Staff Product Security Engineer

1 week ago


Bengaluru, Karnataka, India Rippling Full time
About Rippling

Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.
By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take onboarding, for example. With Rippling, you can just click a button and set up a new employees' payroll, health insurance, work computer, and third-party apps—like Slack, Zoom, and Office 365—all within 90 seconds.
Based in San Francisco, CA, Rippling has raised $1.2B from the world's top investors—including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock—and was named one of America's best startup employers by Forbes.
We prioritize candidate safety. Please be aware that all official communication will only be sent from @ addresses.
About The Role

We're looking for a hands-on staff security engineer to play a key role in building Rippling's security program. Rippling's product's scope provides a unique set of security challenges, but our management is especially supportive of security and compliance as a central function of the business. As an early member of Rippling's security team, you'll have a meaningful impact on the security program's priorities and direction.

About the team

We are a diverse team of skilled security engineers that are passionate about pushing the boundaries of security practices. We look to collaborate with our Engineering partners to find the right solution for our interesting challenges. Our team thrives on re-imagining approaches to traditional security to secure our vast ecosystem.


Our achievements are shared through our blogs and at conferences and meetups.


A little more about our team:

  • Our Infrastructure Security team shared a blog about how they streamlined AWS access
  • We spoke at BSides SF about attacking and defending infrastructure with terraform
  • Our Product Security lead talked about the Future Application Security Engineers
  • Our Security Engineering lead talk about an innovative way to reduce vulnerabilities in your organization
What You'll Do
  • Build security tooling and automations to help scale the Product Security team's practices
  • Threat-model application designs and solutions and provide security assessments.
  • Audit source code and perform code review for critical application changes
  • Mentor software engineering teams in security best practices
  • Provide hands-on remediation guidance to development teams
  • Review & establish software development practices that make security an essential part of the development process
  • Develop / Integrate security into the Software Development Life Cycle
Qualifications
  • 8+ years of experience in an product security role
  • Experience leading architectural changes or complex cross team efforts to mitigate security vulnerabilities
  • Deep understanding of securing web applications
  • Fluency in Python, React, and Django Rest Framework
  • Experience with manual source code review, and embedding security to code in production environments.
  • Experience with deploying application security tools in the CI/CD pipeline
  • Experience with securing software development lifecycle including building programs that eliminate full classes of vulnerabilities
Bonus Points
  • Good understanding of SSO, including OAUTH, SAML
  • Experience with speaking at meetups or conferences
  • Experience running a bug bounty program

Additional Information
Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics, Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email


  • Bengaluru, Karnataka, India Harness Full time

    As a Staff Security Engineer, you will lead efforts to extend visibility into Harness' security posture, integrate and automate core security technologies, and drive continuous improvement across our technical estate. You'll use your knowledge to test, design, and secure solutions that enable Harness' business goals, and collaborate directly with engineering...


  • Bengaluru, Karnataka, India Insight Global Full time

    Our client searching for a Staff Information Security Engineer in India. This position is hybrid friendly (WFH several days a week). We're looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you're a high performer who's an expert at your craft, constantly challenging the status quo. You value...


  • Bengaluru, Karnataka, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, Karnataka, India RSA Security Full time

    Responsibilities Work on any number of security and identity related areas and products Build systems for detecting anomalous activities within the product Develops and administers software engineering procedures and training for vulnerability scans and static code analysis Analyse vulnerability report of various SCA and SAST scan tools like, Black Duck,...


  • Bengaluru, Karnataka, India Guidewire Full time

    Responsibilities:Proactively partner with teams across the organization (infrastructure, application engineering, data analytics, etc.) to define, promote and implement security best practices that improve the security posture of our infrastructure.Working closely with business units, product teams, DevOps engineers and/or SRE's to embed security...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense.Menlo is well-funded for growth and our investors...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Member of Technical Staff - Distributed SystemsWe are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. Over the last year we have grown quite rapidly and built a solid team the Bay Area and Bangalore. We are continuing to expand the core engineering team that will build the foundation of this...


