remote
Senior Product Security Engineer - Rippling
Security Engineer
Lead security initiatives for a unified HR/IT platform, designing threat models, automating incident response, and integrating security controls across cloud and on‑prem environments using Python, Node.js, and AWS services.
About the role
Key Responsibilities
- Architect and implement security controls for a multi‑tenant SaaS platform, ensuring compliance with industry standards.
- Develop automated threat detection and incident response workflows using Python and Node.js.
- Collaborate with product, engineering, and operations teams to embed security into the CI/CD pipeline and cloud infrastructure (AWS).
- Conduct regular security assessments, penetration tests, and code reviews to identify and remediate vulnerabilities.
- Lead incident investigations, root cause analysis, and post‑mortem documentation.
Requirements
- 5+ years of experience in product security or related roles.
- Proficiency in Python, Node.js, and AWS security services (IAM, KMS, GuardDuty).
- Strong knowledge of threat modeling, secure architecture, and secure coding practices.
- Hands‑on experience with CI/CD security automation and container security.
- Excellent communication skills and ability to translate technical findings to non‑technical stakeholders.