Talent.com
Staff Product Security Engineer

Staff Product Security Engineer

RipplingSeattle, Washington, United States, 98102
4 days ago
Job type
  • Full-time
Job description

About Rippling

Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system.

Take onboarding, for example. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365all within 90 seconds.

Based in San Francisco, CA, Rippling has raised $1.4B+ from the world's top investorsincluding Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrockand was named one of America's best startup employers by Forbes.

We prioritize candidate safety. Please be aware that all official communication will only be sent from @ Rippling.com addresses.

About The Role

We're looking for a hands-on staff security engineer to play a key role in building Rippling's Product Security program. Rippling's product's scope provides a unique set of security challenges, but our management is especially supportive of security and compliance as a central function of the business. As an early member of Rippling's security team, you'll have a meaningful impact on the security program's priorities and direction.

About The Team

We are a diverse team of skilled security engineers that are passionate about pushing the boundaries of security practices. We look to collaborate with our Engineering partners to find the right solution for our interesting challenges. Our team thrives on re-imagining approaches to traditional security to secure our vast ecosystem.

Our achievements are shared through our blogs and at conferences and meetups.

A little more about our team :

  • Our Infrastructure Security team shared a blog about how they streamlined AWS access
  • We spoke at BSides SF about attacking and defending infrastructure with terraform
  • Our Product Security lead talked about the Future Application Security Engineers
  • Our Security Engineering lead talk about an innovative way to reduce vulnerabilities in your organization

What You'll Do

  • Build guardrails and controls to eliminate full classes of vulnerabilities within the Rippling application
  • Build security tooling and automations to help scale the Product Security team's practices
  • Threat-model application designs and solutions and provide security assessments.
  • Audit source code and perform code review for critical application changes
  • Mentor software engineering teams in security best practices
  • Provide hands-on remediation guidance to development teams
  • Review & establish software development practices that make security an essential part of the development process
  • Develop / Integrate security into the Software Development Life Cycle
  • Qualifications

  • 10+ years of experience in an product security role
  • Experience leading architectural changes or complex cross team efforts to mitigate security vulnerabilities
  • Deep understanding of securing web applications
  • Fluency in Python, React, and Django Rest Framework
  • Experience with manual source code review, and embedding security to code in production environments.
  • Experience with deploying application security tools in the CI / CD pipeline
  • Experience with securing software development lifecycle including building programs that eliminate full classes of vulnerabilities
  • Bonus Points

  • Good understanding of SSO, including OAUTH, SAML
  • Experience with speaking at meetups or conferences
  • Experience running a bug bounty program
  • Additional Information

    Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics, Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email accomodations@rippling.com

    Rippling highly values in-office collaboration. Employees living within 30 miles of an office are expected to work onsite three days a week with those living 30-49.9 miles away expected to be in the office one day a week. Employees living over 50 miles away are required to relocate within 30 miles of an office. To enhance team cohesiveness, new employees are asked to work onsite three days a week for their first six months.

    This role will receive a competitive salary + benefits + equity. The salary for US-based employees will be aligned with one of the ranges below based on location; see which tier applies to your location here .

    A variety of factors are considered when determining someone's compensation–including a candidate's professional background, experience, and location. Final offer amounts may vary from the amounts listed below.

    The pay range for this role is :

    162,000 - 283,500 USD per year(US Tier 2)

    180,000 - 315,000 USD per year(US Tier 1)

    153,000 - 267,750 USD per year(US Tier 3)

    PI7e1f967ef28e-30511-38704031

    Create a job alert for this search

    Product Security Engineer • Seattle, Washington, United States, 98102

    Related jobs
    • Promoted
    Security Engineer - Detection

    Security Engineer - Detection

    VirtualVocationsEverett, Washington, United States
    Full-time
    A company is looking for a Security Engineer - Detection & Response.Key Responsibilities Implement and operate detection systems, including a scalable cloud-native SIEM platform Leverage AI to a...Show moreLast updated: 3 days ago
    • Promoted
    Advanced Security Engineer - Cyber Security

    Advanced Security Engineer - Cyber Security

    RelativitySeattle, WA, United States
    Full-time
    As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Technical Staff Engineer

    Technical Staff Engineer

    VirtualVocationsSeattle, Washington, United States
    Full-time
    A company is looking for a Member of Technical Staff - Rapid Response - Integrations.Key Responsibilities Design, develop, and scale integrations with major cloud providers to support observabili...Show moreLast updated: 10 hours ago
    • Promoted
    Product Manager for AI Security

