Aurora

Staff Product Security Engineer

Mountain View, CA
USD 216k - 345k
Machine Learning
This job is closed! Check out or
Description

Who We Are

Aurora (Nasdaq: AUR) is delivering the benefits of self-driving technology safely, quickly, and broadly to make transportation safer, increasingly accessible, and more reliable and efficient than ever before. The Aurora Driver is a self-driving system designed to operate multiple vehicle types, from freight-hauling semi-trucks to ride-hailing passenger vehicles, and underpins Aurora Horizon and Aurora Connect, its driver-as-a-service products for trucking and ride-hailing. Aurora is working with industry leaders across the transportation ecosystem, including Toyota, FedEx, Volvo Trucks, PACCAR, Uber, Uber Freight, U.S. Xpress, Werner, Covenant, Schneider, and Ryder. For Aurora’s latest news, visit aurora.tech and @aurora_inno on Twitter.

Led by a team of seasoned experts, our mission is to deliver the benefits of self-driving technology safely, quickly, and broadly. We are designing the software and hardware to power the transportation of our future that will make our roads safer, give more people access to mobility, and reduce congestion and pollution in cities - improving the quality of life for all. The challenge in what we are endeavoring to achieve is transcendent; we are developing perhaps the world's most complex computing system and asking it to perform the task of transporting and keeping safe our most precious asset: human life.

This role sits within the Security Strategy and Programs team. Aurora’s Security Strategy and Programs team’s mission is to develop security strategy and drive security initiatives across all of Aurora. We are searching for a seasoned security professional with expertise in driving company wide technical programs to join us on this mission.

This role specifically is responsible for defining and driving security assessment initiatives and risk management programs. This role will function as the bridge between Security and Product, Software, Hardware, Safety, Legal teams to drive execution of security risk management programs as needed for different product release milestones.

Flexible work locations are available (MTV, SFO, PIT) for US-based employees (Full remote is NOT available for this role).

In this role, you will

  • Define schedule and scope of security threat analysis and risk assessments (TARA) as per product release milestones
  • Partner closely with Aurora’s engineering teams to develop security assessment schedule and execution plans.
  • Drive continuous TARA efforts as different parts of the product become mature.
  • Develop higher level abstraction of threat models of product components and ecosystems.
  • Identify major security gaps and work with other security TPMs to develop strategic security controls.
  • Drive external 3rd party engagements of security assessments and pentests.
  • Interpret 3rd party assessment/pentest results into tangible context specific risk items.
  • Drive (and improve) security risk management program and its integration with other company-wide risk management efforts.
  • Define and report on program KPIs and residual risks.
  • Track progress, roadblocks and potential risks of security initiatives and programs.
  • Proactively remove obstacles to drive momentum and progress. 
  • Establish engagement interfaces to keep various levels of stakeholders for timely decision making.

Required Qualifications

  • Minimum 7+ years of experience in the capacity of a Technical Program Manager, Product Manager, Engineering Manager or Security Engineer in domains of Security or Privacy.
  • BS in Computer Science, Information Technology or a technical field or equivalent experience.
  • Ability to define prioritization of security initiatives and efforts.
  • Ability to influence and motivate people across a broad variety of job functions through your relationships.
  • Experience with creating detailed reports and dashboards.
  • Experience with developing threat models and using threat models to identify potential security controls.
  • Experience in working with external security assessors to drive 3rd party assessments and pentest.
  • Ability to translate a pentest report into tangible contextual security risk elements.
  • Hands-on experience in driving security programs such as offensive security, security risk management, security compliance.

Desirable Qualifications

  • Professional certifications such as CISSP, OSCP, GIAC-PEN, Prosci, SAFe or PMP.
  • Experience in building security programs (e.g. security risk management, security compliance, pentest) from ground up.
  • Ability to work within organizations with minimal structure and with minimal direction.
  • Experience is rolling out potentially disruptive organizational process changes.
  • Experience with creating communication plans for various levels of stakeholders.
  • Excellent emotional intelligence. 
  • Excellent written and verbal communication skills.
  • Strong technical, analytical and quantitative skills with the ability to use data and metrics to back up assumptions, recommendations and drive decisions.

