368,611open jobs
9,439companies
50,719added this week
Browse all
Salary
$112k – $225k per year (Estimated)
Location
In office
Seniority
Senior · 8+ years exp
Overview
Company
Impact
Profile match
Rubrik is a Security and AI Operations Company focused on data protection and cyber resilience. We empower organizations to enhance their security posture while accelerating their enterprise AI initiatives. Our unique approach ensures comprehensive protection of critical data and facilitates trusted AI deployments at scale.

About the team:

The Information Technology team at Rubrik influences business processes, employee experience, and technologies to scale our organization to $1B+. This team creates operational efficiency across the company by centralizing the management of Infrastructure, Technology, and Data. The IT team ensures all stages of the software development lifecycle in a secured environment and scrutinizes the deployment of proper processes along with governance. They champion Rubrik on Rubrik and are the first customers of the Engineering teams at Rubrik.

Rubrik Corp IT is constructed of 100% SaaS and 0% on-premises. The IT team caters to accelerated enhancement of business value and multiple day-to-day business processes through our varied SaaS applications like Salesforce.com, Oracle Netsuite, Workday, Snowflake, Etrade, jitterbit, Allocadia, etc. This team also delivers high-paced business outcomes with 100% system uptime backed by agile, nimble, simple, but cohesive Cloud architectures.

About the role:

Rubrik is seeking a highly skilled and experienced Senior IAM Engineer to join our Identity & Access Management team, reporting directly to the Senior Manager. In this pivotal role, you will design, implement, and operate secure workforce identity services for Rubrik’s RSC-G environment. You will own Okta& SailPoint administration in FedRAMP Moderate/High contexts, implement strong authentication and authorization controls (MFA, device trust, network zones), integrate SCIM and SSO for SaaS and GovCloud platforms, and partner with InfoSec, Network, CloudOps, and IAM Governance (SailPoint) to sustain compliance, availability, and audit readiness.The same responsibilities will be applicable to Okta Commercial Instance.

What you’ll do:

  • Strategy & Architecture:

    Develop the overall IAM strategy, security frameworks, and architecture for enterprise-wide access control. 

  • Cloud & Infrastructure:

    Design IAM solutions for cloud and on-premise environments, supporting access management, SSO, and identity federation. 

  • Privileged Access Management (PAM):

    Implement and manage PAM solutions to control access to sensitive accounts and systems. 

  • Identity Lifecycle Management:

    Automate processes for user provisioning, de-provisioning, and identity lifecycle management. 

  • Policy & Governance:

    Develop IAM policies, standards, and automation frameworks to ensure compliance with industry best practices and regulations (e.g., NIST, GDPR). 

  • Collaboration:

    Partner with engineering, operations, and business teams to ensure IAM solutions align with business needs. 

  • Security & Compliance:

    Ensure the confidentiality, integrity, and availability of IAM systems and data while supporting audits and risk assessments. 

  • Application Integration: Implementing and scaling identity protocols like SAML, OIDC, OAuth, and SCIM.
  • Security Configuration: Developing robust access controls (RBAC, ABAC) and enhancing security with MFA, Adaptive MFA, and Device Trust.
  • UAR & SOX: Leading User Access Reviews, contributing to audit evidence, and operationalizing logging and monitoring for compliance.
  • Automations: Automating identity workflows using Okta Workflows, APIs, and Terraform.
  • FedRAMP: Administering and enhancing Okta & SailPoint for FedRAMP environments and integrating with U.S. GovCloud services.

Experience you’ll need:

  • Experience:

    Minimum of 8 years of progressive experience in Identity and Access Management (IAM), with a strong emphasis on SailPoint Identity Security Cloud (ISC) or comparable enterprise-grade IAM platforms (e.g., Saviynt, OneLogin, Microsoft Entra ID, Oracle Identity Governance); and experience administering Okta in enterprise environments with hands-on ownership of SSO, SCIM provisioning, Okta Workflows, API automation, and policy management.

