> Markdown version of [/jobs/ext/209094-cloud-security-engineeryou](https://www.wearedevelopers.com/jobs/ext/209094-cloud-security-engineeryou). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security EngineerYou - **Company:** Aurora Innovation, Inc. - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Salary:** $162,000.0 - $235,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, User Authentication, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Computer Programming, Continuous Integration, Linux, Identity and Access Management, Python (Programming Language), Network Security, OAuth, Open Source Technology, OpenID, Public Key Infrastructure, Zero Trust Network Access, Security Assertion Markup Language (SAML), Tripwire, Software Vulnerability Management, Google Cloud, Software Security, Kubernetes, Terraform - **Published:** May 14, 2026 - **Apply:** https://www.dice.com/job-detail/a2a32ac3-85b7-4547-8a22-dad2d0eb948e ## About the Role * 5+ years of progressive experience in security engineering * Understanding of fundamental security concepts such as Authentication, Authorization, Zero-Trust, and their application to cloud native infrastructure and applications. * Hands-on experience in securing cloud and Kubernetes environments. Experience with Kubernetes admission controllers, vulnerability management, supply-chain security, network security, and use of mTLS and PKI to secure infrastructure. * Ability to design and implement security controls for Kubernetes, including strong knowledge of authorization models, admission controllers, and security best practices. * Understanding of modern Identity and Access Management (IAM) standards and technologies such as OAuth2/OIDC, SAML. * Proficiency in at least one modern programming/scripting language (e.g., Python or Go) for building security automation. * Experience writing and using Terraform. Desirable qualifications * Deep fundamental understanding of enterprise-level network security, operating system (Linux), Kubernetes, CI/CD, and application security principles. * Familiarity with compliance frameworks (e.g., SOX, SOC 2, ISO 27001). * Familiarity with machine identity frameworks like SPIFFE/SPIRE, mTLS or equivalent. ## Description The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone., Cloud security collaborates with infrastructure and application teams closely. The areas we cover are infrastructure security, workload security, and CI/CD hardening. Our team is dedicated to building resilient, automated systems at scale. We take a hybrid approach to our toolkit: we utilize the best of open-source (OPA, Trivy, Spire) and COTS products, while still writing custom code to automate workflows and harden our global digital integrity. You'll help us strike the perfect balance between leveraging existing solutions and building custom ones from the ground up. In this role you will * Secure Aurora's cloud environment in the areas of but not limited to: * Manage IAM roles and policies * Enforce security controls * Construct security boundaries for resources and services * Provide security guidance involving Cloud and Kubernetes Create automation to solve security problems at the root Design, build, and configure security infrastructure clouds such as like AWS, Azure, or Google Cloud Platform ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)