Working at Aurora

Our work has real purpose. Delivering the benefits of self-driving will save lives around the world, expand access to transportation, revitalize cities, and give people time back every day.

We’re one team. We’re inspired by the challenge of what we’re solving and the impact our work will have on society. Our camaraderie is built on respect for our work and the fundamental belief our success will be a result of working together.

The Founding Team

Aurora has assembled the most experienced leadership team in this space. Chris Urmson helped lead Carnegie Mellon’s efforts in Darpa’s Grand Challenges, then was a founding member of Google’s self-driving team. Sterling Anderson worked on the tech at MIT before leading Tesla’s Autopilot system. Drew Bagnell, also a Carnegie Mellon alum, is a machine learning expert who helped build Uber’s autonomy effort. At Aurora, these three continue to bring experts from all areas of the industry to the team. We are funded by Amazon, T Rowe Price, and some of Silicon Valley’s best venture capital firms, including Sequoia, Greylock and Index Ventures.

The base salary range for this position is $216K-$345K per year. Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

#LI-DW1

#Mid-Senior 

Working at Aurora

At Aurora, we bring together extraordinarily talented and experienced people united by the strength of our values. We operate with integrity, set outrageous goals, and build a culture where we win together — all without any jerks.

We have offices in several locations across the United States, where we encourage team and cross-functional collaboration. Aurora offers competitive medical, dental, and vision benefits, and additional healthcare support including medical transportation reimbursement, fertility, adoption, and surrogacy benefits. We empower our employees and their families with options to further their unique physical, mental, and financial well-being.

Our Learning and Development offerings include Aurora Academy, where our people learn, develop, and practice the essential skills that drive Aurora’s mission, continually up-leveling our team along the way. Our Careers page provides insight into career opportunities at Aurora, and you can find all the latest news on our Blog. 

Safety is central to everything we do. Every employee at Aurora has a role in contributing to safety, every step of the way. We seek candidates who take active responsibility, can contribute to building an atmosphere of trust, and invest in the organization's long-term success by working safely — no matter what.

We believe that self-driving technology has broad benefits – including increased access to transportation. To realize those benefits, we need a workforce with diverse experiences, insights, and perspectives — a workforce that reflects the communities our technology will serve.

Aurora is committed to providing access to anyone who seeks information from our website. We invite anyone using assistive technologies, such as a screen reader or Braille reader, to email us at careersiteaccommodations@aurora.tech  if they experience difficulty using our website. Please describe the accessibility problem and include a URL (if available).

Aurora considers candidates without regard to their race, color, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, pregnancy status, parent or caregiver status, ancestry, political affiliation, veteran and/or military status, physical or mental disability, or any other status protected by federal or state law. Aurora considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at careersiteaccommodations@aurora.tech

For California applicants, information collected and processed as part of your application and any job applications you choose to submit is subject to Aurora’s California Employment Privacy Policy.

Diversity, Equity and Inclusion

At Aurora, every employee is empowered to take an active role in building an inclusive, collaborative, and unified culture that leverages our diverse strengths, perspectives, and backgrounds. 

Transforming how the world moves people and goods involves seeking to understand backgrounds, insights, and lived experiences that differ from our own. One way we accomplish that is with our 15 employee-led Aurora Unified Groups, which support diverse voices and drive inclusive collaboration. We believe that teamwork, belonging, and trust motivate and support our employees to do their best work. As our team grows, we strive to attract and retain exceptional talent that adds new perspectives and experiences and continues to drive innovation. Learn more on our Culture Page.

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

50,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 223 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

Cancel anytime / Money-back guarantee

Wall of love from fellow engineers