Staff Security Engineer

Aurora

San Francisco (CA)

On-site

USD 150,000 - 200,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Deepstreamtech is seeking a Staff Security Engineer located in San Francisco, California. The successful candidate will lead architectural efforts in enterprise security, focusing on protecting endpoints, identities, and internal infrastructure. You will develop robust solutions and guide integrations through partnerships across Engineering and IT. The ideal candidate will have 12+ years of experience in enterprise security, be proficient in programming languages like Go or Python, and have experience in designing security telemetry and detection infrastructure.

Qualifications

  • 12+ years in enterprise security engineering, specifically securing systems and infrastructure.
  • Ability to write production-quality automation in languages like Go or Python.
  • Experience designing security telemetry pipelines and detection infrastructure.

Responsibilities

  • Lead architecture and implementation of Aurora's enterprise security controls.
  • Design and build security telemetry and detection infrastructure.
  • Partner with IT and Engineering to embed security requirements early in projects.

Skills

Hands-on experience in enterprise security engineering
Proficiency in at least one programming language
Experience architecting security platforms
Experience leading cross-functional security projects
Experience with Zero Trust architecture
Hands-on AWS security experience
Experience with applied cryptography

Education

Security certifications (e.g., CISSP)

Job description

Requirements
  • 12+ years of hands‑on experience in enterprise security engineering or corporate information security — specifically securing employee‑facing systems, endpoints, identities, and internal infrastructure (not product or application security)
  • Proficiency in at least one programming language, used in a security context — writing production‑quality automation, integrations, or internal tooling (the team primarily uses Go; Python is also common)
  • Experience architecting and integrating enterprise security platforms — designing API integrations, automating workflows, and building tooling that extends platform capabilities across domains such as EDR/XDR, MDM, IAM/IGA, DLP, SaaS security, cloud security, or PKI
  • Experience designing and building security telemetry pipelines and detection infrastructure — log ingestion, normalization, SIEM integration, and alerting architecture
  • Experience leading cross‑functional security engineering projects — defining scope, driving execution, and aligning stakeholders across Engineering and IT
  • Track record of conducting security architecture reviews and translating findings into actionable, risk‑prioritized remediation plans
  • Experience evaluating security posture and identifying systemic gaps, with a bias toward building durable solutions rather than one‑off fixes
  • (Desirable) Experience with Zero Trust architecture and identity‑centric security models (BeyondCorp‑style or similar)
  • (Desirable) Familiarity with NIST CSF, MITRE ATT&CK, and CIS Benchmarks as engineering inputs — used to inform what to build and how to validate it, not just as compliance checkboxes
  • (Desirable) Hands‑on AWS security experience (SCPs, GuardDuty, Security Hub, IAM, etc.) and familiarity with integrating cloud security signals into a corporate security platform
  • (Desirable) Experience with applied cryptography and PKI in a production enterprise environment — certificate lifecycle management, CA design, or secrets management
  • (Desirable) Familiarity with securing AI/ML platforms or applications built on LLMs, RAG pipelines, or MCP‑based architectures
  • (Desirable) Security certifications such as CISSP, GCED, GREM, or similar (valued but not required)
What the job involves
  • We're searching for a Staff Security Engineer to join our Enterprise Security Engineering team, reporting to the Technical Lead Manager of Security Engineering
  • Aurora is scaling its autonomous trucking operations, and the security foundations protecting our employees, devices, internal systems, and data need to scale with us
  • We're looking for a deeply technical enterprise security engineer who is as comfortable in a code editor as in a security console — you build the systems that make Aurora's security operations possible
  • This is a role for someone who can architect robust enterprise security solutions, write the code to implement them, and partner across Engineering and IT to make sure security is embedded from the start, not bolted on at the end
  • This is not a security operations‑only role
  • It sits squarely in enterprise security engineering, where the work is designing, building, and owning the platforms, integrations, and automation that power Aurora's internal security posture at scale
  • Own the architecture and implementation of Aurora's enterprise security controls — designing the systems and integrations that protect Aurora's endpoints, identities, internal infrastructure, and SaaS environment
  • Design and build Aurora's security telemetry and detection infrastructure, including log pipelines, SIEM integrations, and alerting frameworks — in partnership with the Security Operations Engineer who owns ongoing tuning and rule development
  • Define and enforce enterprise security standards, conducting architecture and design reviews to ensure alignment with Aurora's security posture and risk tolerance
  • Partner with IT, Infrastructure, and Engineering teams to embed security requirements early — shifting left on corporate IT initiatives before they become technical debt
  • Build automation and tooling that extends the capabilities of Aurora's security platforms, reduces manual operational burden, and scales the team's impact
  • Serve as the escalation point for enterprise security incidents requiring engineering‑level investigation or remediation, and participate in the team's on‑call rotation
  • Translate security strategy into concrete, executable engineering projects with clear milestones and measurable outcomes
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Staff Security Platform Engineer
Staff Security Platform Engineer

Aurora • San Francisco (CA)

On-site
USD 140,000 - 180,000
Staff Security Engineer
Staff Security Engineer

Aurora • Pittsburgh

On-site
USD 171,000 - 247,000
Annual bonus
Equity compensation
Comprehensive benefits
Staff Security Engineer
Staff Security Engineer

Aurora • Seattle (WA)

On-site
USD 189,000 - 274,000
Annual bonus
Equity compensation
Comprehensive benefits package
Staff Security Platform Engineer
Staff Security Platform Engineer

Aurora • Mountain View (CA)

On-site
USD 189,000 - 274,000
Bonus
Equity compensation
Health benefits
Staff Security Platform Engineer
Staff Security Platform Engineer

Aurora • Seattle (WA)

On-site
USD 189,000 - 274,000
Annual bonus
Equity compensation
Comprehensive benefits package
Staff Security Platform Engineer
Staff Security Platform Engineer

Aurora Innovation • San Francisco (CA)

On-site
USD 189,000 - 274,000
Annual bonus
Equity compensation
Health benefits
Staff Security Platform Engineer
Staff Security Platform Engineer

3M HEALTHCARE • Mountain View (CA)

On-site
USD 189,000 - 274,000
Annual bonus
Equity compensation
Flexible working environment
Senior Security Engineer - Enterprise Security Engineering
Senior Security Engineer - Enterprise Security Engineering

Aurora • San Francisco (CA)

Hybrid
USD 162,000 - 260,000
Senior Security Engineer - Enterprise Security Engineering
Senior Security Engineer - Enterprise Security Engineering

Aurora • Seattle (WA)

On-site
USD 162,000 - 260,000
Annual bonus
Equity compensation
Benefits
Staff Security Platform Engineer
Staff Security Platform Engineer

Aurora • Pittsburgh

On-site
USD 171,000 - 247,000
Annual bonus
Equity compensation
Comprehensive benefits