--- title: 'Red Team Security Engineer at Cloudanix' canonical: 'https://feeny.ai/job/red-team-security-engineer-cloudanix-pune-2c7xjcggb7p1' type: 'job' last_seen: '2026-09-05' --- # Red Team Security Engineer at Cloudanix - **Company:** Cloudanix - **Location:** Pune, India - **Employment:** full-time - **Work type:** onsite - **Posted:** 2024-09-19 - **Last confirmed live:** 2026-09-05 - **Apply:** https://jobs.gem.com/cloudanix-com/am9icG9zdDqFd1n7mdSwyrNwb1iDn7Gj ## Job description ## About the Company [Cloudanix](https://www.cloudanix.com) helps companies with the security and operational excellence of their cloud infrastructure. We offer a Central Dashboard and a set of tools that cross-functional teams (Cloud Operation, Security, Risk, Engineering) use to manage cloud operations in a timely and secure manner. Cloudanix is driven by a mission that every consumer should be entitled to secure and reliable apps. We want Cloud Operation team members, both in startups and enterprises, to have all the necessary tools to operate securely and effectively using cloud technologies. We are backed by YCombinator and have customers across the US, UK, and India. ## About the Team Sujay Maheshwari has worked both as an Engineer and Product Manager at several startups and large companies in the US, London, and India. He has built and run a successful startup in New York with customers like HSBC, JWT, and several other popular names. For the past several years, he has been part of the cloud journey in various roles at Pantheon, Moody’s, HPE, Cloud Foundry, and other Silicon Valley companies. Purusottam Mupunu excels in both SaaS and Cloud space. He has built and run engineering teams across the US and India. He is based out of Sunnyvale, California, and is an expert in AWS, Azure, and GCP cloud technologies. He started his journey as a software developer and today leads Cloudanix’s engineering team. ## About the Role We are seeking a talented and motivated Red Team Security Engineer to join our growing security team. In this role, you will be responsible for simulating real-world attacks to identify vulnerabilities in our systems, applications, and cloud infrastructure. Your work will be crucial in enhancing our security posture and ensuring the robustness of our CNAPP solutions. This is a Pune-based position. 100% remote is not offered for this role. ## Your Responsibilities - Plan and execute complex, multi-phase red team operations to simulate advanced persistent threats (APTs) and other sophisticated attack scenarios - Develop and maintain a diverse set of tools and techniques for penetration testing, social engineering, and other offensive security measures - Conduct thorough assessments of our cloud infrastructure, applications, and networks to identify security weaknesses - Create detailed reports of findings, including clear explanations of vulnerabilities, potential impacts, and recommended remediation steps - Collaborate with the blue team to improve detection and response capabilities - Stay up-to-date with the latest attack techniques, tools, and trends in the cybersecurity landscape - Assist in developing and improving internal security policies and procedures - Participate in code reviews to identify security flaws in application code - Contribute to the development of security awareness training programs for employees Required Qualifications - Bachelor's degree in Computer Science, Cybersecurity, or a related field - 2-3 years of experience in red team operations, penetration testing, or offensive security roles - Strong knowledge of common vulnerabilities and attack vectors in web applications, networks, and cloud environments - Proficiency in scripting languages such as Python, Ruby, or PowerShell - Experience with penetration testing tools (e.g., Metasploit, Burp Suite, Nmap) - Familiarity with common cloud platforms (AWS, Azure, GCP) and their security features - Understanding of network protocols and common network services - Excellent problem-solving and analytical skills - Strong written and verbal communication skills - Ability to work independently and as part of a team ## Preferred Qualification - Relevant certifications such as OSCP, OSCE, GXPN, or GPEN - Experience with cloud-specific security assessments and tools - Knowledge of DevSecOps practices and CI/CD pipelines - Familiarity with containerization technologies (e.g., Docker, Kubernetes) - Understanding of compliance frameworks (e.g., HIPAA, PCI DSS, SOC 2) - Experience with threat modeling and risk assessment methodologies - Familiarity with blue team operations and defensive security measures - Knowledge of reverse engineering and malware analysis What can you expect in return? - An opportunity to work on greenfield projects and make a dent in the SaaS ecosystem. - Market-competitive salary. - Unlimited vacation policy. - World-class medical insurance for you and your family. - Flexi work culture with no strict office hours. - Access to the latest tools and technology to enhance your work productivity. What kind of work will you do and how will it get recognized? We are sharing below two recent publications on the AWS blog which we co-authored with them. It will give you a sense of the impact we are having on our customers: - [Cloudanix’s Real-Time Threat and Anomaly Detection for Workloads on AWS](https://aws.amazon.com/blogs/apn/cloudanix-real-time-threat-and-anomaly-detection-for-workloads-on-aws/) - [How Cloudanix Secures Containerized Applications Running on Amazon