    Product Manager for AI Security

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Product Manager : AI & Security.Key Responsibilities Define and execute the product roadmap for vulnerability discovery algorithms and coverage optimization Drive prior...Show moreLast updated: 3 days ago
    • Promoted
    SaaS Security Customer Engineer

    SaaS Security Customer Engineer

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Customer Engineer specializing in SaaS security and compliance.Key Responsibilities Guide customers through the implementation of Microsoft Purview solutions for data g...Show moreLast updated: 3 days ago
    • Promoted
    Product Manager for Security Tools

    Product Manager for Security Tools

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Product Manager for Professional Tools.Key Responsibilities Own product strategy for professional security testing tools and workflows Drive expansion into complex vul...Show moreLast updated: 3 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Senior Application Security Engineer.Key Responsibilities Conduct security assessments using SAST, DAST, and SCA tools to identify vulnerabilities in applications Perf...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    VirtualVocationsKent, Washington, United States
    Full-time
    A company is looking for a Senior Product Security Engineer.Key Responsibilities Analyze complex security issues and drive their resolution across systemic security problems Lead security review...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Principal Application Security Engineer

    Principal Application Security Engineer

    VirtualVocationsTacoma, Washington, United States
    Full-time
    A company is looking for a Principal Application Security Engineer.Key Responsibilities Assess potential attack vectors and design defense-in-depth strategies for applications and identity manage...Show moreLast updated: 4 hours ago
    • Promoted
    Staff Full-Stack Engineer

    Staff Full-Stack Engineer

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Staff Full-Stack Engineer, Front-end (SEO Engineering).Key Responsibilities Lead initiatives to enhance performance, SEO, and user engagement for high-traffic organic p...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    VirtualVocationsTacoma, Washington, United States
    Full-time
    A company is looking for a Security Engineer - Detection & Response.Key Responsibilities Implement and operate detection systems, including a scalable cloud-native SIEM platform Leverage AI to a...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    VirtualVocationsEverett, Washington, United States
    Full-time
    A company is looking for a Cyber Security Engineer to support and improve camera infrastructure across multiple store locations. Key Responsibilities Provide hands-on support for the configuration...Show moreLast updated: 30+ days ago
    • Promoted
    Security and Compliance Engineer

    Security and Compliance Engineer

    Talent Software ServicesRedmond, WA, US
    Permanent
    Security and Compliance Engineer Job Summary : Talent Software Services is in search of a Security and Compliance Engineer for a contract position in Redmond, WA. The opportunity will be eight months...Show moreLast updated: 4 days ago
    • Promoted
    • New!
    Security Engineer Incident Response

    Security Engineer Incident Response

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Security Engineer (L5) for the Security Incident Response Team.Key Responsibilities Triage and investigate security events, leading incident response efforts Apply les...Show moreLast updated: 14 hours ago
    • Promoted
    Principal Security Engineer

    Principal Security Engineer

    VirtualVocationsEverett, Washington, United States
    Full-time
    A company is looking for a Principal Security Applied Field Engineer.Key Responsibilities Support the design and architecture of secure, scalable customer workflow solutions tailored to financial...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer with GCP Credential

    Security Engineer with GCP Credential

    VirtualVocationsTacoma, Washington, United States
    Full-time
    A company is looking for a Security Engineer with a focus on Google Cloud Platform and Security Operations.Key Responsibilities Deploy and manage Google Chronicle and Security Command Center (SCC...Show moreLast updated: 16 hours ago
    • Promoted
    Cloud Security Product Manager

    Cloud Security Product Manager

    VirtualVocationsRenton, Washington, United States
    Full-time
    A company is looking for a Principal Product Manager Cloud Security.Key Responsibilities Define and execute product roadmaps for cloud-native security detection and response capabilities Contrib...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsKent, Washington, United States
    Full-time
    A company is looking for a Senior Security Engineer to ensure the security of their cloud infrastructure and software systems. Key Responsibilities Design, implement, and maintain secure cloud arc...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer (GCP SecOps)

    Security Engineer (GCP SecOps)

    VirtualVocationsKent, Washington, United States
    Full-time
    A company is looking for a Security Engineer with a focus on Google Cloud Platform and Security Operations.Key Responsibilities Deploy and manage Google Chronicle and Security Command Center (SCC...Show moreLast updated: 2 hours ago
    • Promoted
    Security Software Engineer

    Security Software Engineer

    VirtualVocationsTacoma, Washington, United States
    Full-time
    A company is looking for a Software Engineer, Infrastructure Security.Key Responsibilities Architect and implement production-grade security services to ensure robust security across infrastructu...Show moreLast updated: 3 days ago