  • Bengaluru, Karnataka, India Andromeda Security Full time

    Member of Technical Staff - Distributed Systems We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. Over the last year we have grown quite rapidly and built a solid team the Bay Area and Bangalore. We are continuing to expand the core engineering team that will build the foundation of this...


  • Bengaluru, Karnataka, India netskope software pvt Full time

    Apply for Sr. Staff Engineer, Web Security, Career Progress Consultants in Bengaluru/ Bangalore for Year of Experience on


  • Bengaluru, Karnataka, India netskope software pvt Full time

    Apply for Sr. Staff Engineer, Web Security, Career Progress Consultants in Bengaluru/ Bangalore for Year of Experience on


  • Bengaluru, Karnataka, India RSA Security Full time

    The RSA NetWitness Platform provides pervasive visibility across a modern IT infrastructure, enabling better and faster detection of security incidents, with full automation and orchestration capabilities to investigate and respond efficiently. RSA NetWitness Platform takes security "beyond SIEM," extending the traditional log-centric, compliance-focused...


  • Bengaluru, Karnataka, India Insight Global Full time

    Position Overview:As an Application Security Engineer, you will drive the security of our entire product suite. You will have the opportunity to partner with multiple product teams to champion secure coding practices and secure-by-design development principles.RESPONSIBILITIES:Support application security reviews and threat modelingPerform application...


  • Bengaluru, Karnataka, India Optiv Security Inc. Full time

    We're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...


  • Bengaluru, Karnataka, India Optiv Security Inc. Full time

    We're looking for knowledge-seeking candidates who will be eager to dive into new things in a fast-paced and ever-changing environment. This role is fitting for those looking to trailblaze their career in network security.Operating as the first impression for Optiv clients in many cases, engineers deliver both third-party Authorized Support and Technology...

  • Product Designer

    1 week ago


    Bengaluru, Karnataka, India Andromeda Security Full time

    Product Designer Summary: Andromeda Security is a leading Silicon Valley VC-funded multinational startup dedicated to tackling complex challenges in cloud security. Our mission is to empower businesses by managing cloud credentials effectively and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit,...

  • Product Designer

    1 week ago


    Bengaluru, Karnataka, India Andromeda Security Full time

    Product DesignerSummary:Andromeda Security is a leading Silicon Valley VC-funded multinational startup dedicated to tackling complex challenges in cloud security. Our mission is to empower businesses by managing cloud credentials effectively and preventing security breaches. We pride ourselves on fostering a culture of trust, excellence, humility, grit, and...


  • Bengaluru, Karnataka, India Insight Global Full time

    Position Overview:As an Application Security Engineer, you will drive the security of our entire product suite. You will have the opportunity to partner with multiple product teams to champion secure coding practices and secure-by-design development principles.RESPONSIBILITIES:Support application security reviews and threat modelingPerform application...


  • Bengaluru, Karnataka, India HeadPro Consulting LLP Full time

    Job Title : Senior Staff Info security cloud engineerLocation : BangaloreExp : YearsBudget :LPAMandatory skills :Need someone who have good experience in implementing & supporting information security enterprise level cloud based tools. Candidate should have worked with cloud computing infrastructure architecture.Candidate should have good experience in...


  • Bengaluru, Karnataka, India Euromonitor Full time

    Euromonitor International is the world leader in strategic and tactical business research and analysis. A recognised innovator, consistently out-performing our peers –we now have 15 offices in 14 countries with around 1,200 staff and a further 800 + contributing analysts in over 80 countries around the world. We have come a long way from our beginnings in...


  • Bengaluru, Karnataka, India Fluence Full time

    About Fluence:Fluence Energy, Inc (Nasdaq:FLNC) is a global market leader in energy storage products and services, and optimization software for renewables and storage. With a presence in over 47 markets globally, Fluence provides an ecosystem of offerings to drive the clean energy transition, including modular, scalable energy storage products,...