Druva is the leading provider of data security solutions, empowering customers to secure and recover their data from all threats. The Druva Data Security Cloud is a fully managed SaaS solution offering air-gapped and immutable data protection across cloud, on-premises, and edge environments. By centralizing data protection, Druva enhances traditional security measures and enables faster incident response, effective cyber remediation, and robust data governance. Trusted by nearly 7,500 customers, including 75 of the Fortune 500, Druva safeguards business data in an increasingly interconnected world. Visit druva.com and follow us on LinkedIn, X and Facebook.
About The Role
As a Staff Security Engineer, you'll spearhead securing Druva’s cloud infrastructure across its lifecycle. Leveraging deep expertise in AWS, Azure cloud security (network, systems, app, identities), you’ll lead initiatives to harden environments, detect threats, and embed security best practices. You’ll drive secure architecture, enforce controls, and collaborate cross-functionally to engineer resilient, secure systems aligned with business needs. This role requires a strategic, resilient team player with strong security acumen and a collaborative mindset.
Essential Responsibilities
- Practitioner of modern cloud security (AWS, Azure), adept at Evaluating, designing and implementing secure cloud architectures/services. Define security design/requirements, and recommend hardened architectures, controls, and secure configurations.
- Demonstrate expertise in cloud-native security tools (e.g., AWS Security Hub, Azure Security Center) and cloud control/data plane services (CloudTrail, IAM, KMS, VPC, S3, WAF, API Gateway, Route 53, etc.).
- Closely work with Ops (Cloud & Dev), Cyber Defense to integrate security controls into Cloud CI/CD, IaC, administration and response processes - enhancing detection, automation, and compliance.
- Institute and enforce cloud security policies, ensuring regulatory and industry compliance. champion enterprise-wide adoption of best practices and frameworks (SOC2, ISO 27001, NIST) across cloud environments.
- Lead identification, triage, and mitigation of security vulnerabilities/issues (AWS, Azure, GCP). Triage threats, liaise with business teams, and escalate for swift remediation.
- Perform security assessments of dynamic cloud environments, mitigating risk, exposures and misconfigurations. Work with stakeholders to implement automated, pragmatic controls, delivering business-aligned, risk-balanced solutions.
- Define and enforce cloud security baselines, protocols for lower-tier environments, continuously monitor the AWS threat landscape and deploy proactive countermeasures; advise teams on secure AWS usage and threat-mitigation strategies.
Skills And Preferred Qualifications
- 8+ years experience in cloud and systems security for medium/large enterprises. Bachelor's degree in computer science/Engineering or equivalent practical experience.
- Ability in threat modeling hybrid cloud from an adversarial lens to drive risk prioritization. Strong knowledge of defense-in-depth, attack vectors, web/network protocols, cryptography, security operations, cloud attacker tools/TTP and emerging security intelligence.
- Proven use of CNAAP/CSPM and vulnerability management tools (Wiz, Prisma,Tenable) and security frameworks (CVE, CVSS, CWE, CIS, SANS, MITRE ATT&CK)
- Proficient in zero trust principles and IAM/SSO technologies (AWS Identity center, Entra ID /Okta, OAuth, SAML).
- Hands-on experience in Linux/Unix systems, container security (Docker, Kubernetes) and serverless computing. Skilled in securing cloud-native apps, serverless architectures, containers, microservices, and APIs.
- Excellent analytical, collaboration, problem-solving and Automation & Scripting (Bash, PowerShell, Python) skills.
- Cloud security certs like AWS Security Specialty, Azure Security Engineer, and CCSP/CCSK.
The pay range for this position is expected to be between $162,000 and $227,333/year; however, base pay offered may vary depending on multiple individualized, non-discriminatory factors, including market location, job-related knowledge, skills, and experience. The total compensation package for this position may also include other incentive compensation opportunities in the form of discretionary annual bonus or commissions, and equity. Additionally, full-time employees are eligible to participate in our comprehensive benefits program, including health and wellness benefits, 401(k) retirement plan, life and disability insurance coverages, and other benefits the Company may offer from time to time.
Seniority level
Seniority level
Mid-Senior level
Employment type
Job function
Job function
Information TechnologyIndustries
Software Development
Referrals increase your chances of interviewing at Druva by 2x
Sign in to set job alerts for “Information Security Engineer” roles.
San Francisco Bay Area $85,000.00-$100,000.00 3 weeks ago
Mountain View, CA $80.09-$90.09 11 hours ago
Sunnyvale, CA $120,000.00-$140,000.00 4 months ago
Req:: Cyber Security Engineer_ Palo Alto/ Irvine, CA (Hybrid) _ W2 Only
Cyber Security (Data Protection Engineer)
Cybersecurity Analyst/Information Systems Security Officer (ISSO)
Sunnyvale, CA $124,000.00-$178,000.00 19 hours ago
SOC Security Engineer (FedRamp - US cit required) - InfoSec
San Jose, CA $152,500.00-$262,350.00 1 day ago
Senior Security Engineer- Network Security
Sunnyvale, CA $229,000.00-$254,000.00 1 day ago
Palo Alto, CA $135,000.00-$200,000.00 1 year ago
San Mateo, CA $218,540.00-$283,780.00 1 week ago
Senior Offensive Security Engineer (InfoSec)
Cyber Security Engineer/Scientist (Ph.D.)
Menlo Park, CA $195,000.00-$270,400.00 2 weeks ago
San Jose, CA $187,040.00-$280,000.00 5 days ago
Sr Staff Engineer Software (Network Security - SASE)
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.