Skip to content
← Back to job listings

Staff Security Engineer (Enterprise Security Engineering)

Aurora · Mountain View, CA, United States

External listingfull-time3 months ago

About The Role

Join Aurora, a leader in autonomous trucking, as a Staff Security Engineer. In this role, you will be responsible for designing, building, and owning the platforms, integrations, and automation that power Aurora's internal security posture at scale. You will work closely with IT, Infrastructure, and Engineering teams to embed security requirements early and build automation and tooling that extends the capabilities of Aurora's security platforms. This is a deeply technical role that requires experience in enterprise security engineering, security architecture reviews, and security telemetry pipelines.

  • Architect and implement Aurora's enterprise security controls, including systems and integrations that protect endpoints, identities, internal infrastructure, and SaaS environments.
  • Design and build Aurora's security telemetry and detection infrastructure, including log pipelines, SIEM integrations, and alerting frameworks, in partnership with the Security Operations Engineer.
  • Define and enforce enterprise security standards, conducting architecture and design reviews to ensure alignment with Aurora's security posture and risk tolerance.
  • We're looking for a deeply technical enterprise security engineer who is as comfortable in a code editor as in a security console — you build the systems that make Aurora's security operations possible
  • This is a role for someone who can architect robust enterprise security solutions, write the code to implement them, and partner across Engineering and IT to make sure security is embedded from the start, not bolted on at the end
  • Experience architecting and integrating enterprise security platforms — designing API integrations, automating workflows, and building tooling that extends platform capabilities across domains such as EDR/XDR, MDM, IAM/IGA, DLP, SaaS security, cloud security, or PKI
  • Track record of conducting security architecture reviews and translating findings into actionable, risk-prioritized remediation plans
  • Experience evaluating security posture and identifying systemic gaps, with a bias toward building durable solutions rather than one-off fixes
  • 12+ years of hands-on experience in enterprise security engineering or corporate information security — specifically securing employee-facing systems, endpoints, identities, and internal infrastructure (not product or application security)
  • Experience leading cross-functional security engineering projects — defining scope, driving execution, and aligning stakeholders across Engineering and IT
  • Proficiency in at least one programming language, used in a security context — writing production-quality automation, integrations, or internal tooling (the team primarily uses Go; Python is also common)
  • Experience designing and building security telemetry pipelines and detection infrastructure — log ingestion, normalization, SIEM integration, and alerting architecture
  • Experience with Zero Trust architecture and identity-centric security models (BeyondCorp-style or similar)
  • Experience with applied cryptography and PKI in a production enterprise environment — certificate lifecycle management, CA design, or secrets management
  • Security certifications such as CISSP, GCED, GREM, or similar (valued but not required)
  • Familiarity with NIST CSF, MITRE ATT&CK, and CIS Benchmarks as engineering inputs — used to inform what to build and how to validate it, not just as compliance checkboxes
  • Hands-on AWS security experience (SCPs, GuardDuty, Security Hub, IAM, etc.) and familiarity with integrating cloud security signals into a corporate security platform
  • Familiarity with securing AI/ML platforms or applications built on LLMs, RAG pipelines, or MCP-based architectures

This is an external listing. JobSpring does not represent or verify the employer. Report this listing