Senior Cybersecurity Compliance Engineer
Position Overview
Job Description
Kodiak Robotics, Inc. was founded in 2018 and has become a leader in autonomous ground transportation committed to a safer and more efficient future for all. The company has developed an artificial intelligence (AI) powered technology stack purpose-built for commercial trucking and the public sector. The company delivers freight daily for its customers across the southern United States using its autonomous technology. In 2024, Kodiak became the first known company to publicly announce delivering a driverless semi-truck to a customer. Kodiak is also leveraging its commercial self-driving software to develop, test and deploy autonomous capabilities for the U.S. Department of Defense.
As a Senior Cybersecurity Compliance Engineer at Kodiak AI, you will work at the intersection of traditional IT security, embedded systems engineering, and rigorous international safety regulations. Unlike a general compliance role, this position requires a deep understanding of how software interacts with vehicle hardware to ensure public safety.
In this role, you will:
- Establish and maintain a Cybersecurity Management System (CSMS) to ensure the organization has appropriate security measures across development, production, and post-production.
- Manage security requirements and risk treatment for self-driving platform features throughout the entire product lifecycle (concept, development, operation, and incident response).
- Partner with Functional Safety teams to evaluate the overlap between cybersecurity (ISO 21434) and functional safety (ISO 26262) to mitigate physical safety implications of cyber threats.
- Drive compliance efforts across various security frameworks, encompassing both general IT and autonomous vehicle (AV) specific standards. This includes:
- NIST SP 800-171: Focusing on CMMC and Controlled Unclassified Information (CUI) security.
- NIST SP 800-53: Addressing SaaS security.
- SOC2: Ensuring customer data protection.
- ISO/SAE 21434: Leading initiatives for emerging road vehicle cybersecurity engineering standards.
- Support Kodiak’s management team by providing written and verbal responses to potential partners and customers.
- Design and audit security controls for our off-vehicle infrastructure, ensuring data integrity and end-to-end encryption.
- Conduct technical risk assessments of our hardware components and partners, ensuring every link in the supply chain meets our high security bar.
- Track remediation progress with owner teams, escalate blockers, and ensure clean issue closure
- Participate in incident investigations by gathering technical evidence and supporting impact analysis
- Maintain high-quality documentation, runbooks, and operational updates
- Identify process gaps and contribute practical workflow improvements that reduce manual toil
What you'll bring:
- 6+ years of relevant experience in cybersecurity, vulnerability management, security operations, application security, or related security engineering
- 3+ years in Autonomous Vehicles, Aerospace, or Robotics.
- Deep familiarity with the NHTSA AV Framework and experience applying SOC2 or ISO 27001 to safety-critical hardware/software environments.
- Ability to work with C++ or Python for security scripting and experience with cloud-native security tools (AWS/GCP).
- Understanding of embedded systems security and how to protect safety-critical functions from external communication ports.
- Strong understanding of vulnerability assessment fundamentals (CVSS, exploitability, risk prioritization, remediation tradeoffs)
- Strong written and verbal communication skills for cross-functional collaboration
- Demonstrated execution ownership in operational security work
Bonus Points for:
- Exposure to security automation/SOAR platforms (for example Tines, Splunk SOAR, or equivalent)
- Experience with container/Kubernetes vulnerability workflows
- Familiarity with hardware-adjacent vulnerability domains (GPU/DPU firmware, BMC/IPMI)
- Experience supporting compliance evidence...
Perks & Benefits
About This Role
Kodiak Robotics is seeking a Senior Cybersecurity Compliance Engineer to join their Compliance team at the Senior level. This is a Full time, Onsite position based in Mountain View, United States.
Interested candidates are encouraged to review the full job description above and apply through LegalAlphabet to be considered for this opportunity.
Practice Area
Compliance
Position
Senior
Applicant Location Requirements
Applicants must be located in: US
Application Contact
Contact: Kodiak Robotics Hiring Team
Application Deadline
June 26, 2026
Employment Type
Full time