Aurora innovation

Identity Access Management Architect

Pittsburgh, Pennsylvania Full Time

Who we are

Aurora’s mission is to deliver the benefits of self-driving technology safely, quickly, and broadly.


The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future to everyone.

 

At Aurora, you will tackle massively complex problems alongside other passionate, intelligent individuals, growing as an expert while expanding your knowledge. For the latest news from Aurora, visit aurora.tech or follow us on LinkedIn.

 

Reporting directly to the Head of Cloud Security, you will serve as the IAM Architect across our workforce, customer, and partner domains. We’ve moved past the basics; our stack is built on Zero Trust principles, featuring SPIRE, Open Policy Agent (OPA), and a custom-built group management engine. We need a leader who can navigate the space between high-level strategy and deep-stack execution. 

You will own the full IAM lifecycle, evolving our existing infrastructure into a scalable, modern ecosystem that serves as a competitive advantage for our operations.

In this role you will

  • Develop and champion the target-state IAM architecture and roadmap, ensuring alignment with overall business strategy and security requirements.
  • Lead the evaluation, selection, and deployment of new IAM products and technologies (IGA, PAM, AM, Directory Services).
  • Define and govern IAM policies, standards, and procedures with cloud first infrastructure.
  • Provide architectural guidance for complex access control models, role engineering, and segregation of duties (SoD) enforcement.
  • Architect solutions for Federation/SSO, ensuring secure and seamless access for partners and customers.
  • A deep understanding of access models such as RBAC, ABAC, PBAC.

Required qualifications

  • 10+ years of progressive experience in Information Security, with at least 4 years focused on architecting and implementing IAM solutions in a large enterprise environment.
  • Expert-level knowledge of at least one major Cloud Identity Provider (e.g., Azure, AWS IAM) and/or a major Customer Identity and Access Management (CIAM) platform.
  • Deep understanding of core IAM protocols: SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, and LDAP.
  • Technical Skills (must have experience in at least some of the following areas):
  • Identity Governance and Administration (IGA): SailPoint, Saviynt, Conductor One, or similar.
  • Privileged Access Management (PAM): CyberArk, HashiCorp Vault, Delinea, or similar.
  • Multi-Factor Authentication (MFA): FIDO2/WebAuthn, biometric solutions, or platform-native MFA tools.
  • API Security: Protecting APIs using OAuth scopes and claims.

Soft Skills: Strong analytical, problem-solving, and communication skills. Ability to create clear, concise documentation (architecture diagrams, design documents).

Desirable qualifications 

  • Proven ability to lead complex IAM solutions from concept to production. 
  • Ability to influence and collaborate with other areas of the business.

The base salary range for this position is  $191,000 - $277,000 per Year. Aurora’s pay ranges are determined by role, level, and location. Within the range, the successful candidate’s starting base pay will be determined based on factors including job-related skills, experience, qualifications, relevant education or training, and market conditions. These ranges may be modified in the future. The successful candidate will also be eligible for an annual bonus, equity compensation, and benefits.

Working at Aurora
At Aurora, we bring together extraordinarily talented and experienced people united by the strength of our values. We operate with integrity, set outrageous goals, and build a culture where we win together — all without any jerks.

We believe in-person work increases collaboration, empathy and our ability to lead effectively. As a result, we operate in a hybrid work environment where Aurorans are in office at least 3 days per week.

Our Careers page provides insight into what it is like to work at Aurora, and you can find all the latest updates in our Newsroom.

Our commitment to safety

At the core of everything we do is our commitment to safety. Building best-in-class self-driving technology will take time, and we believe that each employee at Aurora has a role in contributing to safety, every step of the way. Aurora expects commitment to our safety policies from every employee, and seeks candidates who take an active responsibility, can contribute to building an atmosphere of trust, and invest in the organization’s long-term success by prioritizing working safely, no matter what.

Our commitment to inclusion

Aurora considers candidates without regard to their race, color, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, pregnancy status, parent or caregiver status, ancestry, political affiliation, veteran and/or military status, physical or mental disability, or any other status protected by federal or state law. Aurora considers qualified applicants with criminal histories, consistent with applicable federal, state, and local law. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at careersiteaccommodations@aurora.tech

For California applicants, information collected and processed as part of your application and any job applications you choose to submit is subject to Aurora’s California Employment Privacy Policy.