Senior Technical Program Mgr, Amazon Leo Trust Services
Amazon
- Location
- US, WA, Redmond
- Employment
- Full Time
- Work model
- On-Site
- Level
- Senior
- Posted
- 21h ago
Skills
About this role
Project Leo is an initiative to launch a constellation of Low Earth Orbit satellites that will provide low-latency, high-speed broadband network connectivity to unserved and underserved communities around the world. Amazon Leo Trust Services (ALTS) owns the cryptographic infrastructure that underpins Leo's satellite constellation, including certificate lifecycle management, key generation and provisioning, secure communications, and post-quantum cryptographic readiness. We are looking for a Technical Program Manager to own the certificate rotation and cryptographic algorithm migration program across Leo. As the constellation scales, the cryptographic foundation must evolve with it: enabling automated certificate rotation across dozens of integration points, migrating to next-generation algorithms including post-quantum cryptography, and ensuring devices designed to operate for 15+ years remain cryptographically current throughout their lifetime. This is a rare opportunity to shape how a global satellite network maintains cryptographic trust at scale. Export Control Requirement Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. Key job responsibilities You will own the end-to-end program for certificate rotation and cryptographic algorithm migration across Leo's constellation infrastructure. This means building a unified view of how certificates are consumed across 10+ integration points (from full certificate chain transmission to hard-coded serial numbers on devices), identifying and driving resolution of the constraints that prevent automated rotation (including a 1,200-byte MTU limit over UDP that blocks larger post-quantum material), and orchestrating the cross-team work required to deliver cryptographic agility. You will partner with hardware, firmware, ground systems, and network teams to define the out-of-band distribution workflows needed for next-generation certificate formats. You will manage program lifecycle from requirements through delivery, negotiate priorities across teams that do not share a reporting chain, drive crisp decisions in ambiguous technical territory, and communicate progress, risks, and tradeoffs to Directors and VPs. You will also contribute to broader ALTS programs including PKI infrastructure migration to AWS data centers, post-quantum readiness for upcoming tapeout deadlines, and deprecated service decommissions. A day in the life You will spend your time driving alignment across teams that each own a piece of the certificate puzzle but have never had a single orchestrator connecting their work. Some days that means facilitating a design review to define how a ground service will consume global certificates instead of regional ones. Other days it means tracking a deprecated key management service through its final migration milestones before its hard shutdown deadline. You will build and maintain the program plan that connects hardware tapeout dates, firmware release schedules, and service deployment timelines into a coherent delivery sequence. You will identify risks early, escalate effectively when teams are blocked, and write the narratives that help leadership understand why cryptographic agility matters for Leo's long-term operational security. The work is both strategic (shaping how Leo's PKI evolves over the next decade) and tactical (ensuring the next certificate rotation does not cause loss of satellite control).
About the team
The Leo Trust Services team owns the cryptographic foundation for Project Leo's satellite broadband service. We manage the keys, certificates, and secure communication protocols that protect everything from chip provisioning in manufacturing through satellite control in orbit. Our 2027 priorities center on post-quantum readiness, infrastructure resilience, and the cryptographic agility