> Markdown version of [/jobs/ext/221485-duo-security-engineer](https://www.wearedevelopers.com/jobs/ext/221485-duo-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Duo Security Engineer - **Company:** OpenKyber LLC - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Architectural Patterns, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Database Security, Information Systems Security Architecture Professional, Key Management, Open Web Application Security, Azure Active Directory, Zero Trust Network Access, Azure Machine Learning, Data Logging, Retrieval-Augmented Generation, Large Language Models, AI Platforms, Deployment Automation, Bicep, Virtual Agents, Terraform, Vulnerability Analysis - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b7acd3eceb4c16db ## About the Role * Architectural & Technical Skills 5+ years in Cloud Security/Architecture with deep hands-on Azure platform experience. * AI Specialization: Hands-on experience with Azure AI Services, Azure OpenAI, and Azure AI Foundry (or similar platforms like AWS SageMaker). * Modern Identity: Expert-level understanding of Microsoft Entra ID, Service Principals, and Managed Identity in a complex enterprise environment. * Emerging Protocols: Deep familiarity with Model Context Protocol (MCP) and its implications for data isolation and session security. * GenAI/LLM Expertise: Strong grasp of RAG (Retrieval-Augmented Generation) patterns and vector database security. Security Implementation & Strategy * Zero Trust: Proven track record of implementing Zero Trust controls in financial services or cloud-native environments. * Automation: Experience with Infrastructure as Code (Terraform, Bicep) to codify security guardrails. * Threat Assessment: Familiarity with the OWASP Top 10 for LLMs and AI-specific vulnerability scanning. Preferred Qualifications: * Certifications: Azure Security Engineer Associate, Azure AI Engineer Associate, or CISSP/CCSP. ## Description Reporting to the Director of Security in Global Security organization, you will research security controls, validate emerging architectural patterns, and define the governance standards for M365 Copilot Agents and autonomous agents built on Azure AI Foundry. Primary Responsibilities: * Technology Evaluation & Security Architecture Emerging Tech Research: Proactively evaluate new AI tools, frameworks, and LLM providers to assess their security posture and suitability for a highly regulated investment environment. * Architectural Design: Design and validate secure architectural patterns for AI agent integration within the organization's ecosystem, ensuring data privacy and IP protection. * Threat Modeling: Conduct deep-dive analysis of AI-specific threats (prompt injection, model inversion, data poisoning) and architect systemic mitigations. * Platform Assessment: Evaluate the security capabilities of Azure AI Foundry, M365 Copilot Studio, and the Microsoft Graph API against the organization's compliance standards. * MCP Specialization: Assess Model Context Protocol (MCP) security best practices, designing isolation strategies for context management. * As a security architect, assist with evaluations of other technologies being evaluated with via our Enterprise Architecture Review Board Technical Implementation & Validation Hardening & Standards: Create hardening checklists and configuration standards for AI platforms that bridge the gap between innovation and rigorous risk management. * Identity & Integration: Test and document sophisticated integration approaches with Azure Key Vault, Entra ID, and Managed Identities. * Security Telemetry: Implement advanced logging, auditing, and monitoring for AI agent telemetry to ensure visibility into autonomous actions. Governance & Standards Development * Design Principles : Lead the creation of the organization's AI Agent Security Design Principles document. * Policy Authoring: Working with various teams assist in developing technical sections of governance policies that address the risks of emerging AI technologies and autonomous workflows. * CI/CD Integration: Identify and bridge control gaps in existing CI/CD pipelines to support secure, automated AI deployments. * Stakeholder Collaboration: Translate complex security architectures into actionable implementation guides for developers and investment tech teams. ## Related Videos - [This App Reached 10,000 Users in One Week. Here's How.](https://www.wearedevelopers.com/videos/100329-this-app-reached-10-000-users-in-one-week-here-s-how) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From AI Assistance to Agentic Systems: Scaling Sovereign AI in Banking](https://www.wearedevelopers.com/videos/100070-from-ai-assistance-to-agentic-systems-scaling-sovereign-ai-in-banking) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)