Rubiscape Private Limited Logo

Rubiscape Private Limited

Cloud Security Engineer

Posted 9 Hours Ago
Be an Early Applicant
In-Office
Pune, Maharashtra, IND
Mid level
In-Office
Pune, Maharashtra, IND
Mid level
Secure Rubiscape’s cloud deployment environments across AWS, Azure, GCP, hybrid, on-premises, and air-gapped infrastructure. Responsibilities include cloud architecture hardening, IAM governance, CSPM operations, Kubernetes security, IaC scanning, BYOC tenant isolation, compliance control validation, audit evidence preparation, and incident response. The role also develops security automation, supports remediation, and improves defenses following cloud security incidents.
The summary above was generated by AI
About the Role

Rubiscape is deployed across a uniquely complex topology — public SaaS, customer BYOC (Bring Your Own Cloud), hybrid, on-premises, and fully air-gapped environments. As Cloud Security Engineer, you will be responsible for securing this entire deployment surface: cloud infrastructure hardening, identity and access governance in AWS/Azure/GCP, Kubernetes security, and CSPM. You will work alongside platform infrastructure and DevSecOps teams to ensure that Rubiscape’s cloud posture meets the bar set by Fortune 500 and public sector customers who run mission-critical decisions on the platform.

 

Key Responsibilities

·         Design and implement cloud security architecture for Rubiscape’s AWS, Azure, and GCP deployments, covering VPC design, IAM least-privilege, service control policies, and network security groups.

·         Operate Cloud Security Posture Management (CSPM) tooling (Wiz, Prisma Cloud, or AWS Security Hub); triage findings, prioritise by risk, and drive remediation with infrastructure owners.

·         Harden Kubernetes clusters (EKS, AKS, GKE) running Rubiscape’s studio workloads: enforce pod security standards, network policies, image signing, and runtime protection.

·         Build and maintain automated IaC security scanning (Checkov, tfsec) as a mandatory gate in Terraform and Helm chart pipelines.

·         Design the BYOC customer onboarding security model — ensuring tenant isolation, key management separation, and audit log forwarding without exposing Rubiscape control-plane credentials.

·         Define and validate cloud security controls for ISO 27001, SOC 2, and CERT-IN cloud security guidelines; produce cloud-specific evidence packs for compliance audits.

·         Respond to cloud security incidents — containment, forensic investigation, root cause analysis, and post-incident hardening recommendations.

Nice to Have

·         Certifications: AWS Security Specialty, CCSP, Google Professional Cloud Security Engineer, or CKS (Certified Kubernetes Security Specialist).

·         Experience designing security for BYOC or hybrid SaaS deployments where customer cloud accounts host vendor workloads.

·         Familiarity with eBPF-based runtime security tooling (Falco, Cilium, Tetragon).

·         Prior work in regulated cloud environments subject to CERT-IN, RBI Cloud Guidelines, or SEBI Cybersecurity framework.

 

 

 

About Rubiscape

Rubiscape is India’s leading Decision Intelligence Platform, unifying data engineering, BI, machine learning, and agentic AI in a single governed platform. Built in Pune and trusted by Fortune 500 enterprises across BFSI, manufacturing, healthcare, and government. 8 international innovation patents. 10 Industry-Academia Labs & COEs. From BI to AI — One Platform. Every Decision.



RequirementsRequirements

·         4+ years of cloud security experience with at least two of AWS, Azure, or GCP, including hands-on IAM, networking, and security services.

·         Demonstrated expertise in Kubernetes security: pod security, RBAC, network policies, secrets management (Vault/Sealed Secrets), and container image scanning.

·         Proficiency with CSPM platforms and infrastructure-as-code security scanning tools.

·         Experience designing multi-tenant isolation architectures in cloud environments, including cross-account strategies and customer-managed encryption keys (BYOK/HYOK).

·         Scripting ability in Python or Go for security automation, custom policy enforcement, and cloud API interactions.



Similar Jobs

7 Days Ago
In-Office
2 Locations
Senior level
Senior level
Financial Services
Lead cloud security initiatives across multi-cloud environments, implement and manage tools (Wiz), identify and remediate vulnerabilities, embed security into CI/CD and IaC, conduct threat modeling and risk assessments, support incident response and forensics, coordinate third-party assessments, and provide guidance and training to engineering teams.
Top Skills: AWSAzureCi/CdCnappCspmDevsecopsInfrastructure-As-Code (Iac)PythonTerraformWiz
7 Days Ago
In-Office
Baner, Pune, Maharashtra, IND
Senior level
Senior level
Fintech • Payments • Financial Services
Design, implement, and manage security controls across multi-cloud and on-prem infrastructure. Lead cloud security, network security, IAM, endpoint protection, vulnerability management, incident response, and M&A security integrations. Conduct assessments, maintain documentation, embed security into designs, and ensure compliance with NIST/ISO/CSA standards while recommending tools and remediation to strengthen the security posture.
Top Skills: AnsibleAWSAzureCi/Cd SecurityCis BenchmarksContainersCsa CcmCspmCwppDdos ProtectionEdr/XdrEncryptionFirewallIamIdentity FederationIntune)Ips/IdsIso 27001KmsKubernetesMfaMicrosoft 365 Security (Conditional AccessMitre Att&CkNist CsfOracle Cloud Infrastructure (Oci)Privileged Access ManagementSecurity GroupsSIEMSsoTerraformVpnVulnerability ManagementWaf
7 Days Ago
In-Office
Baner, Pune, Maharashtra, IND
Senior level
Senior level
Fintech • Payments • Financial Services
Lead design, implementation, and management of cloud and infrastructure security across multi-cloud and on-prem environments. Perform security assessments, incident response, M&A security integration, remediation, and ensure compliance with frameworks (NIST, ISO 27001, CSA CCM). Collaborate with architecture, platform, and M&A teams to embed Zero Trust, IAM, network segmentation, endpoint protection, monitoring, and secure operational procedures.
Top Skills: AnsibleAWSAzureCi/CdCis BenchmarksContainersCspmCwppDdos ProtectionEdr/XdrFirewallsIam PoliciesIdentity FederationIdsIntuneIpsKmsKubernetesMfaMicrosoft 365Mitre Att&CkOciSecurity GroupsSIEMSsoTerraformVirtual MachinesVpn GatewaysVulnerability ManagementWaf

What you need to know about the Pune Tech Scene

Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account