Job Summary

About the Team:

The Enterprise Applications team at Rubrik enables business processes, employee experience, and technologies to scale our organization to $1B+. This team is responsible for all the enterprise applications used at Rubrik and the relevant business processes (Lead to Opportunity, Quote to Cash, Hire to Retire, Customer Support, Legal, & Facilities). The IT team caters to accelerated enhancement of business value and multiple day-to-day business processes through our varied SaaS applications like Salesforce.com, Oracle NetSuite, Workday, Coupa, Chromeriver, Snowflake, Etrade, Jitterbit, Allocadia, etc.

About the role 

Rubrik is seeking a highly skilled and experienced Senior IAM Engineer to join our Identity & Access Management team, reporting directly to the Senior Manager. In this pivotal role, you will be instrumental in designing, implementing, and maintaining robust Identity and Access Management (IAM) solutions, primarily leveraging SailPoint Identity Security Cloud (ISC). You will translate complex business requirements into scalable technical solutions, ensuring strict adherence to security policies and regulatory mandates. This involves comprehensive integration of SailPoint with diverse enterprise applications, developing custom connectors, and optimizing authentication mechanisms to enhance security posture and operational efficiency. You will lead key initiatives in user provisioning, access certifications, and advanced troubleshooting of SailPoint deployments. This role requires close collaboration with internal teams (Vendors, FTEs), Business Partners, and InfoSec Teams to drive the agile delivery of Rubrik's IT project demands, specifically within Identity and Access Management.

What you'll do

  • Solution Design & Architecture:
    Develop and architect comprehensive SailPoint solutions, including configurations, workflows, and custom connectors, ensuring alignment with evolving business requirements and stringent security policies.
  • Application Onboarding & Integration:
    Lead the strategic onboarding of critical applications into SailPoint, encompassing integration with diverse systems (e.g., Active Directory, leading Cloud Platforms, Enterprise Applications) and spearheading the development of advanced custom connectors for seamless data flow and automated user provisioning.
  • Policy, Standards and Compliance:
    Define, implement, and enforce robust IAM policies and standards, ensuring meticulous compliance with critical regulatory requirements (e.g., SOX, HIPAA, GDPR).
  • Identity Governance & Lifecycle Management:
    Design and implement sophisticated solutions for automated user provisioning, efficient access request management, and recurring access certifications to maintain a strong governance framework.
  • Technical Leadership & Mentorship:
    Provide expert technical leadership and mentorship to junior engineers, contributing significantly to the development and promulgation of IAM best practices and architectural standards.
  • Process Optimization & Automation:
    Proactively identify and implement opportunities for significant process improvements and automation across the entire IAM lifecycle, including user onboarding, offboarding, and access review processes.
  • Cross-functional Collaboration:
    Foster strong collaborative relationships with stakeholders across InfoSec, Audit, IT, and Engineering teams to ensure IAM solutions are strategically aligned with overarching business objectives and security initiatives.
  • Advanced Troubleshooting & Optimization:
    Serve as a subject matter expert for complex issue resolution, performance optimization, and ensuring the continuous stability and reliability of SailPoint deployments.
  • Documentation & Knowledge Management:
    Create and maintain comprehensive, high-quality technical documentation for SailPoint configurations, intricate processes, and critical integrations.

Experience you'll need

    • Experience:
      Minimum of 8 years of progressive experience in Identity and Access Management (IAM), with a strong emphasis on SailPoint Identity Security Cloud (ISC) or comparable enterprise-grade IAM platforms (e.g., Saviynt, OneLogin, Microsoft Entra ID, Oracle Identity Governance).
    • Platform Expertise:
      Deep, hands-on expertise with SailPoint Identity Security Cloud (ISC) architecture, including advanced knowledge of its features (Dynamic access roles, Password management, Access certification, Account management, Automated provisioning, Compliance Control, Data access Governance, Reporting, Role management, Access request, Identity Analytics, Identity lifecycle management, Identity Governance, Access Management, Privileged access management (pam)), the platform functionalities, connectors, and best practices.
    • Cloud IAM Proficiency:
      Demonstrable experience implementing and managing IAM solutions within leading cloud environments such as AWS, Azure, or Google Cloud Platform.
    • Security Knowledge:
      Profound understanding of Identity Governance, Privileged Access Management (PAM) principles, and Access Certification processes.
    • Directory Services:
      Extensive familiarity with Active Directory, LDAP, and database integration for IAM purposes.
    • Programming & Scripting:
      Proficiency in at least one of the following: Java or Python, coupled with strong scripting skills in BeanShell/JavaScript or similar for connector development and customization.
    • IAM Foundational Knowledge:
      Exceptional knowledge of core IAM principles, including advanced provisioning, user lifecycle management, access reviews, and robust Role-Based Access Control (RBAC) methodologies.
    • IAM Protocols:
      Proven experience in implementing and optimizing various authentication and authorization mechanisms and protocols, including SSO, SCIM, MFA, OAuth, SAML and OpenID Connect..
    • Business Processes:
      Solid understanding of HR, Onboarding, and Offboarding business processes to effectively translate business needs into IAM solutions.
    • SailPoint Virtual Appliances (VAs):
      Comprehensive understanding of SailPoint Virtual Appliance deployment, configuration, and advanced troubleshooting, including knowledge of underlying virtualization platforms, network security, and SailPoint's APIs, connectors, and integrations.
    • Communication:
      Exceptional communication, interpersonal, and collaboration skills to effectively engage with a diverse range of technical and non-technical stakeholders.

Key Competencies

  • Strategic thinking and ability to align solutions with business objectives.
  • Leadership and mentorship of cross-functional technical teams.
  • Ability to manage multiple priorities and deliver projects on time.
  • High attention to detail and commitment to quality.

 

Join Us in Securing the World's Data

Rubrik (NYSE: RBRK) is on a mission to secure the world’s data. With Zero Trust Data Security™, we help organizations achieve business resilience against cyberattacks, malicious insiders, and operational disruptions. Rubrik Security Cloud, powered by machine learning, secures data across enterprise, cloud, and SaaS applications. We help organizations uphold data integrity, deliver data availability that withstands adverse conditions, continuously monitor data risks and threats, and restore businesses with their data when infrastructure is attacked.

Linkedin | X (formerly Twitter) | InstagramRubrik.com

Inclusion @ Rubrik

At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.

Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.

Our inclusion strategy focuses on three core areas of our business and culture:

  • Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.

  • Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.

  • Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.

Equal Opportunity Employer/Veterans/Disabled

Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. 

Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.

EEO IS THE LAW

NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS

Apply For This Job

* Required

NONDISCLOSURE AGREEMENT

In consideration of any disclosure of certain nonpublic or confidential information, you hereby enter into this Nondisclosure Agreement (the “Agreement”) and agree as follows:

  1. Confidential Information. In connection with a potential business relationship or other business purposes, Rubrik, Inc. (the “Company”) has granted you (the individual or entity named below) access, or may grant you access, to business, technical or other nonpublic information, materials and/or ideas (“Confidential Information,” which term shall include, without limitation, anything you learn or discover as a result of exposure to or analysis of any Confidential Information).
  2. Obligations. You will hold in confidence and will not possess or use (except as required to evaluate the proposed business relationship) or disclose any Confidential Information except information you can document which (i) is in the public domain through no fault of yours, (ii) was properly known to you, without restriction, prior to disclosure by Company or (iii) was properly disclosed to you by another person without restriction. You will not reverse engineer or attempt to derive the composition or underlying information, structure or ideas of any Confidential Information.  You will not export, re-export, resell, ship or divert or cause to be exported, re-exported, resold, shipped or diverted, directly or indirectly, any Confidential Information or product thereof.  You will promptly notify Company of any unauthorized release, disclosure or use of Confidential   You will strictly abide by any and all instructions and restrictions provided by Company from time to time with respect to Confidential Information or Company systems. You will ensure the security of any facilities, machines, accounts, passwords and methods you use to store any Confidential Information or to access Company systems and ensure that no other person has or obtains access thereto.
  3. Return of Information.  If you decide not to proceed with the potential business relationship or if asked by Company, you will promptly return all Confidential Information and all copies, extracts and other objects or items in which Confidential Information may be contained or embodied. 
  4. No License.  This Agreement does not grant a license to you in or to any of the Confidential Information.
  5. Feedback.  You may, at your option and in your sole discretion, provide suggestions or feedback related to the Company’s products or services.  In no event will such suggestions or feedback be considered confidential or proprietary to you.  The Company will be free to use such suggestions as it chooses, without compensation to you.
  6. Disclaimer. Confidential Information is provided to you “as is” and the Company makes no warranties with respect to the Confidential Information or any materials provided by the Company.  In no event will the Company be liable for the accuracy or completeness of the Confidential Information.  You understand that nothing herein (i) requires the disclosure of any Confidential Information of the Company or (ii) requires the Company to proceed with any transaction or relationship.  You understand that this Agreement does not obligate the Company to disclose any information or negotiate or enter into any agreement or relationship.
  7. Miscellaneous.  The terms of this Agreement will remain in effect with respect to any particular Confidential Information until you can document that such Confidential Information falls into one of the exceptions stated in Section 2 above.  You acknowledge and agree that due to the unique nature of the Confidential Information, any breach of this Agreement would cause irreparable harm to Company for which damages are not an adequate remedy, and that Company shall therefore be entitled to equitable relief in addition to all other remedies available at law.  This Agreement is personal to you, nonassignable by you, governed by the internal laws of the State of California and may be modified or waived only in writing signed by both parties.  If any provision of this Agreement is found to be unenforceable, such provision will be limited or deleted to the minimum extent necessary so that the remaining terms remain in full force and effect.  The prevailing party in any dispute or legal action regarding the subject matter of this Agreement shall be entitled to recover attorneys’ fees and costs.
Type your full name in the box below to acknowledge your agreement to the above NDA

See Rubrik’s Candidate Privacy Notice here.


Please view our Candidate Privacy Notice here.