Cybersecurity Engineer
KAPTURE CXBengaluru, KA, IndiaAugust 11, 2026
On-site
Full-time
Security Engineering
Mid · 3–8 yrs
About Kapture CX
Kapture CX is an enterprise Customer Experience platform powering AI, Voicebots, Chatbots, Agent Assist, AutoQA, Analytics and Agentic AI solutions for leading enterprises.
We are looking for a hands-on Cybersecurity Engineer to strengthen security across our cloud infrastructure, applications, data platforms and AI systems.
What You Will Do
- Own and improve security across our GCP cloud infrastructure, applications, APIs, networks and databases.
- Identify security vulnerabilities across cloud, application, infrastructure and third-party dependencies and drive them to resolution.
- Conduct security reviews, threat modeling and architecture reviews for new products and major engineering initiatives.
- Implement and manage SAST, DAST, SCA, container scanning and secret scanning as part of CI/CD.
- Strengthen IAM, least-privilege access, service accounts, secrets and production access controls.
- Review and secure APIs, microservices and web applications against vulnerabilities such as SQL Injection, XSS, SSRF, authentication/authorization issues and data leakage.
- Monitor security events across cloud, network and application logs and participate in incident detection, investigation, containment and RCA.
- Improve network security through VPC, firewall, ingress/egress and network segmentation controls.
- Establish security controls for PII, encryption, data access, retention and secure data handling.
- Build security automation using Python, Java, Go or similar technologies to reduce manual security processes.
- Work closely with Engineering, DevOps/SRE and ML teams to embed DevSecOps practices into the development lifecycle.
- Assess security risks associated with LLMs, AI agents, MCP/tools, prompt injection, data leakage and unauthorized tool access.
- Support enterprise security assessments and compliance requirements such as ISO 27001, SOC 2 and DPDP.
What We Are Looking For
- 3–8 years of hands-on experience in Cybersecurity, Application Security, Cloud Security or DevSecOps.
- Strong understanding of OWASP Top 10 and API Security.
- Hands-on experience with GCP or another major cloud platform.
- Good understanding of IAM, networking, Linux, TLS/HTTPS, APIs and databases.
- Experience with security tools such as Burp Suite, SAST/DAST, dependency scanning, vulnerability scanners and SIEM/logging platforms.
- Experience integrating security controls into CI/CD pipelines.
- Strong scripting/programming skills in Python, Java, Go or Bash.
- Ability to understand application architecture and work directly with developers to fix security issues.
- Strong analytical and problem-solving skills.
Good to Have
- Experience with Kubernetes, Docker and Terraform.
- Experience with penetration testing and vulnerability management.
- Experience with GCP security services and security posture management.
- Knowledge of SOC 2 / ISO 27001 / DPDP.
- Experience securing AI/LLM/Agentic AI applications.
- Security certifications such as OSCP, CISSP, CISM or equivalent.
What We Value
We are looking for an engineer who can find vulnerabilities, understand their impact, build the right security controls and work with engineering teams to fix them.
This is a hands-on engineering role not just a compliance, audit or reporting role.
Job Details
Experience
Mid · 3–8 yrs
Tools & Tech
Bash
Burp Suite
Docker
GCP
Go
Java
Kubernetes
Linux
Python
SQL
Terraform
Preferred Certs
CISM
CISSP
OSCP