Create Email Alert

Email Alert for

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.

Similar Jobs

  • Aurora Innovation

    Sr. Staff Application Security Engineer

    Seattle, WA, United States

    Who We Are Aurora (Nasdaq: AUR) is delivering the benefits of self-driving technology safely, quickly, and broadly to make transportation safer, increasingly accessible, and more reliable and efficient than ever before. The Aurora Driver is a self-driving system designed to operate multiple vehicle types, from freight-hauling semi-trucks to ride-h

    Job Source: Aurora Innovation
  • Aurora Innovation

    Sr. Staff Application Security Engineer

    Seattle, WA, United States

    • Ending Soon

    Who We Are Aurora (Nasdaq: AUR) is delivering the benefits of self-driving technology safely, quickly, and broadly to make transportation safer, increasingly accessible, and more reliable and efficient than ever before. The Aurora Driver is a self-driving system designed to operate multiple vehicle types, from freight-hauling semi-trucks to ride-h

    Job Source: Aurora Innovation
  • Quizlet

    Staff Application Security Engineer

    Seattle, WA, United States

    About Quizlet: Inspired by our belief that anyone can learn anything and powered by our own curiosity, we build the smartest tools we can imagine to help students learn. Quizlet is the popular, global learning platform and app that millions of students, teachers and everyday people use to study any subject imaginable for school, work or as part of

    Job Source: Quizlet
  • Quizlet

    Staff Application Security Engineer

    Seattle, WA, United States

    • Ending Soon

    About Quizlet: Inspired by our belief that anyone can learn anything and powered by our own curiosity, we build the smartest tools we can imagine to help students learn. Quizlet is the popular, global learning platform and app that millions of students, teachers and everyday people use to study any subject imaginable for school, work or as part of

    Job Source: Quizlet
  • The Talent Mine

    Sr. Security Engineer with hardware/application balance

    Seattle, WA, United States

    The Talent Mine is recruiting for a seasoned Sr. Security Engineer, with expertise on both application and network security for an immediate FTE role in the DT Seattle area. This is with an established mid-sized client in the tech/legal space, that is looking to carve out a new role that is the "go to" person for all things related to technology s

    Job Source: The Talent Mine
  • The Talent Mine

    Sr. Security Engineer with hardware/application balance

    Seattle, WA, United States

    • Ending Soon

    The Talent Mine is recruiting for a seasoned Sr. Security Engineer, with expertise on both application and network security for an immediate FTE role in the DT Seattle area. This is with an established mid-sized client in the tech/legal space, that is looking to carve out a new role that is the "go to" person for all things related to technology s

    Job Source: The Talent Mine
  • Amazon

    Application Security Engineer

    Seattle, WA, United States

    Description Go beyond protecting Amazon Web Services (AWS) and have a direct impact on new cutting-edge initiatives at Amazon. Work across multiple security domains as well as strategic security partnerships. Since 2006, our great team at AWS has been enabling our customers to bring great ideas to life in ways that aren’t possible in traditional I

    Job Source: Amazon
  • Intelliswift Software, Inc.

    Application security engineer

    Seattle, WA, United States

    • Ending Soon

    Pay rate range - $60/hr. to $63/hr. on W2 Years of Experience: 2-5 years Required : security testing and managing SDLC security tools such as SAST/DAST Strong application background but also have scripting background. Should be able to perform automation when there are any issues Coding skill is Python/ java Deep understanding of application vulner

    Job Source: Intelliswift Software, Inc.

Sr. Staff Application Security Engineer

Seattle, WA, United States

Aurora hires talented people with diverse backgrounds who are ready to help build a transportation ecosystem that will make our roads safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all. Aurora’s Product Security team’s mission is to discover, mitigate, and prevent security risks in the software, hardware, and services developed by Aurora. Our team is responsible for ensuring the secure design and implementation of the technology built for the Aurora Driver as well as continually improving the assurance levels of security across all of Aurora’s Products. This team is also responsible for performing technical security assessments, threat modeling, security code reviews and vulnerability testing to highlight risk and help various engineering teams and partners to improve security. We work closely with engineers across Aurora as well as 3rd party partners to design and proactively integrate initiatives to enhance security across a wide variety of software or hardware domains and technology stacks. We are searching for an experienced Security Engineer with strong application security experience that is excited to lead and improve the overall application security posture for the autonomous vehicle platform to join us on this mission.

In this role, you will

Perform secure design reviews and threat modeling. Identify and prioritize risks, attack surfaces, and vulnerabilities

Perform security code reviews of source code changes and advise developers on remediating vulnerabilities and following secure coding practices

Perform technical security assessments and reviews, research, uncover, and reproduce vulnerabilities, design secure protocols and systems, and write tests and fuzzers to drive architecture changes

Manage the vulnerability management process and program through triage, prioritization, tracking, remediation, and validation of vulnerabilities from audits, scans and external reports

Employ techniques including reverse engineering, fuzzing, and static and/or dynamic analysis

Conduct research to identify new and novel attack vectors against Aurora’s products and services

Review, develop and document secure operational best practices, and provide security guidance for engineers and various internal and external partners

Develop and manage a secure software development lifecycle

Develop and manage a bug bounty program

Research, recommend, and develop security tools and technologies to strengthen defenses against emerging threats and vulnerabilities

Work with Engineering teams and OEMs to ensure successful security assurance of the Aurora Driver platform and services

Advocate, guide and mentor both security and non-security engineers to instill security best practices. through secure architecture, design, and development

Required Qualifications

Foundational knowledge of operating system security for Linux

Foundational knowledge of the CWE Top 25

Ability to assess software and/or hardware components with and without full knowledge

Ability to work well with other assessment members and engineering partners

Ability to communicate effectively with technical and non-technical audiences

Experience in one or more of the following: risk assessment, threat modeling, incident and emergency response, OS hardening, vulnerability management, pentesting, offensive security or cryptographic protocols and concepts

Experience in vulnerability discovery and analysis, design review, and code-level security reviews

Experience in, and technical knowledge of security engineering, computer and network security, authentication and security protocols, and applied cryptography

Experience with assessment, development, implementation, and documentation of a comprehensive and broad set of security technologies and processes

Familiarity with automotive protocols and security standards

Experience in Security Assurance / Secure-SDLC processes in an agile / waterfall environment

Experience building and evaluating threat models / risk assessments

Experience and ability to implement best practices related to cryptographic protocols, infrastructure and network security

Minimum 8 years of experience in a security-specific or security-adjacent industry

Minimum 2 years of experience in the robotics or automotive industry or equivalent

Desirable Qualifications

Relevant work experience in offensive security, penetration testing or red teaming

Experience implementing various Defense in Depth Strategies to address dynamic threats across various software and hardware stacks

Ability and desire to write production-quality code in C++, Golang, or Python

Experience evaluating the security of software, hardware and services

Foundational knowledge of embedded firmware security and hardware security, preferably in the robotics or automotive space

Familiarity with cloud security (AWS) and infrastructure-as-code

Familiarity with Trusted Platform Modules, HSMs, and trusted boot

A history of giving back to the security industry via open source contributions, published papers, or conference presentations

The base salary range for this position is $254k-$407K per year. Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

#LI-SP1

#Mid-Senior

#J-18808-Ljbffr

Apply

Create Email Alert

Create Email Alert

Email Alert for Sr. Staff Application Security Engineer jobs in Seattle, WA, United States

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.