rubrik logo

Staff Information Security Engineer

rubrik

Palo Alto, CA

Security Engineering

Posted 5 hours ago

Job Description

<h1><span style="font-size: 12pt;">Staff Information Security Engineer</span></h1> <h2><span style="font-size: 12pt;">Information Security — Who We Are</span></h2> <p><span style="font-size: 12pt;">The Information Security organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security programs. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties securely protect Rubrik information.</span></p> <h2><span style="font-size: 12pt;">What You'll Do</span></h2> <p><span style="font-size: 12pt;">We are seeking a Staff Security Engineer to serve as a technical anchor across the Information Security organization. You will own the architectural direction of our Security Data platform while simultaneously driving cross-functional security initiatives that span multiple teams and domains. This is a high-leverage, hands-on role that blends deep technical execution with organization-wide influence — shaping how Rubrik detects, responds to, and learns from threats at scale.</span></p> <p><span style="font-size: 12pt;">You will be the go-to technical leader for complex, ambiguous problems that cut across team boundaries, setting standards and raising the engineering bar across SecEng.</span></p> <p>&nbsp;</p> <h2><span style="font-size: 12pt;">Core Responsibilities</span></h2> <h3><span style="font-size: 12pt;">Security Data Platform — Architecture &amp; Ownership</span></h3> <p><span style="font-size: 12pt;">Define and own the long-term architecture of Rubrik's Security Data infrastructure. Drive the evolution from SIEM-centric operations toward a composable Security Data Lake (Snowflake, BigQuery, Databricks), ensuring the platform is scalable, cost-efficient, and fit-for-purpose for SOC, Threat Detection, GRC, and Compliance workloads. Establish data quality standards, schema governance, and ingestion SLAs across all security telemetry pipelines.</span></p> <h3><span style="font-size: 12pt;">Technical Leadership Across SecEng</span></h3> <p><span style="font-size: 12pt;">Partner with Threat Detection, Security Operations, GRC, Product Security, and Cloud Security teams to define shared platforms, resolve architectural dependencies, and drive alignment on cross-cutting technical decisions. Own the "how we build" as much as the "what we build."</span></p> <h3><span style="font-size: 12pt;">Engineering Standards &amp; Enablement</span></h3> <p><span style="font-size: 12pt;">Define and champion engineering best practices across SecEng: code quality, observability, incident readiness, cost management, and security-by-design. Conduct architecture reviews for major initiatives across teams. Mentor Junior engineers, accelerating their technical growth through code reviews, design feedback, and pairing.</span></p> <h3><span style="font-size: 12pt;">AI &amp; Agentic Security Automation</span></h3> <p><span style="font-size: 12pt;">Lead the design and delivery of AI-driven security capabilities. Build and productionize AI agents that automate Tier 1/2 SecOps workflows — including alert triage, incident investigation, enrichment, and response. Evaluate and integrate LLMs and GenAI tooling to create force-multiplying capabilities across the security organization.</span></p> <h3><span style="font-size: 12pt;">Strategic Cross-Team Collaboration</span></h3> <p><span style="font-size: 12pt;">Drive alignment across Engineering, Product, IT, and Legal on security platform roadmaps, data governance, and compliance requirements. Represent InfoSec in cross-functional technical forums. Translate ambiguous business requirements into concrete technical strategies that multiple teams can execute against.</span></p> <h3><span style="font-size: 12pt;">Infrastructure &amp; Platform Engineering</span></h3> <p><span style="font-size: 12pt;">Own the deployment and lifecycle of security tooling across cloud environments (AWS, GCP, Azure). Drive Terraform-based IaC practices, manage Kubernetes-based security sidecars and policies, and ensure platform reliability through SLOs and automated runbooks.</span></p> <h3><span style="font-size: 12pt;">Security Operations — Escalation &amp; Oversight</span></h3> <p><span style="font-size: 12pt;">Serve as the senior technical escalation point for complex Security Operations challenges: SIEM/SOAR health, major incident response, vendor evaluations, and architectural POCs. Drive post-incident technical reviews that produce durable improvements to detection and response capabilities.</span></p> <p>&nbsp;</p> <h2><span style="font-size: 12pt;">Qualifications</span></h2> <ul> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Experience: 12+ years in Security Engineering, with deep expertise in Security Data Management, Detection Engineering, or Security Operations — and demonstrated impact beyond a single team or domain.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Technical Breadth: Proven ability to drive architectural decisions across multiple security domains (e.g., SIEM, data platforms, cloud security, detection). Comfortable owning end-to-end technical strategy, not just implementation.