  • PlatformExpertise:

    Deep, hands-on expertise with SailPoint Identity Security Cloud (ISC) architecture, including advanced knowledge of its features (Dynamic access roles, Password management, Access certification, Account management, Automated provisioning, Compliance Control, Data access Governance, Reporting, Role management, Access request, Identity Analytics, Identity lifecycle management, Identity Governance, Access Management, Privileged access management (pam)), the platform functionalities, connectors, and best practices. Proficiency with modern IAM platforms (e.g., Okta, Azure AD, SailPoint, CyberArk). 

  • Protocols:

    Understanding of identity protocols such as SAML, OpenID Connect, and OAuth. 

  • Cloud IAM Proficiency:

    Demonstrable experience implementing and managing IAM solutions within leading cloud environments such as AWS, Azure, or Google Cloud Platform.

  • SailPoint Virtual Appliances (VAs):

    Comprehensive understanding of SailPoint Virtual Appliance deployment, configuration, and advanced troubleshooting, including knowledge of underlying virtualization platforms, network security, and SailPoint's APIs, connectors, and integrations.

  • Automations:

    Skills in designing and implementing automated IAM workflows. 

  • Security Knowledge:

    Profound understanding of Identity Governance, Privileged Access Management (PAM) principles, and Access Certification processes.

  • Risk & Compliance:

    Knowledge of regulatory requirements (e.g., SOX, HIPAA, GDPR) and how they apply to IAM. 

Preferred Qualifications:

  • Okta or SailPoint certifications (Professional, Administrator, Consultant, or Architect).
  • Hands-on experience with Okta Workflows, Access Requests, Identity Governance, and Okta ASA.
  • IGA/PAM experience (e.g., SailPoint, Saviynt, CyberArk).
  • Experience securing CIAM and customer-facing identity journeys.
  • Security engineering background with Zero Trust, secrets management, and policy-as-code practices.

Others:

  • Collaborate with an India-based team.
  • Demonstrate strong leadership qualities.
  • Possess a solid understanding of change management processes.

Security and Privacy Responsibilities

This position carries special Security and Privacy Responsibilities for protecting the U.S. Federal Government’s interests:

  • Know, acknowledge, and follow system-specific security policies and procedures;
  • Protect data and individual privacy per requirements and regulations;
  • Perform ongoing activities in compliance with service and contractual obligations;
  • Participate in role-based training, completing assignments on a timely basis; 
  • Report security issues promptly, and aid investigation when needed;
  • Support controlled changes and vulnerability remediation activities; and
  • Work collaboratively with Information Security in designing, implementing, assessing or enhancing system-specific security and privacy controls. 

Position Risk Designation:

This position carries duties and responsibilities involving the U.S. Federal Government’s interests. The selected incumbent may be subject to one or both of the additional background checks with periodic re-screening as noted below:

Position Risk Designation: Non-Sensitive, Low Risk, Tier 1  

Incumbents without access to U.S. Government data may be required to complete Standard Form 85 and undergo a Tier 1 Investigation (T1) for non-sensitive positions of Low Risk. (Baseline screening; formerly National Agency Check and Inquiries (NACI)).

Position Risk Designation: Non-Sensitive, Moderate Risk, Tier 2 (Public Trust)

Incumbents with access to U.S. Government data may be required to complete Standard Form 85P and undergo Tier 2 (T2) Investigation for non-sensitive positions designated Moderate Risk.

Position Risk Designation:Moderate Risk Law Enforcement (CJIS)

When hired for a position where access to Moderate Risk criminal justice information is required, the employee must complete a fingerprint-based national criminal history background check within 30 days after the employee’s start date.

The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

US (SF Bay Area, DC Metro, NYC, Seattle) Pay Range

$181,600—$272,400 USD

The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

US2 (all other US offices/remote) Pay Range

$163,400—$245,200 USD

Join Us in Securing and Accelerating the World's AI Transformation

Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes. 

