Cloud Security Engineer
Job description
The Cloud Security Engineer secures Duro's platform for hardware engineering teams, owning cloud security posture, threat hunting, and infrastructure across commercial and GovCloud environments. This hybrid role reports to the CISO organization and partners with platform engineering and product to build scalable, automated defenses.
Hard requirements
- 5+ years of hands-on experience in security engineering, cloud security, or DevSecOps with production ownership
- Bachelor's degree in Computer Science or related field (or equivalent practical experience)
- Deep AWS security expertise including IAM, KMS, VPC, GuardDuty, Security Hub, CloudTrail, Config, and WAF across commercial and GovCloud
- Demonstrated experience in threat detection and hunting across cloud, application, and identity telemetry
- Experience operationalizing threat intelligence to drive proactive defense
- Strong background in logging, monitoring, and security reporting including SIEM design and administration
- Experience implementing security infrastructure such as CSPM, vulnerability management, and secrets management
- Application and pipeline security experience securing CI/CD (GitHub Actions), SAST/DAST/SCA, and Kubernetes workloads
- Infrastructure-as-code proficiency with Terraform and containerization tools like Docker
- Adversarial mindset, strong systems thinking, and excellent communication skills
Pay & benefits
- Expected annual pay range of $150,000-$160,000
- Eligible for bonus opportunities
- Full range of elective benefits including medical, dental, vision, HSA, FSA, commuter benefits, life insurance, AD&D, and pet insurance
- Company-paid life insurance, AD&D, LTD, short term medical benefits, paid sick time, paid holidays, and accrued paid vacation
Work format
- Hybrid role based in Los Angeles, CA (3 days per week in office)
- Full-time employment
Work location