Senior Cloud Platform Engineer - FedRAMP
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
The Information Technology team at Rubrik influences business processes, employee experience, and technologies to scale our organization to $1B+. This team creates operational efficiency across the company by centralizing the management of Infrastructure, Technology, and Data. The IT team ensures all stages of the software development lifecycle in a secured environment and scrutinizes the deployment of proper processes along with governance. They champion Rubrik on Rubrik and are the first customers of the Engineering teams at Rubrik. Rubrik Corp IT is constructed of 100% SaaS and 0% on-premises. The IT team caters to accelerated enhancement of business value and multiple day-to-day business processes through our varied SaaS applications like Salesforce.com , Oracle Netsuite, Workday, Snowflake, Etrade, jitterbit, Allocadia, etc. This team also delivers high-paced business outcomes with 100% system uptime backed by agile, nimble, simple, but cohesive Cloud architectures. The Cloud Platform Engineering (CPE) team is responsible for enabling secure, scalable, and cost-optimized adoption of cloud services across AWS, Azure, GCP, and OCI. As a Senior Cloud Platform Engineer , you will be part of the Global Infrastructure & Platform Services organization, working out of our Palo Alto HQ. You will play a key role in designing, building, and governing our multi-cloud foundation services while mentoring junior engineers and driving enhancements across security, compliance, automation, and operational excellence.
Responsibilities
- Drive end-to-end cloud onboarding process for new business units, applications, and teams across AWS, Azure, GCP, and OCI.
- Drive Implementation of secure landing zones, multi-account/tenant structures, IAM and Policies .
- Enforce tagging standards, resource hierarchy models, and governance frameworks to enable accountability, cost tracking, and lifecycle management.
- Manage and evolve IAM, SSO, Org/Subscription/Project policies, and Role-Based Access Controls (RBAC) across all clouds.
- Design and implement security controls including encryption, KMS, VPC Service Controls, privileged access management (PIM), and audit logging.
- Proactively address security vulnerabilities, misconfigurations, and compliance gaps in collaboration with InfoSec.
- Lead periodic Compliance Audits, cloud security and compliance assessments , producing mitigation and remediation strategies.
- Drive cloud financial management : forecasting, budgeting, commitment planning (RIs, Savings Plans), and chargeback/showback reporting.
- Continuously identify cost-optimization opportunities via rightsizing, storage tiering, idle resource elimination, and architecture reviews.
- Lead the development of Infrastructure-as-Code (IaC) templates and automation pipelines using Terraform, Python, and CI/CD to support and manage various aspects of Cloud Operations.
- Mentor and coach junior cloud engineers, fostering technical growth and knowledge sharing.
- Experience you'll need:
- 7+ years of CloudOps/Engineering/Architecture experience with AWS, Azure, GCP (OCI a plus).
- Expertise in IAM, Org/Project design, Security Policies, Logging/Monitoring across and access controls multi-cloud.
- Strong skills in automation/IaC (Terraform, Python, GitOps/CI-CD ).
- Proven experience in cloud financial management and cost optimization.
- Knowledge of regulatory compliance frameworks (SOX, FedRAMP, SOC 2, ISO, HIPAA).
- Excellent communication, collaboration, and leadership skills with a track record of mentoring others.
- Understanding of FedRAMP operational controls, past FedRamp environment experience would be a big plus.
- Security and Privacy Responsibilities :
- This position carries special Security and Privacy Responsibilities for protecting the U.S. Federal Government's interests:
- Know, acknowledge, and follow system-specific security policies and procedures;
- Protect data and individual privacy per requirements and regulations;
- Perform ongoing activities in compliance with service and contractual obligations;
- Participate in role-based training, completing assignments on a timely basis;
- Report security issues promptly, and aid investigation when needed;
- Support controlled changes and vulnerability remediation activities; and
- Work collaboratively with Information Security in designing, implementing, assessing or enhancing system-specific security and privacy controls.
- Position Risk Designation :
- This position carries duties and responsibilities involving the U.S. Federal Government's interests. The selected incumbent may be subject to one or both of the additional background checks with periodic re-screening as noted below:
- Position Risk Designation: Non-Sensitive, Low Risk, Tier 1
- Incumbents without access to U.S. Government data may be required to complete Standard Form 85 and undergo a Tier 1 Investigation (T1) for non-sensitive positions of Low Risk. (Baseline screening; formerly National Agency
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Rubrik? Share your experience