Senior Staff Cloud Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Druva · 7 hours ago

Senior Staff Cloud Security Engineer

Druva is the leading provider of data security solutions, empowering customers to secure and recover their data from all threats. As a Staff Cloud Security Engineer, you'll spearhead securing Druva’s cloud infrastructure, leveraging your expertise in AWS and Azure to enhance security measures and mitigate threats.

Cloud Data ServicesCloud SecurityComplianceData ManagementData StorageEnterprise SoftwareSaaSSoftware
check
H1B Sponsor Likelynote

Responsibilities

Practitioner of modern cloud security (AWS, Azure), adept at Evaluating, designing and implementing secure cloud architectures/services. Define security design/requirements, and recommend hardened architectures, controls, and secure configurations
Demonstrate expertise in cloud-native security tools (e.g., AWS Security Hub, Azure Security Center) and cloud control/data plane services (CloudTrail, IAM, KMS, VPC, S3, WAF, API Gateway, Route 53, etc.)
Closely work with Ops (Cloud & Dev), Cyber Defense to integrate security controls into Cloud CI/CD, IaC, administration and response processes - enhancing detection, automation, and compliance
Institute and enforce cloud security policies, ensuring regulatory and industry compliance. champion enterprise-wide adoption of best practices and frameworks (SOC2, ISO 27001, NIST) across cloud environments
Lead identification, triage, and mitigation of security vulnerabilities/issues (AWS, Azure, GCP). Triage threats, liaise with business teams, and escalate for swift remediation
Perform security assessments of dynamic cloud environments, mitigating risk, exposures and misconfigurations. Work with stakeholders to implement automated, pragmatic controls, delivering business-aligned, risk-balanced solutions
Define and enforce cloud security baselines, protocols for lower-tier environments, continuously monitor the AWS threat landscape and deploy proactive countermeasures; advise teams on secure AWS usage and threat-mitigation strategies

Qualification

AWS cloud securityAzure cloud securityCloud-native security toolsZero trust principlesVulnerability management toolsLinux/Unix systemsContainer securityCloud security certificationsAnalytical skillsAutomation & scriptingCollaboration skillsProblem-solving skills

Required

Practitioner of modern cloud security (AWS, Azure), adept at Evaluating, designing and implementing secure cloud architectures/services
Define security design/requirements, and recommend hardened architectures, controls, and secure configurations
Demonstrate expertise in cloud-native security tools (e.g., AWS Security Hub, Azure Security Center) and cloud control/data plane services (CloudTrail, IAM, KMS, VPC, S3, WAF, API Gateway, Route 53, etc.)
Closely work with Ops (Cloud & Dev), Cyber Defense to integrate security controls into Cloud CI/CD, IaC, administration and response processes - enhancing detection, automation, and compliance
Institute and enforce cloud security policies, ensuring regulatory and industry compliance
Champion enterprise-wide adoption of best practices and frameworks (SOC2, ISO 27001, NIST) across cloud environments
Lead identification, triage, and mitigation of security vulnerabilities/issues (AWS, Azure, GCP)
Triage threats, liaise with business teams, and escalate for swift remediation
Perform security assessments of dynamic cloud environments, mitigating risk, exposures and misconfigurations
Work with stakeholders to implement automated, pragmatic controls, delivering business-aligned, risk-balanced solutions
Define and enforce cloud security baselines, protocols for lower-tier environments, continuously monitor the AWS threat landscape and deploy proactive countermeasures
Advise teams on secure AWS usage and threat-mitigation strategies

Preferred

8+ years experience in cloud and systems security for medium/large enterprises
Bachelor's degree in computer science/Engineering or equivalent practical experience
Ability in threat modeling hybrid cloud from an adversarial lens to drive risk prioritization
Strong knowledge of defense-in-depth, attack vectors, web/network protocols, cryptography, security operations, cloud attacker tools/TTP and emerging security intelligence
Proven use of CNAAP/CSPM and vulnerability management tools (Wiz, Prisma, Tenable) and security frameworks (CVE, CVSS, CWE, CIS, SANS, MITRE ATT&CK)
Proficient in zero trust principles and IAM/SSO technologies (AWS Identity center, Entra ID /Okta, OAuth, SAML)
Hands-on experience in Linux/Unix systems, container security (Docker, Kubernetes) and serverless computing
Skilled in securing cloud-native apps, serverless architectures, containers, microservices, and APIs
Excellent analytical, collaboration, problem-solving and Automation & Scripting (Bash, PowerShell, Python) skills
Cloud security certs like AWS Security Specialty, Azure Security Engineer, and CCSP/CCSK

Benefits

Health and wellness benefits
401(k) retirement plan
Life and disability insurance coverages
Other benefits the Company may offer from time to time

Company

Druva delivers a SaaS-based platform to protect and manage enterprise data across endpoint, data center and cloud workloads.

H1B Sponsorship

Druva has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (15)
2024 (10)
2023 (12)
2022 (6)
2021 (12)
2020 (1)

Funding

Current Stage
Late Stage
Total Funding
$475M
Key Investors
La CaisseViking Global InvestorsRiverwood Capital
2021-04-19Series H· $147M
2019-06-19Series G· $130M
2017-08-22Series F· $80M

Leadership Team

leader-logo
Jaspreet Singh
Founder & CEO
linkedin
leader-logo
Colin Born
SVP, Corporate Development & IR
linkedin
Company data provided by crunchbase