-
Senior Site Reliability Engineer - FedRAMP
- Rubrik (Dover, DE)
-
About the team:
The Information Security organization advances the overall state of security at Rubrik through critical initiatives and coordination of large security projects. Information Security builds technologies, tools, and
processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to
attacks against our assets, provides awareness education to teams on security best practices for data protection, and ensures data governance and data sharing relationships with third parties in order to
securely protect Rubrik information.
About the role:
Rubrik is seeking creative problem solvers with a passion for cyber security. In this role you will partner with all parts of the business to build security solutions that help secure the brand and protect the
organization, company and customer environments. You will be responsible for executing security engineering programs and managing security technologies across the board. The ideal candidate for this
role is someone who can build innovative ways to deliver frictionless security capabilities to enhance the security posture of the organization.
What you'll do:
• Deploy and operate security solutions and supporting infrastructure in cloud and datacenter environments in support of internal customer security needs and FedRAMP requirements
• Develop and automate Security tasks that span from Security Operations to Infrastructure as Code in support of InfoSec initiatives
• Manage the availability, capacity and configuration of InfoSec’s mission critical applications and services
• Define, measure and monitor SLAs & SLOs for systems and services with the objective of achieving and exceeding availability and reliability goals
• Manage and streamline monitoring systems to enhance observability and enable proactive identification of issues.
• Coordinate and manage incidents, upgrades and changes for InfoSec’s applications and services
• Drive post-incident analysis with partner teams and/or vendors to identify root cause and ensure preventative measures are implemented promptly
• Assist in Security Incident investigations
• Manage a scalable and highly available solution for security logging and drive efforts of logging onboarding for increased security visibility
• Perform Production Readiness Assessments of new services to identify reliability needs and surface potential gaps
• Develop and maintain documentation and runbooks to reduce MTTR and inform future automation development
• Work cross functionally across global time-zones requiring flexible work hours
• Participate in 24/7 on-call rotations
Experience you'll need:
• Bachelor degree in Computer Science or related field or equivalent experience
• 8+ years experience in security engineering, building and managing security solutions across the stack (on-prem and cloud)
• Strong understanding of logging and data management best practices and strong experience in any logging and/or SIEM platform
• Experience with Vault, Terraform, Puppet, Jenkins and Github
• Proficiency in any scripting language (Python, PowerShell, Perl, Ruby, shell, etc.)
• Working experience in GCP, AWS or Azure
• Operational knowledge of Linux and Windows systems
• Experience with with security automation and data management tools (XSOAR, Phantom, Snowflake, etc)
• Prior experience working in environments with NIST 800-53, NIST 800-171 controls or FedRAMP requirements
Preferred Qualifications:
• Security certifications are a plus (CISSP, CISM, SANS certs, vendor certs, etc.)
• Experienced knowledge of container technologies (Docker, Kubernetes, etc), microservices and
CI/CD pipelines
Security and Privacy Responsibilities** **:
This position carries special Security and Privacy Responsibilities for protecting the U.S. Federal Government’s interests:
+ Know, acknowledge, and follow system-specific security policies and procedures;
+ Protect data and individual privacy per requirements and regulations;
+ Perform ongoing activities in compliance with service and contractual obligations;
+ Participate in role-based training, completing assignments on a timely basis;
+ Report security issues promptly, and aid investigation when needed;
+ Support controlled changes and vulnerability remediation activities; and
+ Work collaboratively with Information Security in designing, implementing, assessing or enhancing system-specific security and privacy controls.
Position Risk Designation** **:
This position carries duties and responsibilities involving the U.S. Federal Government’s interests. The selected incumbent may be subject to one or both of the additional background checks with periodic re-screening as noted below:
Position Risk Designation: Non-Sensitive, Low Risk, Tier 1
_Incumbents without access to U.S. Government data may be required to complete Standard Form 85 and undergo a Tier 1 Investigation (T1) for non-sensitive positions of Low Risk. (Baseline screening; formerly National Agency Check and Inquiries (NACI))._
Position Risk Designation: Non-Sensitive, Moderate Risk, Tier 2 (Public Trust)
_Incumbents with access to U.S. Government data may be required to complete Standard Form 85P and undergo Tier 2 (T2) Investigation for non-sensitive positions designated Moderate Risk._
Position Risk Designation:Moderate Risk Law Enforcement (CJIS)
_When hired for a position where access to Moderate Risk criminal justice information is required, the employee must complete a fingerprint-based national criminal history background check within 30 days after the employee’s start date._
The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.
US (SF Bay Area, DC Metro, NYC) Pay Range
$176,300—$264,400 USD
The minimum and maximum base salaries for this role are posted below; additionally, the role is eligible for bonus potential, equity and benefits. The range displayed reflects the minimum and maximum target for new hire salaries for the role based on U.S. location. Within the range, the salary offered will be determined by work location and additional factors, including job-related skills, experience, and relevant education or training.
US2 (all other US offices/remote) Pay Range
$158,700—$238,000 USD
Join Us in Securing the World's Data
Rubrik (NYSE: RBRK) is on a mission to secure the world’s data. With Zero Trust Data Security™, we help organizations achieve business resilience against cyberattacks, malicious insiders, and operational disruptions. Rubrik Security Cloud, powered by machine learning, secures data across enterprise, cloud, and SaaS applications. We help organizations uphold data integrity, deliver data availability that withstands adverse conditions, continuously monitor data risks and threats, and restore businesses with their data when infrastructure is attacked.
Linkedin (https://www.linkedin.com/company/rubrik-inc/mycompany/verification/) | X (formerly Twitter) (https://twitter.com/rubrikinc) | Instagram (https://www.instagram.com/rubrikinc/) | Rubrik.com
Inclusion @ Rubrik
At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.
Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.
Our inclusion strategy focuses on three core areas of our business and culture:
+ Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.
+ Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.
+ Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.
Equal Opportunity Employer/Veterans/Disabled
Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at [email protected] if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
EEO IS THE LAW (https://www.eeoc.gov/sites/default/files/2023-06/22-088\_EEOC\_KnowYourRights6.12ScreenRdr.pdf)
NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS
-