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">AI Fluency: Demonstrated experience leveraging AI/LLMs to meaningfully improve SecOps outcomes — from rapid prototyping to production-grade agentic workflows.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">SIEM &amp; SOAR Mastery: Deep, hands-on expertise with at least one enterprise SIEM (Splunk, Microsoft Sentinel, Elastic) and a SOAR platform (Splunk SOAR, Palo Alto XSOAR, or equivalent).</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Security Data Platforms: Proven experience architecting and operating large-scale data platforms (Snowflake, BigQuery, Databricks). Experience with platforms handling 50–100 TB/day is strongly preferred.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Programming: Strong proficiency in Python; experience with data pipeline and orchestration frameworks (Spark,, Airflow, or equivalent).</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Cloud Infrastructure: Strong multi-cloud experience (AWS, GCP, Azure); IaC fluency with Terraform.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Communication: Ability to synthesize complex technical topics for both engineering and executive audiences; experience influencing without authority across organizational boundaries.</span></li> </ul> <p>&nbsp;</p> <h2><span style="font-size: 12pt;">Nice to Have</span></h2> <ul> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Experience defining or contributing to a Security Data strategy at the organizational level.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Hands-on background in Threat Detection engineering (detection-as-code, MITRE ATT&amp;CK coverage mapping).</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Familiarity with data mesh or open table formats (Iceberg, Delta Lake) in a security context.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Experience leading or contributing to major security incident response (e.g., supply chain, nation-state, ransomware).</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Exposure to compliance frameworks (SOC 2, ISO 27001, FedRAMP) and how they intersect with security data retention and access controls.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Background in building internal security platforms or developer-facing security tooling.</span></li> <li style="font-size: 12pt;"><span style="font-size: 12pt;">Experience in container orchestration (Kubernetes/EKS/GKE) and CI/CD security integrations.</span></li> </ul><div class="content-pay-transparency"><div class="pay-input"><div class="description"><span style="font-weight: 400;">The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.</span></div><div class="title">US Pay Range</div><div class="pay-range"><span>$212,800</span><span class="divider">&mdash;</span><span>$319,200 USD</span></div></div></div><div class="content-conclusion"><h2>Join Us in Securing and Accelerating the World's AI Transformation</h2> <p>Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.&nbsp;</p> <p><a href="https://www.linkedin.com/company/rubrik-inc/mycompany/verification/">Linkedin</a> | <a href="https://twitter.com/rubrikinc">X (formerly Twitter)</a> | <a href="https://www.instagram.com/rubrikinc/" target="_blank">Instagram</a> |&nbsp;<a href="https://www.rubrik.com">Rubrik.com</a></p> <h2>Inclusion @ Rubrik</h2> <p>At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.</p> <p>Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.</p> <h3>Our inclusion strategy focuses on three core areas of our business and culture:</h3> <ul> <li> <p style="line-height: 1;">Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.</p> </li> <li style="line-height: 1;"> <p>Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.</p> </li> <li> <p style="line-height: 1;">Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.</p> </li> </ul> <h2>Equal Opportunity Employer/Veterans/Disabled</h2> <p>Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.</p> <p>Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.&nbsp;</p> <p>Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.</p> <p><a href="https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf" target="_blank">EEO IS THE LAW</a></p> <p><a href="https://www.dol.gov/sites/dolgov/files/olms/regs/compliance/eo_posters/employeerightsposter2page_19final.pdf" target="_blank">NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS</a></p></div>
Apply for this position

Hiring for a role like this?

Reach cybersecurity professionals browsing the board — your listing goes live instantly.

Post a job →

Related cybersecurity jobs

rubrik logo

Senior Renewal Operations AnalystNew

Rubrik · Palo Alto, CA

Operations
Posted 3 hours agoApply
rubrik logo
Posted 4 hours agoApply
rubrik logo

SOC Security Analyst - FedRAMPNew

Rubrik · Remote

Security
Posted 6 hours agoApply
rubrik logo
Posted 14 hours agoApply
rubrik logo

Senior AccountantNew

Rubrik · Bangalore, India

Finance
Posted 14 hours agoApply
rubrik logo
Posted 22 hours agoApply

Stay ahead of the curve. Get new infosec jobs in your inbox: