Description
About the team:
The Information Technology team at Rubrik influences business processes, employee experience, and technologies to scale our organization to $1B+. This team creates operational efficiency across the company by centralizing the management of Infrastructure, Technology, and Data. The IT team ensures all stages of the software development lifecycle in a secured environment and scrutinizes the deployment of proper processes along with governance. They champion Rubrik on Rubrik and are the first customers of the Engineering teams at Rubrik.
Rubrik Corp IT is constructed of 100% SaaS and 0% on-premises. The IT team caters to accelerated enhancement of business value and multiple day-to-day business processes through our varied SaaS applications like Salesforce.com, Oracle Netsuite, Workday, Snowflake, Etrade, jitterbit, Allocadia, etc. This team also delivers high-paced business outcomes with 100% system uptime backed by agile, nimble, simple, but cohesive Cloud architectures.
About the role:
Rubrik is seeking a highly skilled and experienced Senior IAM Engineer to join our Identity & Access Management team, reporting directly to the Senior Manager. In this pivotal role, you will design, implement, and operate secure workforce identity services for Rubrik’s RSC‑G environment. You will own Okta& SailPoint administration in FedRAMP Moderate/High contexts, implement strong authentication and authorization controls (MFA, device trust, network zones), integrate SCIM and SSO for SaaS and GovCloud platforms, and partner with InfoSec, Network, CloudOps, and IAM Governance (SailPoint) to sustain compliance, availability, and audit readiness.The same responsibilities will be applicable to Okta Commercial Instance.
What you’ll do:
- Strategy & Architecture:
Develop the overall IAM strategy, security frameworks, and architecture for enterprise-wide access control. - Cloud & Infrastructure:
Design IAM solutions for cloud and on-premise environments, supporting access management, SSO, and identity federation. - Privileged Access Management (PAM):
Implement and manage PAM solutions to control access to sensitive accounts and systems. - Identity Lifecycle Management:
Automate processes for user provisioning, de-provisioning, and identity lifecycle management. - Policy & Governance:
Develop IAM policies, standards, and automation frameworks to ensure compliance with industry best practices and regulations (e.g., NIST, GDPR). - Collaboration:
Partner with engineering, operations, and business teams to ensure IAM solutions align with business needs. - Security & Compliance:
Ensure the confidentiality, integrity, and availability of IAM systems and data while supporting audits and risk assessments. - Application Integration: Implementing and scaling identity protocols like SAML, OIDC, OAuth, and SCIM.
- Security Configuration: Developing robust access controls (RBAC, ABAC) and enhancing security with MFA, Adaptive MFA, and Device Trust.
- UAR & SOX: Leading User Access Reviews, contributing to audit evidence, and operationalizing logging and monitoring for compliance.
- Automations: Automating identity workflows using Okta Workflows, APIs, and Terraform.
- FedRAMP: Administering and enhancing Okta & SailPoint for FedRAMP environments and integrating with U.S. GovCloud services.
Experience you’ll need:
- Experience:
Minimum of 8 years of progressive experience in Identity and Access Management (IAM), with a strong emphasis on SailPoint Identity Security Cloud (ISC) or comparable enterprise-grade IAM platforms (e.g., Saviynt, OneLogin, Microsoft Entra ID, Oracle Identity Governance); and experience administering Okta in enterprise environments with hands-on ownership of SSO, SCIM provisioning, Okta Workflows, API automation, and policy management. - Platform Expertise:
Deep, hands-on expertise with SailPoint Identity Security Cloud (ISC) architecture, including advanced knowledge of its features (Dynamic access roles, Password management, Access certification, Account management, Automated provisioning, Compliance Control, Data access Governance, Reporting, Role management, Access request, Identity Analytics, Identity lifecycle management, Identity Governance, Access Management, Privileged access management (pam)), the platform functionalities, connectors, and best practices. Proficiency with modern IAM platforms (e.g., Okta, Azure AD, SailPoint, CyberArk). - Protocols:
Understanding of identity protocols such as SAML, OpenID Connect, and OAuth. - Cloud IAM Proficiency:
Demonstrable experience implementing and managing IAM solutions within leading cloud environments such as AWS, Azure, or Google Cloud Platform. - SailPoint Virtual Appliances (VAs):
Comprehensive understanding of SailPoint Virtual Appliance deployment, configuration, and advanced troubleshooting, including knowledge of underlying virtualization platforms, network security, and SailPoint's APIs, connectors, and integrations. - Automations:
Skills in designing and implementing automated IAM workflows. - Security Knowledge:
Profound understanding of Identity Governance, Privileged Access Management (PAM) principles, and Access Certification processes. - Risk & Compliance:
Knowledge of regulatory requirements (e.g., SOX, HIPAA, GDPR) and how they apply to IAM.
