Senior Security Engineer, Platform

Ramp

Ramp

New York, NY, USA
Posted on Sep 25, 2024

About Ramp

Ramp is a financial operations platform designed to save businesses time and money. Combining corporate cards with expense management, bill payments, vendor management, accounting automation ,and more, Ramp's all-in-one solution frees finance teams to do the best work of their lives. More than 25,000 companies, from family-owned farms to e-commerce giants to space startups, have saved $1B and 10M hours with Ramp. Founded in 2019, Ramp powers the fastest-growing corporate card and bill payment platform in America, and enables over $35 billion in purchases each year.

Ramp's investors include Sequoia, Greylock, Khosla Ventures, Founders Fund, Stripe, Goldman Sachs, Coatue, and Redpoint, as well as over 100 angel investors who were founders or executives of leading companies. The Ramp team comprises talented leaders from leading financial services and fintech companies—Stripe, Affirm, Goldman Sachs, American Express, Mastercard, Visa, Capital One—as well as technology companies such as Meta, Uber, Netflix, Twitter, Dropbox, and Instacart.

Ramp has been named to Fast Company's Most Innovative Companies list and LinkedIn's Top U.S. Startups for over 3 years, as well as the Forbes Cloud 100, CNBC Disruptor 50, and TIME Magazine's 100 Most Influential Companies.

About the Role

Join our growing security team and help build our business-enabling Security Platform program at Ramp. This role will provide direct impact by owning security platform initiatives to empower cross-functional teams and secure Ramp.

Our team’s mission is to ensure customer data and Ramp systems are protected through the following pods:

  • Corporate Security - Implementing solutions to pare down risk and protect our most valuable assets

  • Detection & Response - Detecting threats in our environment to proactively respond to potential incidents

  • Security Assurance - Providing trust to customers by assessing security risks, controls, and frameworks

  • Product Security - Building customer trust by improving Ramp’s products and systems

  • Platform Security - Empowering cross-functional partners by building and securing internal security platforms

What You’ll Do

  • Own the platform infrastructure and controls (e.g, Source control, Environment separation) across both internal (Retool) and security (Cloudflare Tunnels, DLP solutions) tools

  • Implement solutions to securely access databases (e.g., Clickhouse, Snowflake), document storage (e.g., S3 buckets), and secrets

  • Own the internal permissions architecture for critical systems to enable cross functional teams while securing customer data

  • Utilize infrastructure management tooling (Terraform) to improve critical infrastructure and systems that are used to operate internal Security tools at scale (i.e. compute, networking, deployment, observability, code tooling/libraries, etc.)

  • Build dashboards, monitors, and alerts for internal tooling to debug reliability and scalability issues

  • Partner cross-functionally to understand and effectively solve pain points and requirements

What You Need

  • Minimum of 5 years of experience with scripting languages (e.g., Python) focused on platform, infrastructure, and/or security

  • Minimum 2 years of experience developing, securing, and deploying infrastructure for internal (e.g., Retool, Superblocks) or security (e.g, SOAR, DLP) tooling

  • Hands-on experience with infrastructure-as-a-code using Terraform to manage cloud environments (AWS, GCP, or Azure)

  • Experience building monitors and alerts with tools like Datadog

  • Excellent analytical, problem-solving, and communication skills to solve significant complex technical problems

  • Ability to work independently and collaboratively in a dynamic and fast-paced environment

  • An ability to think through customer requirements and come up with high-impact ways to quickly solve their problems

  • In-depth knowledge of security concepts, principles, and best practices, including network security, encryption, authentication, and authorization

Nice to Haves

  • Experience with Python (Flask)

  • Experience with Clickhouse, Snowflake, Cloudflare

  • Experience with Container Orchestration/Web Server Administration (ECS/Kubernetes, Load Balancing, Gunicorn, Flask)

Benefits (for U.S.-based full-time employees)

  • 100% medical, dental & vision insurance coverage for you

    • Partially covered for your dependents

    • One Medical annual membership

  • 401k (including employer match on contributions made while employed by Ramp)

  • Flexible PTO

  • Fertility HRA (up to $5,000 per year)

  • WFH stipend to support your home office needs

  • Wellness stipend

  • Parental Leave

  • Relocation support for NY

  • Pet insurance

Other notices

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.