Jobs · Information Technology · California

Senior Cloud Security Engineer

Aurora · Mountain View, CA · 1 wk ago
HybridInformation Technology$162k–$235k/yrFull-time

About the role

Aurora is seeking a Senior Cloud Security Engineer to join the Cloud Security engineering team. You will build resilient, automated security systems at scale, collaborating closely with infrastructure and application teams. The team focuses on infrastructure security, workload security, and CI/CD hardening, utilizing a hybrid approach of open-source tools (OPA, Trivy, Spire) and COTS products, while writing custom code to automate workflows and harden digital integrity.

In this role, you will secure Aurora’s cloud environment by managing IAM roles and policies, enforcing security controls, constructing security boundaries, providing security guidance for Cloud and Kubernetes, creating automation to address security problems, and designing and configuring security infrastructure in AWS, Azure, or GCP. You will also manage the security posture of workloads deployed on Kubernetes environments.

Responsibilities

  • Manage IAM roles and policies.
  • Enforce security controls and construct security boundaries for resources and services.
  • Provide security guidance involving Cloud and Kubernetes.
  • Create automation to solve security problems at the root.
  • Design, build, and configure security infrastructure in cloud environments (AWS, Azure, GCP).
  • Manage the security posture of workloads deployed on Kubernetes.

Requirements

  • 5+ years of progressive experience in security engineering.
  • Understanding of fundamental security concepts such as Authentication, Authorization, Zero-Trust, and their application to cloud-native infrastructure and applications.
  • Hands-on experience securing cloud and Kubernetes environments.
  • Experience with Kubernetes admission controllers, vulnerability management, supply-chain security, network security, and use of mTLS and PKI to secure infrastructure.
  • Ability to design and implement security controls for Kubernetes, including strong knowledge of authorization models, admission controllers, and security best practices.
  • Understanding of modern Identity and Access Management (IAM) standards and technologies such as OAuth2/OIDC, SAML.
  • Proficiency in at least one modern programming/scripting language (e.g., Python or Go) for building security automation.
  • Experience writing and using Terraform.

Qualifications

  • Deep fundamental understanding of enterprise-level network security, operating system (Linux), Kubernetes, CI/CD, and application security principles.
  • Familiarity with compliance frameworks (e.g., SOX, SOC 2, ISO 27001).
  • Familiarity with machine identity frameworks like SPIFFE/SPIRE, mTLS, or equivalent.

Pay

For roles based in San Francisco, CA, Mountain View, CA, and Seattle, WA: The salary range for this position is $162,000 - $235,000 per year.

For roles based in Pittsburgh, PA: The salary range for this position is $146,000 - $211,000 per year.

Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

Schedule

Aurora operates in a hybrid work environment where employees are in the office at least 3 days per week.

Benefits

Aurora offers a collaborative and inclusive culture, where employees are united by shared values and operate with integrity. The company provides comprehensive benefits, including an annual bonus, equity compensation, and a commitment to safety and inclusion.

Similar jobs