Senior Software Engineer - Identity and Access Management

RUBRIK INDIA

Bengaluru

On-site

INR 2,500,000 - 4,200,000

Full time

10 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Rubrik in Bangalore is seeking a Senior Software Engineer for the CPD IAM team to strengthen the identity and access layer of our on-premise data protection platform. You will focus on OIDC/OAuth 2.0, SAML 2.0, Active Directory integrations, and applied cryptography to harden the auth path.

You will design, build, and maintain token mechanics, TLS handling, and security controls while collaborating with core engineering, product, and support teams.

Qualifications

  • 8+ years of software engineering experience
  • Strong Golang skills with production-grade experience
  • Deep knowledge of identity protocols: OIDC/OAuth 2.0 and SAML 2.0
  • Working knowledge of Active Directory
  • Applied cryptography/PKI experience: X.509, TLS
  • Security-focused engineering mindset and threat modeling
  • Solid OS/networking fundamentals and Linux proficiency
  • Shell scripting proficiency (bash) and basic Windows tooling

Responsibilities

  • Design and harden identity and access flows (OIDC/OAuth 2.0, SAML 2.0, AD integrations).
  • Own token lifecycle: issuance, validation, rotation, and revocation for JWT/JWKS and SAML.
  • Apply cryptography/PKI practices (X.509, TLS) to secure auth paths.
  • Build reverse-proxy/HTTP-layer components for authentication traffic.
  • Debug and resolve customer identity issues with support teams.
  • Contribute to build/release and cross-platform packaging (Linux deb/rpm, Windows MSI).
  • Maintain a Windows companion app in C#/.NET.
  • Write end-to-end tests for auth flows and edge cases.
  • Document known issues and design decisions in the knowledge base.
  • Communicate security posture and design tradeoffs to stakeholders.

Skills

Golang programming
OIDC/OAuth 2.0
SAML 2.0
Active Directory
PKI / cryptography
OS fundamentals
Networking concepts
Shell scripting (bash)

Tools

TLS
JWT/JWKS
C#/.NET

Job description

Senior Software Engineer - CPD (IAM)

Location : Bangalore

About Team & About Role:

As a Senior Software Engineer (SSE) in the Continuous Product Delivery (CPD) team, you will play a key role in providing long term stability and last mile delight to our customers. You will work closely with the core engineering team, product, and support org. You will be working across Rubrik releases on our on-premise data backup & management offering, with a focus on the identity and access layer that secures it. You are expected to develop a strong understanding of our product and engineering architecture — particularly how authentication and authorization flow through the system, including our integrations with enterprise identity providers, directory services, and certificate-based trust chains. We are seeking a highly skilled Golang developer with deep, practical experience in identity protocols (OIDC/OAuth 2.0, SAML 2.0) and applied cryptography/PKI. As a Software Engineer on this team, you will be responsible for designing, building, and hardening the systems that authenticate users, machines, and services across our platform — reasoning carefully about threat models, not just shipping features. You should have strong programming and troubleshooting skills, excellent design skills, and a solid understanding of distributed systems, OS fundamentals, and networking. The successful candidate will preferably have working knowledge of Active Directory and be able to work independently and as part of a team.

Responsibilities
  • Design, build, and harden identity and access flows — OIDC/OAuth 2.0, SAML 2.0, Active Directory integrations — that sit in front of mission-critical systems.
  • Own token and assertion lifecycle correctness: issuance, validation, expiry, rotation, and failure-mode handling for JWT/JWKS and SAML assertions.
  • Apply strong applied-cryptography and PKI practices (X.509 certs, key rotation, TLS) to keep the auth path secure by default, not as an afterthought.
  • Build and maintain reverse-proxy/HTTP-layer components (TLS termination, header handling) that front customer authentication traffic.
  • Debug and resolve customer-facing identity/access issues, working with support to triage escalations quickly.
  • Contribute to build/release and cross-platform packaging (Linux deb/rpm, Windows MSI) as needed.
  • Maintain a small Windows companion application written in C#/.NET.
  • Write and enhance end-to-end tests covering auth flows, failure modes, and edge cases (clock skew, revoked tokens, malformed assertions, etc.).
  • Document known issues, workarounds, and design decisions in the team knowledge base as the team and product mature.
  • Communicate clearly with product and engineering stakeholders on design tradeoffs, security posture, and escalation status.
Requirements
  • Must-have Minimum experience of at least 8 Years
  • Strong hands‑on programming skills in Golang .
  • Deep, practical knowledge of identity protocols: OIDC/OAuth 2.0 and SAML 2.0 — including token/assertion internals, standard flows, and failure modes.
  • Working knowledge of Active Directory .
  • Applied cryptography/PKI experience: X.509, JWT/JWKS, key rotation, TLS .
  • Strong security engineering discipline — comfortable reasoning about threat models and building software to protect mission-critical systems, not just make features work.
  • Solid understanding of OS fundamentals, networking, and concurrency.
  • Working knowledge of Linux; comfortable writing shell/bash scripts.
  • Simple, effective written and verbal communication.
  • Nice‑to‑have Directory internals (schema, bind operations).
  • Nice‑to‑have HTTP internals and reverse proxying (TLS, header injection).
  • Nice‑to‑have Build/release and cross-platform packaging (Linux deb/rpm, Windows MSI).
  • Nice‑to‑have Secret‑manager internals, Redis, Win32, policy engines.
  • Nice‑to‑have Basic C#/.NET (to maintain the companion app).
Join Us in Securing and Accelerating the World's AI Transformation

Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real‑time guardrails, fine‑tuning for accuracy and undoing agentic mistakes.

Inclusion @ Rubrik

At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data. Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential. Our inclusion strategy focuses on three core areas of our business and culture: Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries. Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for under‑represented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.

Equal Opportunity Employer/Veterans/Disabled

Rubrik is an Equal Opportunity Employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics.

In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities.

Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job.

Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.

EEO IS THE LAW NOTIFICATION OF EMPLOYEE RIGHTS UNDER FEDERAL LABOR LAWS

Experience Level Senior Level
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Software Engineer - CPD (IAM)
Senior Software Engineer - CPD (IAM)

Rubrik Job Board • Bengaluru

On-site
INR 4,200,000 - 6,200,000
Senior Software Engineer - CPD (IAM)
Senior Software Engineer - CPD (IAM)

Rubrik • Pune District

On-site
INR 4,000,000 - 6,500,000
Senior Software Engineer - CPD (IAM)
Senior Software Engineer - CPD (IAM)

Rubrik • Bengaluru

On-site
INR 900,000 - 1,400,000
Software Engineer - Cloud Native Protection
Software Engineer - Cloud Native Protection

RUBRIK INDIA • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Staff Cloud Security Architect
Staff Cloud Security Architect

Rubrik Job Board • Bengaluru

On-site
INR 4,000,000 - 8,000,000
Field Chief Technology Officer - Asia Pacific & Japan
Field Chief Technology Officer - Asia Pacific & Japan

RUBRIK INDIA • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Cyber Resilience Architect, APJ
Cyber Resilience Architect, APJ

Rubrik Job Board • Mumbai City

On-site
INR 3,500,000 - 5,200,000
Cyber Resilience Architect, APJ
Cyber Resilience Architect, APJ

Rubrik Job Board • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Engineering Manager Polaris Platform
Engineering Manager Polaris Platform

Rubrik • Bengaluru

On-site
INR 4,000,000 - 7,500,000
Senior Sales Engineer
Senior Sales Engineer

Rubrik Job Board • Mumbai

On-site
INR 1,200,000 - 2,100,000