4 часа назад
Staff Security Engineer for Cloud (Automotive)
205 000 - 240 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Staff Security Engineer for Cloud (Automotive): Building end-to-end cloud and vehicle-to-cloud security for a connected, software-defined EV platform with an accent on AWS, Kubernetes, identity, supply-chain security, and production Go services. Focus on threat modeling, policy enforcement, certificate lifecycle management, detection and response, and securing telemetry, APIs, and OTA update paths at scale.
Location: Palo Alto, United States; on-site
Salary: $205,000–$240,000 per year, depending on experience, qualifications, and location.
Company
is an electric mobility company developing vertically integrated small EVs and a connected, software-defined vehicle platform.
What you will do
- Own cloud security strategy, architecture, implementation, and operations across AWS, Kubernetes, and a microservices platform.
- Design and implement workload identity, organization-wide IAM, least-privilege access, secrets management, and certificate and key lifecycle management.
- Harden containers and orchestration through image provenance, admission control, runtime and network policies, service mesh configuration, and microservice isolation.
- Secure the software supply chain with SBOMs, dependency and image scanning, signed artifacts, and CI/CD security gates.
- Build authorization services, policy enforcement, provisioning, and rotation tooling in Go while establishing DevSecOps guardrails and policy as code.
- Run security detection and response and secure the vehicle-to-cloud boundary, including device identity, certificate rotation, OTA updates, and anomaly detection.
Requirements
- 10+ years of backend and infrastructure engineering experience, including substantial production security ownership.
- Expert hands-on experience with AWS services including IAM, VPC, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, EKS, ECS, ECR, Lambda, DynamoDB, and S3.
- Deep Kubernetes and container security experience, including RBAC, admission controllers, pod security standards, network policies, runtime detection, and image hardening.
- Current production experience designing, reviewing, and shipping Go code.
- Experience securing microservices and distributed systems, identity protocols, applied cryptography, OAuth2, OIDC, JWT, SAML, mutual TLS, and PKI.
- Experience with threat modeling, secure architecture reviews, incident response, assurance activities, and building a security function or program from zero.
Culture & Benefits
- Health, dental, and vision insurance covered up to 100%, with FSA and HSA options.
- One Medical membership and dedicated insurance advocates.
- Fertility and family-building benefits through Progyny.
- Flexible time off.
- 401(k) match.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Security Architect (Cloud Security)
175 000 - 200 000$
3 часа назад
Security Engineer (AI)
150 000 - 300 000$
48 минут назад
DevSecOps Engineer (AWS)
159 000 - 195 000$
1 час назад
IT Security Engineer
116 000 - 159 000$
4 дня назад
Senior Security Engineer (Aerospace)
120 000 - 222 000$
5 часов назад