Rubrik is a leader in data protection and cyber resilience, seeking an Enterprise Security Engineer to enhance the security of its Corporate Enterprise IT technologies. The role involves designing and implementing security standards, partnering with various stakeholders to improve security posture, and actively managing security and compliance policies.
Responsibilities:
- Design and implement security standards across Identity (Okta), Endpoint (Windows, MacOS, Linux), Secrets Management (Vault, Lastpass) and Business Applications (Salesforce, Glean, etc)
- Partner with IT and other organizations to improve the security posture of enterprise applications, integrations, and access to sensitive and business data
- Actively participate in evaluation, development, and management of security and compliance policies within IT management systems such as JAMF, inTune, etc
- Analyze and harden existing applications, infrastructure, automation, and deployment processes: CircleCI, Github workflows, Tines, Zapier, etc
- Work with Corp IT teams, operations, governance, and other stakeholders to draft security standards and implement monitoring, alerting, and governance
- Review and approve application security review requests to ensure new applications used by Rubrik and employees are secure, monitored, and security standards are enforced
- Support the SOC in analyzing applicable threats, vulnerabilities, controls, and residual risks
- Partner with Vulnerability Management and Threat Operations to drive remediation of critical vulnerabilities and detection of IOC’s in the environment
- Actively monitor and manage EDR policies
- Partner with the organization to deploy technologies for AI usage and security
- Leverage AI tools and agents to improve team performance, enterprise security capabilities, and team efficiency - do more with less and faster
Requirements:
- 6+ years experience in enterprise security, with hands on experience in administration and design across Windows, Mac, Okta and public cloud infrastructure
- Broad knowledge of enterprise attack vectors and exploits in both end-user and IT Apps
- Subject matter expertise in business applications, endpoint and Identity management
- Deep understanding of endpoint systems, corporate networking including wi-fi and IT application systems (Salesforce, Mulesoft, Lastpass, etc)
- Programming experience in PowerShell, Python, Go or Java
- Experience with deploying and securing Enterprise applications and environments at scale
- Security and administrative expertise in at least one major public cloud provider (AWS, GCP, Azure)
- Understanding of corporate security maturity model frameworks and how to apply them
- Strong written and verbal communication skills
- Knowledge of regulatory guidelines and standards such as SOC2, ISO 27001, FedRAMP, etc