Senior Product Security Engineer
Job description
About the role
Zoox is building autonomous transportation, and this role sits on the Product Security Threat Analysis and Security Standards team. The team conducts structured security analyses of Zoox products and applies security standards thoughtfully throughout the System Development Life Cycle. As a Senior Product Security Engineer, you bring a strong background in systems engineering, combined with real expertise in cybersecurity. You translate complex analysis into high-quality written deliverables, and you identify and evaluate threats across both wireless and wired communication channels in automotive systems. The work is hands-on, technical, and critical to the safe operation of self-driving vehicles, so you need to reason carefully about systems, document your findings well, and communicate effectively with engineers who act on your recommendations. Because autonomous vehicles depend on many connected systems working together, the team's analysis spans the vehicle platform, its communications, and the services around it. The role suits someone who likes to reason about how systems fail and how standards can prevent that, and who enjoys writing the kind of documents that engineers actually read and act on. You will also have the chance to shape how security is considered from the earliest stages of product design.
Key facts
What you'll do
You will perform in-depth threat modeling and security analysis for autonomous vehicle features, ensuring risks are identified and documented before they reach production. You will evaluate vehicle communication architectures, assessing both wired and wireless channels for potential attack vectors and systemic weaknesses. You will create clear, actionable security deliverables that guide engineering decisions and ensure alignment with industry best practices. You will interpret evolving security standards and map their requirements to Zoox product development activities. You will collaborate with cross-functional engineering teams to integrate security controls throughout the vehicle stack. You will support vulnerability assessments and help define test cases that validate the effectiveness of implemented mitigations. You will track security-relevant design decisions and articulate trade-offs to both technical and executive audiences. You will contribute to the refinement of internal security processes and templates used across multiple product initiatives.
Requirements
You must have a strong background in systems engineering with a focus on real-world cybersecurity challenges in connected environments. You must possess experience with automotive security standards such as ISO 21434 and understand how they apply throughout the product lifecycle. You must have a demonstrated background in embedded systems security and the ability to analyze hardware and software interactions. You must be familiar with structured threat modeling methodologies and be able to apply them to complex, multi-component systems. You must have experience in the autonomous vehicle or robotics industry, showing awareness of the unique safety and security constraints in these domains. You must be proficient in producing high-quality written technical documentation that translates analysis into clear recommendations. You must be able to work effectively with engineers, product managers, and other stakeholders to drive security outcomes. You must be comfortable operating in a fast-paced environment where priorities can shift as new risks and technologies emerge.
Nice to have
Experience with specific automotive communication protocols and their security implications.
Knowledge of secure development practices for safety-critical systems.
Background in formal methods or static analysis tools relevant to security.
Familiarity with regulatory and compliance frameworks affecting autonomous vehicles.
Practical notes
- Based in Foster City, California, in the heart of the Bay Area.
- This is a technical security role, not an operations position.
- The posting does not list a salary range.
- The team owns threat analysis and security standards across the product line.
- You will work closely with vehicle, hardware, and software teams.
- Written analysis is a core part of the role, so clear documentation matters.
Project highlights
- Work directly on security for self-driving vehicle platforms.
- Influence security standards used across product development.
- Investigate threats across the full range of vehicle communication channels.
- Help shape safety-critical decisions in a pioneering industry.
- Collaborate with engineering teams in autonomous mobility.
- Contribute to security decisions that span hardware, software, and connectivity.
Why you should apply
- You will work on some of the most complex security challenges in transportation.
- The role combines systems engineering, security, and deep technical writing.
- Zoox is at the forefront of autonomous vehicle development.
- You will have real influence over product security standards.
- The work matters directly to safety on the road.
About the company
Zoox is building the world's most advanced self-driving hardware and software solution. The efficiency demands of such a system require an expert fine tuning of both the compute hardware architecture as well as the algorithms and middleware that runs on it to achieve maximum throughput at the most optimal power levels.