Job Description
Summary
Join our growing security team and help build our business-enabling Security Platform program at Ramp. This role will provide direct impact by owning security platform initiatives to empower cross-functional teams and secure Ramp.
Our team’s mission is to ensure customer data and Ramp systems are protected through the following pods:
- Corporate Security - Implementing solutions to pare down risk and protect our most valuable assets
- Detection & Response - Detecting threats in our environment to proactively respond to potential incidents
- Security Assurance - Providing trust to customers by assessing security risks, controls, and frameworks
- Product Security - Building customer trust by improving Ramp’s products and systems
- Platform Security - Empowering cross-functional partners by building and securing internal security platforms
What You’ll Do
- Own the platform infrastructure and controls (e.g, Source control, Environment separation) across both internal (Retool) and security (Cloudflare Tunnels, DLP solutions) tools
- Implement solutions to securely access databases (e.g., Clickhouse, Snowflake), document storage (e.g., S3 buckets), and secrets
- Own the internal permissions architecture for critical systems to enable cross functional teams while securing customer data
- Utilize infrastructure management tooling (Terraform) to improve critical infrastructure and systems that are used to operate internal Security tools at scale (i.e. compute, networking, deployment, observability, code tooling/libraries, etc.)
- Build dashboards, monitors, and alerts for internal tooling to debug reliability and scalability issues
- Partner cross-functionally to understand and effectively solve pain points and requirements
What You Need
- Minimum of 5 years of experience with scripting languages (e.g., Python) focused on platform, infrastructure, and/or security
- Minimum 2 years of experience developing, securing, and deploying infrastructure for internal (e.g., Retool, Superblocks) or security (e.g, SOAR, DLP) tooling
- Hands-on experience with infrastructure-as-a-code using Terraform to manage cloud environments (AWS, GCP, or Azure)
- Experience building monitors and alerts with tools like Datadog
- Excellent analytical, problem-solving, and communication skills to solve significant complex technical problems
- Ability to work independently and collaboratively in a dynamic and fast-paced environment
- An ability to think through customer requirements and come up with high-impact ways to quickly solve their problems
- In-depth knowledge of security concepts, principles, and best practices, including network security, encryption, authentication, and authorization
Nice to Haves
- Experience with Python (Flask)
- Experience with Clickhouse, Snowflake, Cloudflare
- Experience with Container Orchestration/Web Server Administration (ECS/Kubernetes, Load Balancing, Gunicorn, Flask)
Skills
- Analytical Thinking
- Communications Skills
- Development
- Problem Solving
- Python
- Software Engineering
- Team Collaboration