Aurora logo

Staff Cloud Security Engineer

Aurora
Pittsburgh, Pennsylvania
Full Time
Posted December 17, 2025
$198k - $280k
Apply Now

Application opens on company website

Job Description

The role involves designing, implementing, and managing cloud security infrastructure and controls within AWS and Kubernetes EKS, serving as a technical security leader, and automating security processes to protect Aurora's autonomous driving platform.

Key Responsibilities

  • Design and implement security infrastructure services such as certificate management, secrets management, and authentication/authorization systems.
  • Manage security boundaries, access controls, and IAM policies within AWS environment.
  • Implement network security controls within VPCs, including security groups, ACLs, and private connectivity.
  • Develop and maintain security best practices and tooling within AWS and Kubernetes EKS.
  • Monitor, report, and automate remediation of security controls using tools like AWS Config, GuardDuty, and custom automation.
  • Conduct threat modeling and translate risks into security requirements and controls.
  • Perform security design reviews for new systems and features, providing security guidance to engineering teams.
  • Develop and maintain security infrastructure and controls using Infrastructure as Code (IaC) principles.
  • Lead advanced threat modeling exercises and translate risks into security requirements.
  • Automate security remediation and eliminate vulnerabilities through scalable automation tools.

Requirements

  • A minimum of 7 years of progressive experience in software, platform, or security engineering, with at least 3 years focusing exclusively on public cloud security AWS required.
  • Experience in identifying and managing security risk, and the ability to navigate organizational friction to manage these risks.
  • Expert-level, hands-on experience securing and operating complex environments in AWS, including expertise with IAM, VPC Networking, Security Hub, Config, GuardDuty, and KMS.
  • Proven ability to design and implement security controls for Kubernetes EKS, including strong knowledge of authorization models, admission controllers, and security best practices.
  • Expertise in one or more Identity and Access Management (IAM) standards and technologies such as PKI, OAuth2, OIDC, SAML, and commercial solutions like Okta.
  • Strong proficiency in at least one modern programming or scripting language such as Python or Go for building security automation, tools, and remediation services.
  • Experience writing, reviewing, and scaling infrastructure with Terraform.
  • Deep fundamental understanding of enterprise-level network security, operating system security (Linux), and application security principles.
  • Experience implementing DevSecOps practices, including integration of security testing (SAST, DAST, SCA) into CI/CD pipelines (e.g., GitLab, Jenkins).

Benefits & Perks

Salary range: $198,000 - $280,000 per year
Annual bonus
Equity compensation
Benefits (unspecified)

Ready to Apply?

Join Aurora and make an impact in renewable energy

Stay Updated on Sustainability Jobs

Get the latest renewable energy jobs and career tips delivered to your inbox.

More jobs at Aurora

Aurora logo

Staff Data Analyst, People Analytics

Aurora
NEW
San Francisco
Full Time
7h
$143k-229k
Aurora logo

Staff Data Analyst, People Analytics

Aurora
NEW
Mountain View
Full Time
7h
$143k-229k
Aurora logo

Copy of Staff Cloud Security Engineer

Aurora
NEW
Seattle
Full Time
2d
$220k-300k

More jobs in Pittsburgh, Pennsylvania

Cannon Design logo

Plumbing Fire Protection Engineer II

Cannon Design
Pittsburgh
Full Time
3d
Cannon Design logo

Associate Practice Director

Cannon Design
Pittsburgh
Full Time
Dec 1
Cannon Design logo

Mechanical III

Cannon Design
Pittsburgh
Full Time
Dec 1