Staff Information Security Program Manager - FedRAMP
RubrikAbout the role
About the team:
The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties in order to securely protect Rubrik information.
About the role:
Information Security is looking for a success-driven, US-based Staff Program Manager to organize, plan, lead, and execute on public sector certification and compliance activities for Rubrik’s government-focused cloud and on-premises product offering(s). This mission-critical position will lead or support product security accreditation under frameworks such as Common Criteria, NIAP Protection Profile, DoD Impact Level, CMMC, FedRAMP, GovRAMP, DISA STIG, and more. In addition, s/he may perform a limited set of Facility Security Officer (FSO) duties.
Our ideal candidate brings previous experience across public sector product certification and compliance activities for a Cloud Product Provider organization. They will also bring excellent leadership aligned with Rubrik’s values, demonstrating personal accountability for results, and reliable attention to detail. The selected candidate must have solid skills in communication, presentation, collaboration, decision-making, and organization.
This role represents Rubrik externally with selected Government / Agency Partner(s) and certification offices, third party assessors / lab testers, and in sales calls with customers and prospects. The incumbent will help Rubrik accelerate and assure the growth of our government-based business through implementing security controls, ensuring flaw remediation, performing continuous monitoring, and meeting timely reporting requirements for each product certification we obtain.
The environment at Rubrik is dynamic and fast-paced, with strong, supportive leadership and amazing colleagues who enjoy getting things done. You’ll need to be comfortable solving complex problems, working through ambiguity, and relentlessly pursuing progress over perfection. Assignments here can vary from starting new programs, handling operational tasks and delivering cross-functional projects. Consistently strong performance is essential here. In return, you’ll enjoy a culture that rewards excellence while honoring the importance of a healthy work-life balance.
What you'll do:
Program / Development
- Implement and serve as Program Lead / Control Owner for assigned program frameworks and activities, staying current on changes in the landscape, standards, and associated procedures for certification. Knows the role and technology inside out; drives multiple programs internally and cross functionally.
- This role translates certification and compliance gaps into Engineering or Process requirements. Each translation must clearly identify product or control gaps and effectively propose options and success criteria for ensuring risk-based remediation on a timely basis.
- Lead by influence, and collaborate with a range of stakeholders from individual contributors to senior leadership to external parties including Gov/Agency Partners and/or Third Party Security Labs or Assessors.
- Drive activities related to the remediation of technical security and compliance risks with cross-functional teams, including, but not limited to, engaging third party services, using Jira to manage initiatives / epics / stories / tasks, leading meetings or presentations, assigning and tracking work items, producing reports, and escalating risks and issues.
- Serve as a subject matter expert and an integral member of the public sector compliance team, cultivating strong relationships across the company to aid in achieving consensus, expectation setting, risk and vulnerability awareness, and continual process improvement.
- Work continually toward process improvements and enhancements in security capability or maturity. Drives organizational change and defines objectives for projects and programs, setting the desired outcomes and timing for execution. Implements automation for scalability as opportunities arise.
- Contribute data / metrics to IS leadership; is capable of presenting to executives, leadership, customers / external partners.
- Cross-train team members to enable continuous monitoring and program coverage. Teaches and mentors others to educate them on the applicable program or control(s).
- Develop and maintain the definitive calendar of compliance requirements for assigned pu
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s