilities, hardware, and supply chain behind a global satellite constellation. The supply chain security function manages assessment and risk reduction for Leo's critical suppliers. You will work alongside security engineers covering network and physical security domains, software engineers building risk management tooling, and applied scientists modeling supply chain telemetry. The team is expanding to keep pace with the constellation's growth, making this an opportunity to shape processes and standards from the ground up at an interstellar scope.

Basic Qualifications

- 5+ years of work in identifying security issues and risks, and developing mitigation plans experience
- 5+ years of experience in security engineering, security assessments, or security operations (non-internship)
- Experience conducting security assessments or audits — including evaluating cybersecurity and physical security controls.
- Knowledge of security frameworks and standards (e.g., NIST 800-53, NIST 800-161, ISO 27001, NIST 800-171, or equivalent)
- Ability to document findings, develop risk ratings, and communicate complex security concepts to both technical and non-technical audiences

Preferred Qualifications

- Experience with supply chain risk management (SCRM) programs, third-party risk assessment, or vendor security evaluation
- Experience conducting physical security assessments at manufacturing or industrial facilities (access controls, camera systems, visitor management, secure storage, environmental controls)
- Experience assessing cybersecurity controls in manufacturing, hardware, or operational technology environments
- Familiarity with supply chain security regulations and frameworks (NIST 800-161, NISTIR 8276, FAR/DFARS, CMMC, ITAR/EAR)
- Experience working with or assessing suppliers in regulated industries (electronics manufacturing, contract manufacturing, or hardware supply chain)
- Willingness to travel to supplier sites (domestic and international)

Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.

Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.

The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.



USA, VA, Arlington - 178,400.00 - 226,700.00 USD annually
USA, VA, Herndon - 178,400.00 - 226,700.00 USD annually
USA, WA, Bellevue - 178,400.00 - 226,700.00 USD annually
USA, WA, Seattle - 178,400.00 - 226,700.00 USD annually
amazon

About the company

amazon

Large Enterprise

Amazon is a global leader in e-commerce and cloud computing, founded in 1994 by Jeff Bezos. Initially starting as an online bookstore, it has since expanded its offerings to include a vast range of products and services, including electronics, fashion, and digital content. With Amazon Web Services (AWS), the company also provides powerful cloud solutions to businesses around the world. Known for its innovation, customer-centric approach, and commitment to operational efficiency, Amazon continues to shape the future of retail and technology, consistently seeking new ways to enhance customer experiences.