Linkedin | X (formerly Twitter) | InstagramRubrik.com

Inclusion @ Rubrik

At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.

Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.

Our inclusion strategy focuses on three core areas of our business and culture:

  • Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.

  • Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.

  • Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.

Equal Opportunity Employer/Veterans/Disabled

Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. 

Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at [email protected] if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.

EEO IS THE LAW

NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,611 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
SR AI ENGINEER, SMAI 6 hours ago
In office • Full-Time • 2+ years exp • Bachelor's Degree • Taoyuan
JavaScript
Python
SQL
TypeScript
Python
FastAPI
AI/ML
AI Agents
Function Calling
LLMOps
Prompt Engineering
Quantization
RAG
Streamlit
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
GCP
GitHub
GitHub Actions
Kubernetes
OpenShift
Apply
$24k – $63k per year (Estimated) • In office • Full-Time • 6+ years exp • Master's Degree • India
Crystal
Groovy
JavaScript
Perl
Python
Ruby
SQL
TypeScript
Java
Java
Apache Tomcat
Gradle
Hibernate
Maven
Spring Boot
Spring MVC
Databases
Apache Kafka
Db2
Oracle
PostgreSQL
RabbitMQ
AI/ML
Fine-tuning
Frontend
Angular
JQuery
DevOps
Apache HTTP Server
AWS
Azure
CI/CD
Docker
GCP
Jenkins
Kubernetes
Rest API
Cybersecurity
Checkmarx
SonarQube
Apply
$64k – $189k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • Bachelor's Degree • Singapore
Python
SQL
Databases
Apache Kafka
AI/ML
Amazon SageMaker
Kubeflow
MLFlow
Spark
Vertex AI
DevOps
AWS
Azure
Azure DevOps
CI/CD
Docker
GCP
GitLab
GitLab CI
Jenkins
Kubernetes
Apply
$26k – $63k per year (Estimated) • Remote/Hybrid • Full-Time • 12+ years exp • Pune
Python
Python
pySpark
AI/ML
Hadoop
Spark
DevOps
AWS
Azure
GCP
Analytics
ETL/ELT
Apply
$118k – $168k per year • In office • Full-Time • Ottawa • Halifax
Databases
Snowflake
AI/ML
AI Agents
AutoGen
CrewAI
Human-in-the-Loop
LangChain
LLM
DevOps
AWS
Azure
Apply
$19k – $81k per year (Estimated) • In office • PhD • Pune
C#
Go
C#
.NET
Databases
Redis
AI/ML
AI Agents
Fine-tuning
LLM Guardrails
DevOps
IAM
Apply
$91k – $220k per year (Estimated) • In office • 15+ years exp • PhD
PowerShell
Python
AI/ML
AI Agents
Fine-tuning
LLM Guardrails
DevOps
AWS
Azure
Bicep
CI/CD
CloudFormation
GCP
Kubernetes
Terraform
Marketing
Salesforce
Apply
$35k – $83k per year (Estimated) • In office • 10+ years exp • PhD • Bengaluru
PowerShell
Python
AI/ML
AI Agents
Fine-tuning
LLM Guardrails
DevOps
Azure
Self-Healing
Cybersecurity
Okta
Zero Trust
Management
Google Workspace
Slack
Apply
$102k – $212k per year (Estimated) • In office • 5+ years exp • PhD • San Francisco
AI/ML
AI Agents
Fine-tuning
LLM Guardrails
DevOps
AWS
Azure
GCP
Apply
$101k – $190k per year (Estimated) • In office • 6+ years exp • Bachelor's Degree • Palo Alto
SQL
Databases
Snowflake
AI/ML
AI Agents
Fine-tuning
LLM
LLM Guardrails
Analytics
Tableau
Marketing
Salesforce
Apply
See all jobs
This is one of many
368,611 more open roles from verified company boards, updated every day.