
Job Description
Ovii's Interpretation of the Role
Kapture is seeking a hands‑on Cybersecurity Engineer to protect its cloud‑based CX platform, AI services and data assets. The role focuses on securing GCP infrastructure, applications, APIs and networks while embedding DevSecOps practices across the development lifecycle.
Role Snapshot
- Secure cloud infrastructure and services
- Implement DevSecOps automation
- Conduct threat modeling and security reviews
- Monitor and respond to security incidents
- Collaborate with engineering, SRE and ML teams
- Ensure compliance with ISO 27001, SOC 2, DPDP
Must-Have Requirements
- GCP (or major cloud) security
- OWASP Top 10 & API security knowledge
- Security scanning tools (SAST, DAST, SCA, container & secret scanning)
- CI/CD security integration
- Programming/scripting in Python, Java, Go, Bash
- IAM, networking, Linux, TLS/HTTPS, APIs, databases
- Cybersecurity
- Application Security
- Cloud Security
- DevSecOps
Nice-to-Have Signals
- Kubernetes, Docker, Terraform
- Penetration testing & vulnerability management
- GCP security services & posture management
- Security certifications (OSCP, CISSP, CISM)
- Security for AI/LLM applications
- Kubernetes/Docker/Terraform
- Penetration testing
- AI/LLM security
- Security certifications
- OSCP
- CISSP
- CISM
Work Setup
- Location: Bengaluru, India
- Work mode: ONSITE
- Employment type: Full-Time
Not Specified in JD
- Visa sponsorship
- Salary range
- Remote eligibility
- Education requirement
- Certifications (required)
- Relocation
- Notice period
- Travel
- Security clearance
- Coding test
- Portfolio
- GitHub
- Writing sample
- Cover letter
What You'll Likely Work On
- Design and enforce security controls across GCP services, APIs, networks and databases
- Integrate SAST, DAST, SCA and secret scanning into CI/CD pipelines
- Perform threat modeling, architecture reviews and vulnerability remediation for new products
- Develop automation scripts in Python, Java, Go or Bash to streamline security processes
- Monitor security events, investigate incidents and lead root‑cause analysis
- Implement IAM policies, network segmentation and data‑protection measures
- Support compliance audits for ISO 27001, SOC 2 and DPDP
Good Fit If You Have
- Enjoys hands‑on problem solving and building security tooling
- Comfortable collaborating with developers, DevOps/SRE and ML teams
- Strong analytical mindset for threat analysis and incident response
Skills
- GCP (or major cloud) security
- Application security (OWASP Top 10, API security)
- Security scanning tools (SAST, DAST, SCA, container & secret scanning)
- CI/CD security integration
- Programming/scripting (Python, Java, Go, Bash)
- IAM & least‑privilege access
- Networking, Linux, TLS/HTTPS
- APIs and database security
- Security monitoring (SIEM, log analysis)
- Compliance frameworks (ISO 27001, SOC 2, DPDP)
- Kubernetes, Docker, Terraform (preferred)
- Penetration testing & vulnerability management (preferred)