See all roles

[Remote] SOC Team Lead - FedRAMP

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Rubrik is a leading company in the field of data protection and cyber resilience. They are seeking a Security Operations Incident Response Team Lead to oversee incident response activities, lead a team of incident responders, and ensure compliance with FedRAMP requirements while improving the team's capabilities.

Responsibilities

  • Lead and act as the primary investigator during incident response (IR) activities, leveraging expertise in enterprise forensics. You'll ensure all IR investigations are prioritized, escalated properly, and are consistently thorough, accurate, and complete.
  • Investigate escalated security alerts across Rubrik’s corporate network, endpoints, cloud, and SaaS environments.
  • Collaborate with cross-functional teams to drive the timely resolution of IR investigations and response actions.
  • Develop and execute regular exercises to continuously improve the team's incident response capabilities.
  • Maintain accurate incident case attributes and detailed investigation documentation.
  • Oversee the entire vulnerability management lifecycle, including scanning, assessment, prioritization, tracking, and remediation efforts across FedRAMP authorized systems.
  • Analyze threats and vulnerabilities to accurately determine their criticality and risk.
  • Collaborate with ta CTI team to identify, document, and report on information security (InfoSec) threats and emerging trends discovered during incident response activities.
  • Lead after-action reviews and post-mortems to identify areas for improvement and implement lessons learned.
  • Guide and train junior analysts, serving as an escalation point for complex investigations and process questions.
  • Contribute to overall program maturity by providing feedback and ideas to refine and enhance detection capabilities and response processes.

Skills

  • 8+ years of progressive experience in cybersecurity, with at least 2+ years specifically in a security incident response leadership role.
  • Strong technical expertise in security technologies such as SIEM (Sentinel, Splunk, QRadar, etc.), EDR (CrowdStrike, SentinelOne, etc.), network intrusion detection/prevention systems (IDS/IPS), firewalls, and cloud security tools.
  • Deep understanding of incident response methodologies (e.g., NIST, SANS).
  • Demonstrable experience working in environments subject to FedRAMP compliance (e.g., experience with NIST SP 800-53, FedRAMP controls, JAB/Agency ATO processes).
  • Excellent analytical, problem-solving, and decision-making skills under pressure.
  • Strong communication (written and verbal) and interpersonal skills, with the ability to effectively communicate complex technical information to both technical and non-technical audiences.
  • Ability to work independently and as part of a team in a fast-paced, dynamic environment.
  • Relevant security certifications (e.g., CISSP, GCIH, GCFA, CCNP Security, GCP/AWS/Azure Security certifications).
  • Certifications related to vulnerability management or penetration testing (e.g., CompTIA PenTest+, OSCP, CEH) are a plus.
  • Experience with Security Orchestration, Automation, and Response (SOAR) platforms.
  • Familiarity with various cloud service providers (AWS, Azure, GCP) and their security offerings.
  • Proficiency in scripting languages (e.g., Python, PowerShell) for automation and analysis.
  • Experience with digital forensic analysis artifacts, techniques and tools.
  • Knowledge of compliance frameworks beyond FedRAMP (e.g., HIPAA, PCI-DSS, ISO 27001).

Benefits

  • Bonus potential
  • Equity
  • Benefits

Company Overview

  • Rubrik is a data security platform that delivers cyber resilience, cyber posture, and cyber recovery solutions. It was founded in 2014, and is headquartered in Palo Alto, California, USA, with a workforce of 1001-5000 employees. Its website is http://rubrik.com.

Apply tot his job Apply To this Job

You might like

Google Jobs Remote (No Degree)

Work from home Full-time role

Netflix Content Tagger – Amazon Store

Work from home Full-time role

Jail Deputy – Amazon Store

Work from home Full-time role

Juvenile Correctional Officer - Full Time

Work from home Full-time role

Remote Amazon Data Entry Jobs (URGENT)

Work from home Full-time role

Weekend Remote Chat Support Jobs – Work Saturdays & Sundays On – Amazon Store

Work from home Full-time role

Remote Data Verification Assistant – Amazon Store

Work from home Full-time role

Director, Airport Properties (Division Director I) – Amazon Store

Work from home Full-time role

Airport Ramp Agent - PBI (UPS) – Amazon Store

Work from home Full-time role

Administrative Assistant

Work from home Full-time role

Senior Systems Administrator - Remote

Work from home Full-time role

Territory Sales Manager - Construction Technology

Work from home Full-time role

Experienced Remote Data Entry Specialist - Flexible Work from Home Opportunity with Diverse Research Studies and Online Opportunities

Work from home Full-time role

Looking for Online English Tutor – Flexible Hours in Fort Collins, CO

Work from home Full-time role

Experienced Full Stack Customer Service Representative – Remote Work Opportunity with arenaflex

Work from home Full-time role

Experienced Data Entry Specialist for Teens: Join arenaflex's Dynamic Team Today!

Work from home Full-time role

Automation Design Engineer, NA

Work from home Full-time role

Job Title:

Work from home Full-time role

HRIS Specialist (Workday)

Work from home Full-time role

Part Time Activation Team

Work from home Full-time role