Security Engineer - Identity and Access
About the team
The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties in order to securely protect Rubrik information.3
About the role
We are looking for an experienced and technically deep Identity and Access Management (IAM) Engineer to execute technical strategy across our entire Identity and Access Security management program. This domain spans a broad and increasingly complex set of disciplines, including Identity Governance & Administration (IGA), Access Management, Privileged Access Management (PAM), Non-Human Identity (NHI) security, and the emerging space of Agentic Identity security.
This is fundamentally a hands-on role. You will be expected to personally design systems from the ground up and build automation that scales across a large and diverse application portfolio. At the same time, this role carries significant cross-functional weight: you will be partnering closely and continuously with Information Security, IT, Engineering and the many application-owning teams distributed across the company, driving the identity security initiatives in alignment with the overall business objectives.
What you'll do
- Solution Design
Design and build IAM solutions — including configurations, integrations, and workflows — that align with evolving business requirements, security policies and regulatory requirements (eg., SOX, GDPR). - Application Onboarding & Integration
Lead the onboarding of applications into IAM platforms, integrating across diverse systems including major cloud platforms, SaaS applications, and in-house systems. - Build automation and policy-as-code frameworks
Manage identity access policies as versioned, auditable code — using source control, CI/CD, and infrastructure-as-code to automate identity and access management changes instead of manual, ticket-driven processes. - Deepen identity governance platform integrations
Build and extend automated provisioning/deprovisioning, entitlement aggregation, and access certification workflows across the application portfolio. - Privileged Access Management
Design privileged access models across applications and endpoints — including session management and just-in-time elevation — to minimize standing access without slowing teams down. - Non-human/Agentic identity governance
Build inventory, risk-scoring, runtime policy enforcement and remediation tooling for service accounts, API keys, workload identities, AI agents etc - IAM Platform Auditing & Posture Management
Review and audit identity and access management platforms to identify security misconfigurations, strengthen security policies, and enforce industry best practices. - Incident Response & Forensics Support
Provide subject matter expertise during security incidents to support investigations into identity and access related events. - On-Call Coverage & Escalations
Engage in on-call rotations and provide technical escalation support outside standard business hours. - Technical governance and design reviews
Enforce technical standards across the team, evaluate identity related design proposals, and serve as the main escalation point for complex identity security decisions and integration challenges
Experience you'll need
- Minimum of 6 years of experience in Identity and Access Management (IAM), with deep hands-on experience implementing and managing IAM solutions within leading cloud environments such as AWS, Azure, or Google Cloud Platform.
- Proficiency with modern identity platforms (e.g., SailPoint, Okta, CyberArk, or equivalents) and identity protocols such as SAML, OpenID Connect, and OAuth.
- Strong understanding of Identity Governance, Privileged Access Management (PAM) principles, Non-Human Identities/AI Identities and Access Certification processes.
- Proficiency in a general-purpose programming language (e.g., Python, Go), with experience in infrastructure-as-code (IaC) and CI/CD tooling (e.g., Terraform, GitHub Actions) preferred.
- Demonstrated experience designing least-privilege / RBAC or ABAC models at scale, and reasoning about tradeoffs between security posture and developer/user friction.
- Experience operating in a regulated environment (e.g., SOX) and translating control requirements into engineering work.
- Track record of technical leadership: driving cross-team design decisions, writing technical documentation.
Additional skills
- Effective communication skills, both written and verbal, with the ability to convey complex information clearly to technical and non-technical audiences.
- Strong analytical and problem-solving skills, with the ability to lead cross-functional collaborations and drive technical security initiatives.
- Ability to quickly learn, adapt, and lead in fast-paced and dynamic technical environments.
Join Us in Securing and Accelerating the World's AI Transformation
Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.
Linkedin | X (formerly Twitter) | Instagram | Rubrik.com
Inclusion @ Rubrik
At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.
Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.
Our inclusion strategy focuses on three core areas of our business and culture:
-
Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.
-
Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.
-
Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.
Equal Opportunity Employer/Veterans/Disabled
Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
Apply for this job
*
indicates a required field