Preferred Qualifications:
- Okta or SailPoint certifications (Professional, Administrator, Consultant, or Architect).
- Hands-on experience with Okta Workflows, Access Requests, Identity Governance, and Okta ASA.
- IGA/PAM experience (e.g., SailPoint, Saviynt, CyberArk).
- Experience securing CIAM and customer-facing identity journeys.
- Security engineering background with Zero Trust, secrets management, and policy-as-code practices.
Others:
- Collaborate with an India-based team.
- Demonstrate strong leadership qualities.
- Possess a solid understanding of change management processes.
#LI-Remote
Security and Privacy Responsibilities:
This position carries special Security and Privacy Responsibilities for protecting the U.S. Federal Government’s interests:
- Know, acknowledge, and follow system-specific security policies and procedures;
- Protect data and individual privacy per requirements and regulations;
- Perform ongoing activities in compliance with service and contractual obligations;
- Participate in role-based training, completing assignments on a timely basis;
- Report security issues promptly, and aid investigation when needed;
- Support controlled changes and vulnerability remediation activities; and
- Work collaboratively with Information Security in designing, implementing, assessing or enhancing system-specific security and privacy controls.
Position Risk Designation:
This position carries duties and responsibilities involving the U.S. Federal Government’s interests. The selected incumbent may be subject to one or both of the additional background checks with periodic re-screening as noted below:
Position Risk Designation: Non-Sensitive, Low Risk, Tier 1
Incumbents without access to U.S. Government data may be required to complete Standard Form 85 and undergo a Tier 1 Investigation (T1) for non-sensitive positions of Low Risk. (Baseline screening; formerly National Agency Check and Inquiries (NACI)).
Position Risk Designation: Non-Sensitive, Moderate Risk, Tier 2 (Public Trust)
Incumbents with access to U.S. Government data may be required to complete Standard Form 85P and undergo Tier 2 (T2) Investigation for non-sensitive positions designated Moderate Risk.
Position Risk Designation:Moderate Risk Law Enforcement (CJIS)
When hired for a position where access to Moderate Risk criminal justice information is required, the employee must complete a fingerprint-based national criminal history background check within 30 days after the employee’s start date.
Join Us in Securing and Accelerating the World's AI Transformation
Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.
Linkedin | X (formerly Twitter) | Instagram | Rubrik.com
Inclusion @ Rubrik
At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.
Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.
Our inclusion strategy focuses on three core areas of our business and culture:
-
Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.
-
Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.
-
Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.
Equal Opportunity Employer/Veterans/Disabled
Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
Similar jobs
Here's a summary of the role: Identity infrastructure is not glamourware. It doesn't get standing ovations at company all-hands. But it is the thing every product in the portfolio depends on, and when it breaks, everyone…
Role Overview As an Analyst II, Security Engineer, you’ll play a key role in keeping Diligent’s corporate systems, infrastructure, and cloud environments secure. You’ll work hands-on with modern security tools, partner w…
Role OverviewYou are a senior product leader who wants to shape how AI transforms IT and cyber risk management at scale. In this role, you will own one of the most strategic product areas in a global GRC SaaS platform, d…
Est. 65,000 EUR
Role Overview You’re a hands-on backend engineer who enjoys owning features end to end and working on real products that customers rely on every day. In this Software Engineer II role, you’ll help build and evolve a Thir…
Est. 147,500 USD
Role OverviewYou’re a seasoned Site Reliability Engineer who loves owning complex infrastructure, making things run faster, safer, and with less manual effort. In this Staff‑level role, you’ll design and operate VMware‑b…
Here’s a summary of the role: Every enterprise deal reaches the moment where someone in security says “prove it.” You’re the person who answers — quickly, accurately, and with the evidence to back it up. As an Analyst II…
Est. 80,000 GBP
Here’s a summary of the role: Build cloud software that matters, grow your technical depth, and use modern AI tooling to do your best work. This is a hands-on engineering role for someone who enjoys solving product probl…
Must be based in VancouverThe role We're hiring a dedicated data engineer to own the production data platform that our delivery, product, and engineering teams run on; designing integrated, governed data pipelines and de…
