Senior Product Security Engineer

4 weeks ago


Bengaluru, Karnataka, India Rippling Full time
About Rippling

Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.

By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take onboarding, for example. With Rippling, you can just click a button and set up a new employees' payroll, health insurance, work computer, and third-party apps—like Slack, Zoom, and Office 365—all within 90 seconds.

Based in San Francisco, CA, Rippling has raised $1.2B from the world's top investors—including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock—and was named one of America's best startup employers by Forbes.

We prioritize candidate safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.

About The Role

We're looking for a hands-on Senior Security Engineer to play a key role in building Rippling's security program. Rippling's product's scope provides a unique set of security challenges, but our management is especially supportive of security and compliance as a central function of the business. As an early member of Rippling's security team, you'll have a meaningful impact on the security program's priorities and direction.

About the team

We are a diverse team of skilled security engineers that are passionate about pushing the boundaries of security practices. We look to collaborate with our Engineering partners to find the right solution for our interesting challenges. Our team thrives on re-imagining approaches to traditional security to secure our vast ecosystem.

Our achievements are shared through our blogs and at conferences and meetups.

A little more about our team:

- Our Infrastructure Security team shared a blog about how they streamlined AWS access
- We spoke at BSides SF about attacking and defending infrastructure with terraform
- Our Product Security lead talked about the Future Application Security Engineers
- Our Security Engineering lead talk about an innovative way to reduce vulnerabilities in your organization

What You'll Do

- Develop and maintain a security architecture strategy, evaluate security technologies, and ensure compliance through design and architecture reviews.
- Provide full SDLC support for new product features developed by engineering and non-engineering teams, including threat modeling, design reviews, manual code reviews, and exploit writing.
- Conduct system security and vulnerability analyses, provide risk mitigation recommendations, and mentor team members in security best practices.
- Build automations or secure paved paths to make it easier for Product Security to scale with the business.

Qualifications

- 8+ years of experience in an product security role
- Experience leading architectural changes or complex cross team efforts to mitigate security vulnerabilities
- Familiar with security frameworks (e.g., NIST SSDF) and regulations (e.g., GDPR, HIPAA).
- Deep understanding of securing web applications
- Fluency in Python, React, and Django Rest Framework
- Experience with manual source code review, and embedding security to code in production environments.
- Experience with deploying application security tools in the CI/CD pipeline
- Experience with securing software development lifecycle including building programs that eliminate full classes of vulnerabilities

Bonus Points

- Good understanding of SSO, including OAUTH, SAML
- Experience with speaking at meetups or conferences
- Experience running a bug bounty program

  • Bengaluru, Karnataka, India Slice Full time

    About the roleAs a Senior Product Security Engineer at slice, you'll contribute technically to advance the Cyber Security program at slice and help the company in making the application and the infrastructure secure as per the industry standards. You will anticipate and identify risks and share any issues with senior members of the team. The ideal candidate...


  • Bengaluru, Karnataka, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes. Take...


  • Bengaluru, Karnataka, India Rippling Full time

    About Rippling Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform. By connecting every business system to one source of truth for employee data, businesses can automate all of the manual work they normally need to do to make employee changes.Take...


  • Bengaluru, Karnataka, India beBeeProduct Full time ₹ 18,00,000 - ₹ 19,50,000

    Security Engineer- Product and SDLC ExpertOur organization is seeking an experienced Security Engineer to lead the security of our products and services. This role involves driving security initiatives, mentoring engineers, and serving as a subject matter expert in ensuring a security-first culture.About the RoleThis position requires a senior, hands-on...


  • Bengaluru, Karnataka, India beBeeProductSecurity Full time ₹ 1,81,91,808 - ₹ 2,51,53,352

    As a senior security engineer, you will play a pivotal role in ensuring the robustness and reliability of our products.Key Responsibilities:Serve as the product security subject-matter expert collaborating with other teams to identify, assess, root-cause, address, validate, and prevent product security issues.Advocate secure development practices, leveraging...


  • Bengaluru, Karnataka, India Traveloka Full time

    Job Description Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...


  • Bengaluru, Karnataka, India Traveloka Full time

    Job DescriptionProduct Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...


  • Bengaluru, Karnataka, India Informatica Full time

    Job DescriptionBuild Your Career at InformaticaWe seek innovative thinkers who believe in the power of data to drive meaningful change. At Informatica, we welcome adventurous, work-from-anywhere minds eager to tackle the world&aposs most complex challenges. Our employees are empowered to push their bold ideas forward, and we are united by a shared passion...


  • Bengaluru, Karnataka, India CareerXperts Consulting Full time

    Staff Security Engineer, Product & SDLCWe're looking for a Staff Security Engineer to join our team. In this role, you'll be a senior, hands-on expert responsible for ensuring the security of our products and services throughout their entire lifecycle. You'll drive security initiatives, mentor engineers, and act as a subject matter expert, helping us build a...


  • Bengaluru, Karnataka, India Traveloka Full time

    Job DescriptionProduct Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure framework. A Product Security Engineer will be smart and self starter. The person needs to find unique ways to understand complex software...