Description:
Rubrik is seeking a highly skilled and experienced Senior IAM Engineer to join our Identity & Access Management team, reporting to the Senior Manager. In this pivotal role, you will design, implement, and operate secure workforce identity services for Rubrik’s RSC‑G environment. You will own Okta administration in FedRAMP Moderate/High contexts, implement strong authentication and authorization controls (MFA, device trust, network zones), integrate SCIM and SSO for SaaS and GovCloud platforms, and partner with InfoSec, Network, CloudOps, and IAM Governance (SailPoint) to sustain compliance, availability, and audit readiness.The same responsibilities will be applicable to Okta Commercial Instance.
What You’ll Do
- Strategy & Architecture: Develop the overall IAM strategy, security frameworks, and architecture for enterprise-wide access control.
- Cloud & Infrastructure: Design IAM solutions for cloud and on-premise environments, supporting access management, SSO, and identity federation.
- Privileged Access Management (PAM): Implement and manage PAM solutions to control access to sensitive accounts and systems.
- Identity Lifecycle Management: Automate processes for user provisioning, de-provisioning, and identity lifecycle management.
- Policy & Governance: Develop IAM policies, standards, and automation frameworks to ensure compliance with industry best practices and regulations (e.g., NIST, GDPR).
- Collaboration: Partner with engineering, operations, and business teams to ensure IAM solutions align with business needs.
- Security & Compliance: Ensure the confidentiality, integrity, and availability of IAM systems and data while supporting audits and risk assessments.
- Application Integration: Implementing and scaling identity protocols like SAML, OIDC, OAuth, and SCIM.
- Security Configuration: Developing robust access controls (RBAC, ABAC) and enhancing security with MFA, Adaptive MFA, and Device Trust.
- Documentation: Creating and maintaining runbooks and change management processes.
- UAR & SOX: Leading User Access Reviews, contributing to audit evidence, and operationalizing logging and monitoring for compliance.
- Automations: Automating identity workflows using Okta Workflows, APIs, and Terraform.
- FedRAMP: Administering and enhancing Okta for FedRAMP environments and integrating with U.S. GovCloud services.
Experience You’ll Need
- 8+ years of experience administering Okta in enterprise environments with hands-on ownership of SSO, SCIM provisioning, Okta Workflows, API automation, and policy management.
- IAM Platforms: Proficiency with modern IAM platforms (e.g., Okta, Azure AD, SailPoint, CyberArk).
- Protocols: Understanding of identity protocols such as SAML, OpenID Connect, and OAuth.
- Cloud Security: Experience with cloud IAM services from providers like AWS, Azure, and GCP.
- Automations: Skills in designing and implementing automated IAM workflows.
- Risk & Compliance: Knowledge of regulatory requirements (e.g., SOX, HIPAA, GDPR) and how they apply to IAM.