Staff Security Engineer, Cybersecurity Operations
Cruise LLCAbout the role
We're Cruise, a self-driving service designed for the cities we love.
We’re building the world’s most advanced, self-driving vehicles to safely connect people to the places, things, and experiences they care about. We believe self-driving vehicles will help save lives, reshape cities, give back time in transit, and restore freedom of movement for many.
Cruisers have the opportunity to grow and develop while learning from leaders at the forefront of their fields. With a culture of internal mobility, there's an opportunity to thrive in a variety of disciplines. This is a place for dreamers and doers to succeed.
If you are looking to play a part in making a positive impact in the world by advancing the revolutionary work of self-driving cars, join us.
Cybersecurity Operations is a budding team within Detection & Response, the organization responsible for protecting Cruise and our customers from internal and external threats.
As the team’s Staff Security Engineer, you will partner closely with the Engineering Manager and play a key role in setting and driving the technical direction of the team. As the most senior engineer on the team, you will lead and mentor a small team of security engineers responsible for supporting a vast portfolio of internal and third-party solutions that are key to securing Cruise. They span cloud security, network traffic visibility, endpoint detection and response, email threat protection, data loss prevention, SOAR, and data lakes. In parallel, you will develop and lead new functions spanning threat intelligence, attacker deception, incident retrospective management, attack documentation and visualization, and digital forensics lab management.
Applicants should be excited to solve hard problems, employ their outstanding communication skills, and lead and mentor others. You should possess extensive experience deploying and maintaining security solutions as well as familiarity with incident response and/or digital forensics. You should stand out on your team as a top performer, innovator, and leader.
WHAT YOU’LL BE DOING:
Serve as the technical lead for a small team of engineers
Support Cruise’s ability to respond to threats by designing solutions, selecting technologies, deploying and implementing security products, and improving the configuration of existing toolsets
Automate manual tasks and processes with a heavy emphasis on repeatability, scalability, and auditability
Migrate legacy solutions and spearhead the architecture of new solutions with a cloud-native mindset
Partner with outside vendors to ensure that Threat Defense systems are resilient, hardened, optimally configured, and properly integrated as well as influence their product roadmap
Curate and manage a corpus of threat intelligence used to enrich detections, profile threats, and enable incident responders
Aggregate metrics (i.e. Mean Time to Detect, Mean Time to Contain, etc.) from incident response processes for the purposes of improving operation and developing the program
Evaluate the posture of Threat Defense and proactively identify opportunities to optimize and automate
Ensure modern engineering standards and concepts are adopted and followed, and the quality of the product offerings are at a high bar
Identify, build, and support relationships with key cross-functional partners within and outside of Security to foster a collaborative culture
Drive long-term planning and establish scalable processes for execution
Embody Cruise behaviors and values: Stay Safe, Own It, Stay Focused, Seek Truth, Work Together, Be a Customer, Be Humble
WHAT YOU MUST HAVE:
Moderate experience responding to incidents with varying degrees of severity and complexity
Recent and significant experience writing code (preferably, Python and/or Go) in a production environment, and the ability to pass a challenging coding interview
Experience with deployment, operations, and maintenance of open-source and commercial security tools across incident response, digital forensics, attacker deception, and/or threat intelligence programs
Hands-on experience and/or familiarity with DevOps and DevSecOps principles, concepts, and technologies (i.e. Docker, Kubernetes, Hashicorp, Datadog, Github, Chef, CI/CD, etc.)
Hands-on experience with major Cloud Service Providers (i.e. Azure, GCP, and AWS) and provisioning their services
Demonstrated history of mentoring junior engineers
Track record of shipping well-polished deliverables to senior management
BONUS POINTS!
Fluency in SQL for querying complex data sets
Experience with MITRE A
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s