Aurora Logo

Aurora

Staff Application Security Engineer

Posted 13 Days Ago
Be an Early Applicant
Hybrid
Seattle, WA, USA
171K-303K Annually
Expert/Leader
Hybrid
Seattle, WA, USA
171K-303K Annually
Expert/Leader
Build and maintain an AI-native application security program for autonomous trucking software and infrastructure. Partner with engineering teams on secure design and remediation, investigate vulnerabilities, threat model systems, contribute production code, develop security automation and developer tooling, and integrate preventative controls into the software development lifecycle. Use AI to scale investigations while validating results and explaining technical reasoning.
The summary above was generated by AI

Who we are

Aurora’s mission is to deliver the benefits of self-driving technology safely, quickly, and broadly.

The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone.

At Aurora, you will tackle massively complex problems alongside other passionate, intelligent individuals, growing as an expert while expanding your knowledge. For the latest news from Aurora, visit aurora.tech or follow us on LinkedIn.

 

What we are looking for

Aurora hires talented people with diverse backgrounds who are ready to help build a transportation ecosystem that will make our roads safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all.

 

We’re looking for a Staff Application Security Engineer with a strong software engineering background to help build and maintain an AI-native application security program for our driverless truck product and supporting infrastructure. This is a builder-first role for someone who enjoys understanding complex systems and working alongside engineers to improve them. You’ll collaborate on fixes and design-level improvements, build automation, and make security a low-friction part of the software development lifecycle. You’ll use AI thoughtfully to scale your attention while applying your own engineering judgment.

 

In this role you will

 
  • Partner with engineering teams on fixes and secure design improvements, contributing code directly.

  • Investigate findings and their practical impact, bringing clear evidence and possible solutions when engaging the responsible teams.

  • Help build and maintain the application security program and its tooling, using AI to scale investigation while validating results.

  • Build automation and integrate preventative controls into the software development lifecycle to reduce recurring risks and friction.

 

Required qualifications

 
  • 8+ years of experience in security , applications security engineering, or product security roles

  • Substantial experience building and maintaining production software, with strong programming, debugging, and system design skills.

  • Ability to investigate unfamiliar codebases, understand system behavior, and reason about potential misuse.

  • Experience delivering technical work across teams in a large or complex engineering organization.

  • Demonstrated ability to threat model systems, explain technical risks, and tradeoffs clearly and collaborate with engineers on practical solutions.

  • Experience building developer tooling, automation, or software development lifecycle integrations.

  • Practical experience using AI to support technical work, with the judgment to validate its output and explain the underlying reasoning.

  • Experience with languages in our stack: C, C++, Go, Python, JavaScript, and web frameworks.

 

Desirable qualifications

 
  • Hands-on experience building or maintaining both cloud and embedded systems, ideally with deep technical knowledge of each.

  • Experience developing software for safety-critical products or their supporting infrastructure, particularly autonomous vehicle technology.

  • Application or product security experience, including in-depth code audits, secure design reviews, threat modeling, or vulnerability investigation.

  • Experience building and maintaining production AI-assisted security tooling or automation.

 

For roles based in San Francisco, CA, Mountain View, CA, and Seattle, WA: The salary range for this position is $189,000 - $303,000 per year.

For roles based in Pittsburgh, PA, Livonia, MI, and Dallas, TX: The salary range for this position is $171,000 - $273,000 per year.
Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

Working at Aurora

At Aurora, we bring together extraordinarily talented and experienced people united by the strength of our values. We operate with integrity, set outrageous goals, and build a culture where we win together — all without any jerks.

We believe in-person work increases collaboration, empathy and our ability to lead effectively. As a result, we operate in a hybrid work environment where Aurorans are in office at least 3 days per week.

Our Careers page provides insight into what it is like to work at Aurora, and you can find all the latest updates in our Newsroom.

Our commitment to safety

At the core of everything we do is our commitment to safety. Building best-in-class self-driving technology will take time, and we believe that each employee at Aurora has a role in contributing to safety, every step of the way. Aurora expects commitment to our safety policies from every employee, and seeks candidates who take an active responsibility, can contribute to building an atmosphere of trust, and invest in the organization’s long-term success by prioritizing working safely, no matter what.

Our commitment to inclusion

Aurora considers candidates without regard to their race, color, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, pregnancy status, parent or caregiver status, ancestry, political affiliation, veteran and/or military status, physical or mental disability, or any other status protected by federal or state law. Aurora considers qualified applicants with criminal histories, consistent with applicable federal, state, and local law. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at [email protected].

For California applicants, information collected and processed as part of your application and any job applications you choose to submit is subject to Aurora’s California Employment Privacy Policy.

Aurora Seattle, Washington, USA Office

1411 4th St, Suite #1100, Seattle, WA, United States, 98101

Similar Jobs

2 Days Ago
Easy Apply
Remote or Hybrid
Easy Apply
165K-295K Annually
Expert/Leader
165K-295K Annually
Expert/Leader
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Lead Samsara’s application security and vulnerability management programs across cloud, firmware, IoT, and corporate systems. Define technical strategy, build scalable automation, reduce remediation timelines, guide engineering teams, mentor security engineers, communicate risk, investigate critical vulnerabilities, and support on-call response. The role requires extensive cloud and security engineering experience, strong AWS skills, programming proficiency, vulnerability management expertise, and knowledge of SAST, DAST, SCA, and AI-enabled security workflows.
Top Skills: Ai/Llm ToolingAWSAws LambdaC/C++Ci/CdCvssDastEpssFedrampGoJavaScriptPythonSastScaSemgrepTinesWiz
15 Days Ago
Remote or Hybrid
214K-245K Annually
Senior level
214K-245K Annually
Senior level
Artificial Intelligence • Fintech • Machine Learning • Mobile • Payments • Retail • Software
Drive application security by running SAST/SCA, threat modeling, vulnerability management, and remediation. Advise on secure architecture, train engineers, support pentests/bug bounties, and administer AWS Control Tower and IAM. Innovate with AI to improve AppSec tooling and practices.
Top Skills: Aws Control TowerAws LambdaChatgptDynamoDBGithub ActionsGithub Advanced SecurityGithub CopilotIamPythonS3SastScaSnowflakeSnsSQLSqsTerraformVpc
11 Minutes Ago
Hybrid
Senior level
Senior level
Machine Learning • Payments • Security • Software • Financial Services
Design, develop, test, deploy, and maintain Java Spring Boot microservices and REST APIs. Improve application observability using Dynatrace and Elastic Stack, implement authentication/authorization (OAuth2/JWT), support CI/CD pipelines, troubleshoot production/performance issues, produce technical documentation, and lead/influence engineering teams.
Top Skills: ApigeeCi/CdDynatraceElastic StackElasticsearchGitJavaJenkinsJunitJwtMocking FrameworksOauth 2.0Restful ApisSpring Boot

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account