Aurora Logo

Aurora

Staff Security Engineer, Cloud Detection & Response

Posted 20 Days Ago
Be an Early Applicant
Hybrid
Seattle, WA, USA
171K-303K Annually
Expert/Leader
Hybrid
Seattle, WA, USA
171K-303K Annually
Expert/Leader
Lead cross-functional initiatives to mature cloud and enterprise detection infrastructure, including telemetry pipelines, detection-as-code, logging, and scalable coverage. Design and tune detections for cloud, identity, endpoint, SaaS, CI/CD, and service-to-service threats. Conduct threat hunting, support incident response and on-call operations, apply threat intelligence and adversary emulation, mentor SOC engineers, and improve detection capabilities based on incident lessons learned.
The summary above was generated by AI

Who we are

Aurora’s mission is to deliver the benefits of self-driving technology safely, quickly, and broadly.

The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone.

At Aurora, you will tackle massively complex problems alongside other passionate, intelligent individuals, growing as an expert while expanding your knowledge. For the latest news from Aurora, visit aurora.tech or follow us on LinkedIn.

 

What we are looking for

We're searching for a Staff Cybersecurity Engineer to help mature Cloud & Enterprise Detection within our Detection & Response (D&R) team, under the Technical Assurance division. This is a senior individual contributor role focused on driving cross-functional projects that strengthen Aurora's detection infrastructure and expand detection coverage across our cloud infrastructure, enterprise environments. You will scope and lead multi-quarter initiatives that raise the maturity of our detection program and powering detection at scale, executing through your own hands-on work and through close partnership with Cloud Infrastructure, IT, and Platform Engineering teams.

In this role you will

  • Drive cross-functional projects to mature Aurora's detection infrastructure, log ingestion and normalization, detection-as-code pipelines with testing, versioning, and CI/CD for detection content, and scalable, cost-aware telemetry collection

  • Expand detection coverage across cloud and corporate environments and prioritize coverage improvements

  • Design, build, and tune detections for cloud control plane and workload activity, identity-based attacks, endpoint, SaaS threats, abuse of CI/CD and service-to-service communication paths

  • Partner with Cloud Infrastructure, IT, and Platform Engineering to embed logging and detection requirements into system design, and represent D&R in cross-functional working groups and design reviews

  • Integrate threat intelligence and adversary emulation into detection coverage priorities, and conduct proactive threat hunting across cloud, identity, endpoint, and SaaS data

  • Respond to cloud and enterprise security incidents and participate in an on-call rotation, feeding lessons learned back into detection coverage and infrastructure improvements

  • Collaborate with and mentor SOC engineers on cloud and enterprise detection practices, and contribute to quarterly planning for detection infrastructure and coverage initiatives

Required qualifications

  • 10+ years of security experience; demonstrated experience leading cross-functional security projects or programs from scoping through delivery

  • Strong technical foundation in threat detection, incident response

  • Expertise with cloud security across one or more major providers, including cloud-native telemetry and detection sources

  • Experience building or maturing detection infrastructure - SIEM or security data lake pipelines, log onboarding and normalization, detection-as-code workflows

  • Expertise with endpoint detection and response (EDR) and SaaS security monitoring, or comparable host and application telemetry depth

  • Expertise authoring and maintaining detections (anomalous, network, host, identity, or cloud activity) and measuring detection coverage against adversary behavior

  • Experience with incident management, driving cross-departmental collaboration for containment and remediation

  • Expertise with MITRE ATT&CK framework and modern adversarial techniques; understanding of NIST CSF

  • Ability to write quality, testable code in Python

Desirable qualifications

  • Experience designing and implementing Zero Trust Architecture

  • Experience scaling SOC, Detection Engineering with AI/LLM

  • Experience building and architecting data lakes

  • Experience with compliance frameworks (SOC 2, ISO 27001)

For roles based in San Francisco, CA, Mountain View, CA, and Seattle, WA: The salary range for this position is $189,000 - $303,000 per year.

For roles based in Pittsburgh, PA,: The salary range for this position is $171,000 - $273,000 per year.
Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

Working at Aurora

At Aurora, we bring together extraordinarily talented and experienced people united by the strength of our values. We operate with integrity, set outrageous goals, and build a culture where we win together — all without any jerks.

We believe in-person work increases collaboration, empathy and our ability to lead effectively. As a result, we operate in a hybrid work environment where Aurorans are in office at least 3 days per week.

Our Careers page provides insight into what it is like to work at Aurora, and you can find all the latest updates in our Newsroom.

Our commitment to safety

At the core of everything we do is our commitment to safety. Building best-in-class self-driving technology will take time, and we believe that each employee at Aurora has a role in contributing to safety, every step of the way. Aurora expects commitment to our safety policies from every employee, and seeks candidates who take an active responsibility, can contribute to building an atmosphere of trust, and invest in the organization’s long-term success by prioritizing working safely, no matter what.

Our commitment to inclusion

Aurora considers candidates without regard to their race, color, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, pregnancy status, parent or caregiver status, ancestry, political affiliation, veteran and/or military status, physical or mental disability, or any other status protected by federal or state law. Aurora considers qualified applicants with criminal histories, consistent with applicable federal, state, and local law. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at [email protected].

For California applicants, information collected and processed as part of your application and any job applications you choose to submit is subject to Aurora’s California Employment Privacy Policy.

Aurora Seattle, Washington, USA Office

1411 4th St, Suite #1100, Seattle, WA, United States, 98101

Similar Jobs

2 Hours Ago
Remote or Hybrid
United States
97K-145K Annually
Mid level
97K-145K Annually
Mid level
Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Oversee financial reporting and KPIs for physician practice clients. Support budgeting, forecasting, and cash flow modeling. Provide technical accounting guidance, onboard clients and systems, coach and manage staff, collaborate with advisory teams to expand services, implement process improvements, and support technology platform integrations and training.
Top Skills: Bill.ComIntacctMS OfficeNetSuiteQuickbooks Online
2 Hours Ago
Remote or Hybrid
United States
129K-174K Annually
Senior level
129K-174K Annually
Senior level
Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Lead client engagements to assess business challenges, define enterprise data and AI strategies, develop roadmaps, guide solution design and delivery, provide technical leadership and mentoring, and support practice growth via presales and thought leadership.
Top Skills: AnalyticsAzureBusiness IntelligenceCloud Data PlatformsCopilotsData AgentsData WarehousingDatabricksGenerative AiMicrosoft FabricSnowflake
2 Hours Ago
Remote or Hybrid
United States
88K-132K Annually
Senior level
88K-132K Annually
Senior level
Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
The Senior Consultant will lead and deliver Microsoft D365 CRM solutions, manage client projects, and participate in business development activities.
Top Skills: DevOpsJIRAMicrosoft D365 Crm

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account