onsite
Staff Security Engineer, Enterprise Security Operations - Aurora Innovation
Security Engineer
Lead enterprise security operations for a self‑driving technology company, designing and automating detection, response, and hardening across cloud, container, and identity platforms using Python, AWS, GCP, and Kubernetes.
About the role
Key Responsibilities
- Design, implement, and maintain scalable security monitoring and incident response workflows across multi‑cloud (AWS, GCP) and containerized environments.
- Develop automation scripts and tooling in Python to accelerate threat detection, triage, and remediation.
- Lead threat‑hunting initiatives, leveraging SIEM data, logs, and telemetry to uncover advanced adversary techniques.
- Define and enforce Identity & Access Management (IAM) best practices, including role‑based access, least‑privilege policies, and credential hygiene.
- Collaborate with engineering, product, and infrastructure teams to embed security controls into CI/CD pipelines and Kubernetes deployments.
- Mentor junior security engineers and drive continuous improvement of security operations processes.
Requirements
- 5+ years of hands‑on experience in security operations, incident response, or threat hunting in large‑scale cloud environments.
- Strong programming/scripting skills in Python and familiarity with automation frameworks.
- Deep knowledge of AWS, GCP, and Kubernetes security concepts, including IAM, network policies, and workload protection.
- Proficiency with SIEM platforms, log aggregation, and security analytics tools.
- Excellent problem‑solving abilities, communication skills, and a track record of leading security initiatives across cross‑functional teams.
Skills
pythonawskubernetessiem