Kodiak Robotics is an autonomous trucking company developing self-driving heavy vehicles and commercial logistics operations.
<div class="content-intro"><p>Kodiak Robotics, Inc. was founded in 2018 and has become a leader in autonomous ground transportation committed to a safer and more efficient future for all. The company has developed an artificial intelligence (AI) powered technology stack purpose-built for commercial trucking and the public sector. The company delivers freight daily for its customers across the southern United States using its autonomous technology. In 2024, Kodiak became the first known company to publicly announce delivering a driverless semi-truck to a customer. Kodiak is also leveraging its commercial self-driving software to develop, test and deploy autonomous capabilities for the U.S. Department of Defense.</p></div><p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">We are seeking a highly skilled and proactive Senior Cloud Security Engineer to join our growing security team. In this role, you will be the primary architect and guardian of our central command and control center application environment, ensuring that our cloud-native platforms—and the data within them—remain secure against an evolving threat landscape.</span></p> <p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">The ideal candidate bridges the gap between traditional security engineering and modern DevOps, possessing a deep understanding of how to secure multi-tenant cloud environments without compromising agility.</span></p> <p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><strong>In this role, you will:</strong></span></p> <ul> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Scope, design, and build complex security systems end to end, maintaining them through production and driving through ambiguous technical challenges with minimal oversight</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Identify systematic risks through threat modeling and risk assessment, then build the controls and infrastructure that address them</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Enable other teams to build their own security solutions by providing design pattern guidance and expanding security ownership beyond the security team</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Developer security and supply chain</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Build and advance our developer security program by embedding security practices into the software development lifecycle and developer workflows</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Harden CI/CD pipelines against supply chain attacks through isolated build environments, signed attestations, dependency verification, and automated policy enforcement</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Identity and secrets management</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Architect systems that protect sensitive assets including model weights, customer data, and training datasets</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Build and operate credential issuance, rotation, and workload authentication across our multi-cloud environments</span></li> </ul> <p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><strong>Infrastructure security</strong></span></p> <ul> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Implement and maintain cloud security controls including IAM, network segmentation, VPC architecture, and encryption across our multi-cloud and on-prem environments</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Contribute to cluster security controls including RBAC policies, namespace isolation, workload identity, and pod security</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Contribute to continuous cloud security posture management using infrastructure-as-code scanning, misconfiguration detection, and automated remediation</span></li> </ul> <p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><strong>Secure frameworks</strong></span></p> <ul> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Build critical security foundations including cryptographic frameworks, mTLS infrastructure, secure serialization, and authorization systems, designed to prevent entire classes of vulnerabilities and empower engineering teams to work securely without becoming security experts themselves</span></li> <li style="font-family: helvetica, arial, sans-serif; font-size: 12pt;"><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt;">Partner with product, research, infrastructure, and other security teams to ensure frameworks integrate smoothly with lower-layer secu