Назад
Company hidden
4 часа назад

Staff Security Engineer for Cloud (Automotive)

205 000 - 240 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer for Cloud (Automotive): Building end-to-end cloud and vehicle-to-cloud security for a connected, software-defined EV platform with an accent on AWS, Kubernetes, identity, supply-chain security, and production Go services. Focus on threat modeling, policy enforcement, certificate lifecycle management, detection and response, and securing telemetry, APIs, and OTA update paths at scale.

Location: Palo Alto, United States; on-site

Salary: $205,000–$240,000 per year, depending on experience, qualifications, and location.

Company

hirify.global is an electric mobility company developing vertically integrated small EVs and a connected, software-defined vehicle platform.

What you will do

  • Own cloud security strategy, architecture, implementation, and operations across AWS, Kubernetes, and a microservices platform.
  • Design and implement workload identity, organization-wide IAM, least-privilege access, secrets management, and certificate and key lifecycle management.
  • Harden containers and orchestration through image provenance, admission control, runtime and network policies, service mesh configuration, and microservice isolation.
  • Secure the software supply chain with SBOMs, dependency and image scanning, signed artifacts, and CI/CD security gates.
  • Build authorization services, policy enforcement, provisioning, and rotation tooling in Go while establishing DevSecOps guardrails and policy as code.
  • Run security detection and response and secure the vehicle-to-cloud boundary, including device identity, certificate rotation, OTA updates, and anomaly detection.

Requirements

  • 10+ years of backend and infrastructure engineering experience, including substantial production security ownership.
  • Expert hands-on experience with AWS services including IAM, VPC, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, EKS, ECS, ECR, Lambda, DynamoDB, and S3.
  • Deep Kubernetes and container security experience, including RBAC, admission controllers, pod security standards, network policies, runtime detection, and image hardening.
  • Current production experience designing, reviewing, and shipping Go code.
  • Experience securing microservices and distributed systems, identity protocols, applied cryptography, OAuth2, OIDC, JWT, SAML, mutual TLS, and PKI.
  • Experience with threat modeling, secure architecture reviews, incident response, assurance activities, and building a security function or program from zero.

Culture & Benefits

  • Health, dental, and vision insurance covered up to 100%, with FSA and HSA options.
  • One Medical membership and dedicated insurance advocates.
  • Fertility and family-building benefits through Progyny.
  • Flexible time off.
  • 401(k) match.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →