Information Security Program Manager
Rubrik
Information Security Program Manager at Rubrik is a full time role based in Bangalore, India, India. It was published on 28 July 2026 and was open at last check.
| Role | Information Security Program Manager |
|---|---|
| Company | Rubrik |
| Location | Bangalore, India, India |
| Employment type | Full Time |
| Published | 28 July 2026 |
| Status | Open at last check |
About the team & role:
Rubrik is seeking an experienced Program Manager to join our Third-Party Risk Assessment team. This team focuses on analyzing and managing risks associated with our vendors, service providers, and other third parties, ensuring our organization upholds the highest standards of compliance, security, and business resilience. While your primary responsibility will be Third-Party Risk Management, you will also collaborate on other cybersecurity risk management initiatives. Building strong cross-functional relationships across the company is a key component of this role. To excel, you must showcase exceptional leadership, communication, and decision-making skills, and have a proven track record in managing third-party risk, vendor governance, or related domains.
What you’ll do?
- Third Party Risk Assessment :
- Lead and conduct comprehensive risk assessments of new and existing third-party vendors and service providers, focusing on cybersecurity, and regulatory compliance.
- Evaluate third-party security questionnaires, audit reports (e.g., SOC 2, ISO 27001), and risk documentation.
- Coordinate with vendors to request and verify security controls, remediation plans, and ongoing compliance.
- Oversee facilitation of risk remediation efforts agreed upon with suppliers, ensuring timely resolution.
- Classify vendors according to risk tiers and maintain a comprehensive database of vendor risk profiles.
- Participate in continuous security monitoring of existing suppliers to track changing risk profiles.
- Partner with Procurement, Legal, Privacy, and InfoSec teams to improve supplier security management processes.
- Collaborate with the risk management team for reporting and remediation.
- Identify opportunities to automate parts of the assessment process, thereby reducing manual work and enhancing efficiency.
- Keep abreast of emerging risks, industry standards, and regulatory requirements affecting third-party vendors.
- Manage and mentor contractors and junior team members, fostering professional growth and maintaining a collaborative team environment.
- Risk Management:
- Support in conduct initial risk assessments and triage incoming security issues related to Rurbik’s core products, services and infrastructure
- Assist in evaluating security risks in new and existing applications, software, and specialized services
- Assist in design and implement data-driven risk management metrics to enhance decision-making and demonstrate the effectiveness of risk mitigation strategies
- Compliance:
- Assist in conducting a common controls framework which shall be required to assess control effectiveness and evidence to support in defining security posture and compliance
- Support in compliance and certification activities
Experience you'll need:
- Bachelor’s degree in Computer Science, Information Security, Cybersecurity, Risk Management, or a related field.
- 5- 8 years of professional experience in third-party risk assessment within cybersecurity or information risk management.
- Understanding of relevant information security frameworks, including related regulatory compliance requirements, such as ISO 27001/2 (including ISO 27017 & 18), FedRAMP, SOC 2 Trust Services Criteria, PCI DSS, NIST CSF.
- Solid understanding of risk assessment methodologies and best practices.
- Ability to synthesize and communicate complex risk findings to both technical and non-technical audiences.
- Detail-oriented, process-driven, and capable of managing multiple vendor assessments concurrently.
- Experience with tools such as Coupa, OneTrust, JIRA and Coverbase is a plus.
- Professional certifications in Information Security or Risk Management (e.g. CISA, CISM, CISSP, CRISC) is a plus.
Join Us in Securing and Accelerating the World's AI Transformation
Rubrik (RBRK), the Security and AI Operations Company, leads at the intersection of data protection, cyber resilience, and enterprise AI acceleration. Rubrik Security Cloud delivers complete cyber resilience by securing, monitoring, and recovering data, identities, and workloads across clouds. Rubrik Agent Cloud accelerates trusted AI agent deployments at scale by monitoring and auditing agentic actions, enforcing real-time guardrails, fine-tuning for accuracy and undoing agentic mistakes.
Linkedin | X (formerly Twitter) | Instagram | Rubrik.com
Inclusion @ Rubrik
At Rubrik, we are dedicated to fostering a culture where people from all backgrounds are valued, feel they belong, and believe they can succeed. Our commitment to inclusion is at the heart of our mission to secure the world’s data.
Our goal is to hire and promote the best talent, regardless of background. We continually review our hiring practices to ensure fairness and strive to create an environment where every employee has equal access to opportunities for growth and excellence. We believe in empowering everyone to bring their authentic selves to work and achieve their fullest potential.
Our inclusion strategy focuses on three core areas of our business and culture:
- Our Company: We are committed to building a merit-based organization that offers equal access to growth and success for all employees globally. Your potential is limitless here.
- Our Culture: We strive to create an inclusive atmosphere where individuals from all backgrounds feel a strong sense of belonging, can thrive, and do their best work. Your contributions help us innovate and break boundaries.
- Our Communities: We are dedicated to expanding our engagement with the communities we operate in, creating opportunities for underrepresented talent and driving greater innovation for our clients. Your impact extends beyond Rubrik, contributing to safer and stronger communities.
Equal Opportunity Employer/Veterans/Disabled
Rubrik is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Rubrik provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Rubrik complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please contact us at hr@rubrik.com if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
Create your free OnJob profile to apply — we'll take you to Rubrik's application after sign-up. · Posted 28 Jul 2026.
Information Security Program Manager at Rubrik — questions answered
What does the Information Security Program Manager role at Rubrik pay?
Rubrik does not publish a salary on this Information Security Program Manager listing, so OnJob shows no figure for it rather than an estimate. For what this role pays across the market, the OnJob salary guides aggregate the live listings that do disclose pay.
Where is the Information Security Program Manager role at Rubrik based?
Rubrik lists this Information Security Program Manager role in Bangalore, India, India, advertised as full time work at that location. Larger employers sometimes cover several sites under one city name, so confirm the exact office with Rubrik before you apply.
Is the Information Security Program Manager role at Rubrik still open?
The Information Security Program Manager posting at Rubrik was open at OnJob's last check of the employer's careers page, having been published on 28 July 2026. OnJob re-checks source listings on each build and marks a role closed once it disappears, but listings can close without notice, so the employer's own page is the final word.
How do you apply for the Information Security Program Manager role at Rubrik?
Apply to the Information Security Program Manager at Rubrik role through OnJob with a free profile: OnJob scores your fit against the listing, shows the skills lowering that score, and submits an ATS-ready profile to Rubrik's own application page. Creating a profile is free and needs no card.
Related jobs you can win
Hand-picked roles that match this listing on skills, category and location — each scored to your profile inside OnJob.
Explore more on OnJob
Hiring for a role like this?
Post a job on OnJob and reach AI-matched candidates.