About Druva You won’t just join a company at Druva, you’ll help shape the future of data security at the moment it matters most. We are building a modern standard with our cloud-native solutions, designed to simplify the toughest challenges in cyber resilience for our customers. As the pioneer and market leader in fully managed SaaS data protection, we help organizations secure and recover their data from ransomware, cyberattacks, and operational disruptions without the complexity, cost, or risk of legacy infrastructure
Our momentum is backed by the market: Druva was named a Leader in the 2025 Gartner® Magic Quadrant™ for Backup and Data Protection Platforms, a Leader in the 2025 IDC MarketScape for Cyber-Recovery, and a Leader & Outperformer in the 2025 GigaOm Cloud Data Protection Radar. Even better, customers validate that leadership every day through strong Gartner Peer Insights ratings, standout Net Promoter Scores (NPS), and top willingness-to-recommend results
Visit druva.com and follow us on LinkedIn , X and Facebook
Summary:- The Staff Technical Security Analyst, Security Assurance will be responsible for all activities directed at building trust and confidence in Druva’s data security, privacy, and compliance posture with prospects and customers
Additionally, they will be responsible for Druva’s Third-Party Risk Management program and drive execution and improvement in Druva’s security culture improvement initiatives around phishing and security awareness
Preferred Qualifications/Skills:- Exceptional communication skills, critical thinking ability and strong bias for ownership & learning Working protocol level understanding of At-Rest and In-Motion Encryption fundamentals (TLS/SSL, BCrypt, PKI, SHA1, AES etc) and Key Management principles Demostrable knowledge of MITRE ATT@CK framework, OWASP Top-10 Web Application Vulnerabilities and related risks and countermeasures Knowledge of AWS, Azure services and security controls native to them Technical Understanding of SaaS Multi-tenant architectures Knowledge of technical domains such as network security, cloud security & application security Ability to threat model and assess security risk of interconnected systems and data flows Background in or strong understanding of security compliance and Privacy frameworks (SOC 2, ISO27001, HIPPA, CSA STAR, NIST 800-53, NIST CSF), tools to develop SBOM and information gathering frameworks like SIG and CAIQ Proven experience collaborating with sales, legal and engineering teams At least 10 years of experience in a