About the role As a Customer Success Manager I at 3rdRisk, you're the person who turns a new customer into a confident, successful one. You own onboarding from kickoff to go-live — guiding organizations through implement…
Platform administration isn't the part of the product anyone screenshots for a demo. Nobody's writing a blog post about your identity provisioning flow. But it's the thing every other team at Diligent quietly depends on…
Overview We are seeking a hands-on Director of AI Software Engineering to lead and scale AI engineering efforts supporting multiple business units across Governance, Risk, and Compliance (GRC). This role sits at the inte…
Est. 84,000 EUR
Position Overview Spend your days making a difference, not just working for a living. At Diligent, we build Security, Risk Management, Compliance, and Audit software that helps uncover fraud, waste, environmental risks,…
Est. 120,000 GBP
Most AI roles keep you at arm’s length from the people the agents are supposed to help. This one puts you in the room with them. We’re building AI agents for risk managers, internal auditors, and compliance professionals…
Est. 90,000 GBP
Here’s a summary of the role: Build software that matters, take real technical ownership, and use modern AI tooling to do your best work. This is a hands-on senior engineering role for someone who enjoys solving complex…
Est. 120,000 EUR
Position Overview As a Staff Software Engineer, you'll provide technical leadership, raise engineering standards, and help teams build secure, scalable SaaS products that leverage AI. This is a hands-on senior individual…
You’ll shape the future of a business‑critical platform as the technical lead across both product engineering and cloud infrastructure. You’ll modernize a mature .NET application running on AWS today, while steering its…
Est. 80,000 EUR
Position Overview: A Manager, Services allocates resources and ensures full team utilization while overseeing quality across the Professional Services customer journey. They coach and mentor the team, lead recruitment an…
Here’s a summary of the role: You are a seasoned AI engineer ready to design, ship, and own production‑grade agentic systems that solve real enterprise problems. At Diligent, you’ll take technical ownership of Compliance…
Est. 111,640 USD
Position Overview Diligent is looking for an experienced GRC Advisor to join the team and work on Key accounts to drive adoption and retention and identify areas for expansion within our platform. This position will leve…
Est. 147,500 USD
Help shape the technology that enables a global organisation to do its best work. As Senior Manager, Platform Engineering, you’ll lead the team responsible for Diligent’s Atlassian and Microsoft platforms while setting t…
Role Overview You’ll be the Principal Software Engineer driving the next generation of a large-scale enterprise SaaS platform. In this role, you combine deep hands-on engineering with high-impact technical leadership, sh…
Est. 84,000 EUR
Here’s a summary of the role: As a Senior Software Engineer at Diligent, you’ll be hands-on in shaping the future of our Compliance Products by designing and delivering secure, scalable, and high-performing services that…
Here’s a summary of the role: Lead a strong engineering team, deliver software that matters, and help people do the best work of their careers. This is a hands-on team management role for someone who enjoys combining peo…
Est. 60,000 EUR
Position Overview: As a Senior Software Engineer at Diligent, you’ll be hands-on in shaping the future of our platform by designing and delivering secure, scalable, and high-performing microservices that power our SaaS s…
Here’s a summary of the role: If you enjoy solving customer problems, getting hands-on with web applications, and digging into issues rather than simply passing them on, this could be a great fit. As a Technical Support…
Est. 80,000 GBP
Here’s a summary of the role: Diligent is seeking a Service Sales Manager (Risk & Audit) to join our Professional Services department. The Services Sales team works closely with Sales to ensure the appropriate profes…
Est. 275,000 USD
We're looking for a Head of Enterprise & Field Marketing to lead and scale our global field marketing organization, own account-based marketing for our largest and most strategic accounts, drive alliances and partner…
Est. 107,000 USD
Position Overview: The Senior Financial Analyst will play a critical role in supporting Diligent’ s financial planning and analysis efforts across assigned regions or business areas. This role provides deep insights and…
Position Overview Diligent is looking for an experienced GRC Advisor to join the team and work on Key accounts to drive adoption and retention and identify areas for expansion within our platform. This position will leve…
Est. 80,000 EUR
Position Overview As a Software Engineer at Diligent, you’ll be hands-on in building and improving the services that power our SaaS platform. You’ll work on designing, developing, and maintaining secure and scalable micr…