×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Staff Security Engineer, Cloud

Job in Palo Alto, Santa Clara County, California, 94306, USA
Listing for: ALSO.
Full Time position
Listed on 2026-08-18
Job specializations:
  • Security
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 205000 - 240000 USD Yearly USD 205000.00 240000.00 YEAR
Job Description & How to Apply Below

About ALSO.We’re ALSO, an electric mobility company originally conceived as a part of Rivian. We’re a passionate team of builders, dreamers, doers and innovators, focused on creating entirely new (not to mention, innovative and delightful) vertically integrated, small EVs designed to meet the global mobility challenges of today and tomorrow. Our mission is to inspire everyone to ride ALSO—replacing many local car, truck and SUV miles with ones on vehicles that are more affordable, more enjoyable and 10-50x more efficient.

About ALSO.We’re ALSO, an electric mobility company originally conceived as a part of Rivian. We’re a passionate team of builders, dreamers, doers and innovators, focused on creating entirely new (not to mention, innovative and delightful) vertically integrated, small EVs designed to meet the global mobility challenges of today and tomorrow. Our mission is to inspire everyone to ride ALSO—replacing many local car, truck and SUV miles with ones on vehicles that are more affordable, more enjoyable and 10-50x more efficient.

At ALSO, we are looking for a Staff Security Engineer for Cloud who wants to own security end to end — not advise on it, build it — for a connected, software-defined EV platform where nearly everything of value runs through the cloud: telemetry streaming in from vehicles in the field, remote diagnostics and updates, fleet intelligence, and the product APIs customers touch every day.

You'd set the security architecture and then build it yourself, in Go, alongside the backend team — equally comfortable writing a threat model, reviewing a Kubernetes admission policy, and shipping the service that enforces it. You'd be the person the company turns to for every question that starts with "is this secure," with the autonomy to actually answer it properly rather than just flag the risk and move on.

What

You'll Do
  • Own cloud security end to end — strategy, architecture, implementation, and operations across AWS, Kubernetes, and our microservices platform — including threat modeling new systems in architecture reviews before the code exists
  • Design and implement identity and access at scale: workload identity, org-wide IAM, least privilege by default, secrets management, and certificate/key lifecycle, including mutual TLS between services and between cloud and vehicle
  • Harden containers and orchestration: image provenance, admission control, runtime and network policy, service mesh configuration, and clean isolation across microservices
  • Secure the software supply chain: SBOM generation, dependency and image scanning, signed artifacts, and CI/CD pipelines that fail closed on what matters and stay quiet on what doesn’t
  • Build the controls in Go — authorization services, policy enforcement, provisioning and rotation tooling — and serve as the Dev Sec Ops  function, writing guardrails and policy as code so other engineers move fast without routing every decision through security
  • Run detection and response: security logging and telemetry, meaningful alerting, runbooks, on-call for security incidents, and blameless postmortems that produce real fixes
  • Secure the vehicle-to-cloud boundary: device identity and provisioning, fleet-wide certificate rotation, secure OTA update paths, and anomaly and tamper detection at scale
  • Contribute to core backend work alongside the team, and own assurance — penetration tests, vulnerability management, evidence collection, and proportionate standards work that strengthens the product instead of slowing it down
What You'll Bring
  • 10+ years in backend and infrastructure engineering, with a substantial portion spent owning security in production
  • Expert, hands-on AWS: IAM, VPC and network design, KMS, Secrets Manager, Guard Duty, Security Hub, Cloud Trail, Config, and org-level guardrails (SCPs), alongside core compute and data services (EKS, ECS, ECR, Lambda, DynamoDB, S3)
  • Deep Kubernetes and container security — RBAC, admission controllers, pod security standards, network policy, secrets handling, runtime detection, and image hardening — with real experience operating clusters, not just reading about them
  • Fast, fluent Go: you design, review, and ship production…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary