Underpaidby HiringX

Application Security Engineer

Rubrik

US - RemoteRemoteInformation Security5+ yrs

About the role

About the team:

The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems, provides awareness education to teams on security best practices for data protection, and ensures data sharing relationships with third parties in order to securely protect Rubrik information.

About the role:

Rubrik is seeking an Application Security Engineer. In this role, you will be responsible for ensuring that Rubrik's products and services are designed and implemented to the highest possible security standards. You will partner with a variety of stakeholders across the business to achieve successful security outcomes in product and feature deliverables.

What you'll do:

Integrate security controls and practices into Rubrik’s secure SDLC and collaborate with Engineering to embed security into every phase of the development process.

Architect the agentic scaffolding, including containment boundaries and intervention points, required to govern and scale AI agents performing machine-speed vulnerability triage, research, and remediation.

Perform security assessments of applications, identifying vulnerabilities and weaknesses through both automated and manual testing techniques.

Carry out detailed analysis of identified vulnerabilities to ensure high fidelity findings are provided to Engineering teams.

Assist in identifying and implementing frictionless "shift-left" strategies to seamlessly and proactively prevent vulnerabilities earlier in the SDLC.

Aid in the collection, management and reporting of key Application Security metrics to track progress and identify trends.

Analyze and harden existing applications, automation, and deployment processes

Participate in security design reviews and threat modeling of proposed products and feature releases

Work with development teams, operations, governance, and other stakeholders to document security guidance, processes and standards for Rubrik products and services

Experience you'll need:

Bachelor’s degree required; BS or MS in Computer Science, Information Technology, or a related field

5+ years’ experience in Application Security, with experience across SDLC activities such as threat modeling, secure code review, vulnerability management, and penetration testing

Proven track record of utilizing frontier models to build agentic workflows that scale security operations, successfully automating the end-to-end lifecycle of vulnerability discovery and remediation.

Knowledge of regulatory guidelines and standards such as FedRAMP, SOC2, ISO 27001 etc.

Broad knowledge of web, application, and cloud attack vectors and exploits

Comprehe

Underpaid estimate

~₹18.8 LPA for Security Engineers (industry-wide) · based on 10 submissions

Check yours