EKS](https://aws.amazon.com/blogs/apn/how-cloudanix-secures-containerized-applications-running-on-amazon-eks/) ## About Cloudanix ## Company Overview - **One-liner**: Cloudanix is a Cloud-Native Application Protection Platform (CNAPP) that unifies code security, cloud posture management, workload protection, CIEM, and just-in-time access on a single asset graph. - **Entity Type**: Private (YC-backed, Summer 2021 batch) - **Headquarters**: Sunnyvale, California, USA (with an office in Pune, India) - **Founded**: 2021 - **Founders**: Sujay Maheshwari (CEO) and Purusottam Mupunu (CTO) ## Core Business - **Primary industry/industries**: Cloud Security / Cybersecurity - **Target customers**: B2B – DevOps and security teams at enterprises using multi-cloud (AWS, Azure, GCP, OCI, DigitalOcean) - **Mission or purpose statement**: Secure the full software lifecycle — from the first line of code a developer writes to the cloud workloads running in production — by connecting every finding to the owner, blast radius, and fix path. ## Products & Services - **CNAPP+ Platform**: SaaS control plane that integrates Code Security (SAST, SCA, secrets, IaC), CSPM, CWPP, CIEM, and Just-In-Time Access into one risk graph. Supports agentless onboarding in 30 minutes. - **Identity & JIT**: CIEM for humans and non-humans, plus just-in-time access across cloud, databases, Kubernetes, and VMs. Works with any IdP. - **Attack Path & CDR**: Prioritization engine that combines reachability, blast radius, identity behavior, and threat context. - **Agentic AI Security**: AI-SPM, gateway, red-team, and model scanning for AI coding agents (Claude Code, Kiro, with Cursor/GitHub Copilot/Aider on the roadmap). Includes Coding Agent Guard (one-line install on developer machines) and Coding Agent JIT. ## Market Standing - **Valuation/Market Cap**: Not disclosed - **Key Metric**: Total Funding – Y Combinator seed (standard $125k for 7% equity) - **Notable Investors/Partners**: Y Combinator (Summer 2021 batch). Achieved AWS Security Competency (2024/2025). Integrates natively with GitHub, GitLab, Bitbucket, Azure DevOps, Jira, Slack, Splunk, Datadog, etc. - **Growth Signals**: Expanded from 8 employees (at YC batch) to multiple open engineering and sales roles; added Agentic AI Security module; listed on careers page with six engineering positions (Python, Frontend, Ruby on Rails, QA, Support, Red Team) plus sales & marketing roles. ## Competitive Advantages - **Unified asset graph**: Correlates findings across code, cloud configuration, identities, workloads, and AI agents – eliminating the “tool sprawl” of five separate dashboards. - **Agentless & fast onboarding**: Customers see findings within 15 minutes of connecting a cloud account; no agent required for CSPM. - **Multi-cloud & multi-account native**: Works across AWS, Azure, GCP, OCI, and DigitalOcean with 1,000+ policies mapped to SOC 2, ISO 27001, HIPAA, PCI, NIST, GDPR. - **Privacy-first design**: SaaS control plane reads configuration via read-only APIs and stores only metadata (no customer data or secrets); Coding Agent Guard runs entirely on the developer’s machine. ## Strategic Focus - **AI security expansion**: Building out security for AI coding agents (Agentic AI Security) and adding support for more coding agent platforms. - **Deepening integrations**: Roadmap includes Cursor, GitHub Copilot, Aider, and expanding coding agent JIT/guard functionality. - **Private deployment options**: Offering data residency solutions for customers with strict compliance requirements. ## Why Work Here - **Impactful engineering challenges**: Join a YC-backed team solving multi-cloud security at scale – from real-time risk graphs to AI agent security. - **Locations**: Hybrid/office roles in Sunnyvale, CA (US) and Pune, India. - **Culture**: Startup pace with a focus on shipping quickly and owning problems end-to-end. Open roles include Software Engineer (Python, Frontend, Ruby on Rails), QA Automation, Support Engineer, and Red Team Security Engineer. - **Perks**: Not explicitly listed, but as a YC company, expect equity, direct work with founders, and the opportunity to shape a fast-growing product. ## Sources 1. [Cloudanix Careers Page](https://www.cloudanix.com/careers) 2. [Cloudanix Official Website](https://www.cloudanix.com/) 3. [Gem Careers Listing](https://jobs.gem.com/cloudanix-com) 4. [YC Company Profile](https://www.ycombinator.com/companies/cloudanix) 5. [Cloudanix Team Page](https://www.cloudanix.com/team) ## Other roles at Cloudanix - [PreSales Engineer](https://feeny.ai/job/presales-engineer-cloudanix-pune-b34hg5as1ff7) — Pune, India - [Account Manager](https://feeny.ai/job/account-manager-cloudanix-pune-cxdfg623z7st) — Pune, India - [Support Engineer](https://feeny.ai/job/support-engineer-cloudanix-pune-nbzvkzdzv92d) — Pune, India - [QA Automation Engineer](https://feeny.ai/job/qa-automation-engineer-cloudanix-pune-4x63xdnnqafm) — Pune, India - [Brand Visual Designer](https://feeny.ai/job/brand-visual-designer-cloudanix-pune-hgbcgg3hvrgy) — Pune, India - [Software Engineer - Ruby on Rails](https://feeny.ai/job/software-engineer-ruby-on-rails-cloudanix-pune-5828fz0g2eye) — Pune, India - [Channel Sales Head](https://feeny.ai/job/channel-sales-head-cloudanix-pune-bmejbxce4esc) — Pune, India - [Software Engineering - Frontend](https://feeny.ai/job/software-engineering-frontend-cloudanix-pune-edz3j0ms3k5x) — Pune, India - [Software Engineer - Python](https://feeny.ai/job/software-engineer-python-cloudanix-pune-she1m5yf05yq) — Pune, India - [DevOps Engineer](https://feeny.ai/job/devops-engineer-cloudanix-pune-hst9wfrnnj1s) — Pune, India