Senior
Databricks- Total compensation
- $136k–$186k Published total compensation range
- Location
- Hybrid - Virginia Remote eligibility
- Employment
- Full-time Senior
About the job
About Databricks
Databricks is the Data and AI company. More than 20,000 organizations worldwide — including adidas, AT&T, Bayer, Block, Mastercard, Rivian, Unilever, and 70% of the Fortune 500 — rely on the Databricks Data + AI Platform to build and scale data and AI apps, analytics and agents. Headquartered in San Francisco with 30+ offices around the globe, Databricks offers a unified platform that includes Genie, Lakebase, Agent Bricks, Lakeflow, Lakehouse, and Unity Catalog.
The Role
As a Sr Production Engineer on the Public Sector team, you will own and evolve the secure infrastructure, access patterns, and guardrails that keep Databricks’ global platform safe and compliant in production. You will be responsible for the 'sovereign layer' of our infrastructure, ensuring that our Data Intelligence Platform operates with 100% reliability and security in highly regulated, air-gapped, and sovereign environments.
What You'll Do
- Design, automate, and operate IAM, account/subscription, and project lifecycle across AWS, Azure, and GCP, enforcing least-privilege and standardized access patterns at scale.
- Review, implement, and continuously improve cloud identity and access policies (IAM, Okta, Opal) to align with Databricks security standards and audit requirements.
- Build and maintain reliable, observable automation and tooling to apply cloud changes (roles, policies, accounts, networking) safely and repeatedly.
- Treat operational and security issues as software problems: eliminate toil, drive root-cause analysis, and codify fixes into infrastructure and tooling.
- Own and improve security and audit logging data pipelines from cloud providers into internal systems, ensuring timely, accurate data for detection, investigations, and audits.
- Partner with Security, Compliance, and Audit teams to provide evidence, clarifications, and policy updates that keep environments aligned with evolving standards.
- Operate and improve specialized, highly regulated environments (e.g., FedRAMP / GovCloud) including release management, patching cadences, and supporting secure access workflows (e.g., SAW).
- Ensure high availability and resiliency for critical security and access infrastructure across these environments.
- Participate in a 24x7 on-call rotation for high-severity incidents impacting cloud accounts, IAM, or security data pipelines.
What We Look For
- Eligibility for a Top Secret / Sensitive Compartmented Information (TS/SCI) security clearance (required).
- Possession of a current polygraph (Counterintelligence or Full Scope) is highly desired (nice to have).
- BS, MS, or PhD in Computer Science, Engineering, or a related technical field, or equivalent practical experience.
- 5+ years of experience in production engineering, SRE, security engineering, or cloud infrastructure roles.
- Deep hands-on experience with at least one major cloud provider (AWS, Azure, or GCP) in areas such as IAM, networking, accounts/subscriptions/projects, and audit logging.
- Strong background in Infrastructure-as-Code and automation (e.g., Terraform, CloudFormation, or similar) and CI/CD for infrastructure changes.
- Proven experience working in or with security-sensitive or regulated environments (e.g., SOC2, FedRAMP, ISO 27001, financial services, public sector) and translating requirements into concrete technical controls.
- Familiarity with access review processes, policy baselines, and audit evidence for cloud environment.
- Demonstrated success running high-availability, security-critical services, including on-call responsibilities and incident management.
- Strong debugging and problem-solving skills across distributed systems, with the ability to navigate ambiguous issues spanning multiple teams and platforms.
- Bonus: Experience with Okta, Opal, or similar identity/access tooling; background operating secure admin workstations (SAW) or comparable hardened access patterns; experience migrating cloud accounts or subscriptions during M&A or large-scale reorganizations.
Compensation & Benefits
Local Pay Range: $135,500—$186,350 USD. The total compensation package may also include eligibility for annual performance bonus, equity, and the benefits listed above. Databricks is committed to fair and equitable compensation practices.
Benefits at Databricks include comprehensive benefits and perks; for specific details on the benefits offered in your region, refer to the company's benefits page.
Skills & tags
Compare the essentials before you leave: pay, remote scope, employment type, source, and the employer apply destination.