Security Engineer, Product
Security Engineer · Senior · Full Time
Opens Ramp's application page
Role
What you'll do.
A Senior Security Engineer role at Ramp, a fast-growing fintech company, focusing on building secure application primitives, deploying platform-level security mitigations, and collaborating with engineering teams to design inherently secure solutions. Requires 5+ years of software development experience with 2+ years in security or infrastructure.
Responsibilities
- Security Application Development: Build security-focused application primitives and integrate them into existing products
- Platform Security Solutions: Design and deploy platform-level mitigations to common security issues
- Vulnerability Remediation: Lead remediation of prioritized issues across technology stack, collaborating with engineers to triage and fix vulnerabilities
- Security Architecture: Partner with engineering teams to design and deploy solutions which are inherently secure
- Security Tooling: Champion the use of security tooling including linters, static analysis, posture assessment scanners, and query inspectors
Qualifications
What we look for.
Technical
Software Development
Minimum 5 years of experience building software applications
Security/Infrastructure Focus
Minimum 2 years of experience focused on platform, infrastructure, and/or security
Business Solution Translation
Ability to turn business and product ideas into engineering solutions
Experience
Fast-Paced Environment
Desire to work in a fast-paced environment with continuous growth mindset
Values Alignment
Alignment with Ramp's core values of enabling businesses to grow more by spending less
Skills
Required
Software Engineering
5+ years of experience in software development with strong engineering fundamentals
Security Engineering
2+ years of hands-on experience in security, platform, or infrastructure engineering
Vulnerability Management
Experience with identifying, triaging, and remediating security vulnerabilities
Security Tooling
Proficiency with security tools including static analysis, linters, and security scanners
Preferred
Python/Flask
Nice to haveExperience developing backend services using Python and Flask framework
Elixir
Nice to haveKnowledge of Elixir for building concurrent and fault-tolerant systems
AWS Security
Nice to haveExperience analyzing and improving security posture of AWS infrastructure
AWS ECS
Nice to haveHands-on experience with Amazon ECS and other core AWS services
Cloud Security
Nice to haveUnderstanding of cloud security best practices and threat models
Tech stack
Languages
Frameworks
Tools
Other
Compensation
Pay and benefits.
Base·USD 257,800 – 354,550
Benefits
Health Insurance
100% medical, dental & vision insurance coverage for employee, partially covered for dependents
One Medical
Annual membership to One Medical healthcare service
401k Plan
Retirement plan with employer match on contributions made while employed
Flexible PTO
Unlimited paid time off policy
Fertility Benefits
Health Reimbursement Account up to $10,000 per year for fertility treatments
Parental Leave
Paid leave for new parents
AI Token Usage
Unlimited access to AI tools and platforms
Pet Insurance
Coverage for pet healthcare expenses
Home Office Setup
Centralized equipment ordering for remote work setup
Health & Wellness Stipend
Allowance for health and wellness expenses
Office Perks
In-office lunch, snacks, drinks, and amenities
Travel Budget
Budget for intra-office travel between locations
Relocation Support
Assistance with relocation to NYC or SF as needed
Process
Interview steps.
- 01
Initial Screen
Phone or video screening with recruiter to discuss background and role fit
- 02
Technical Interview
Deep dive into security engineering experience, system design, and problem-solving approach
- 03
Security Case Study
Technical discussion around real-world security scenarios and remediation strategies
- 04
Team Collaboration
Interview with engineering team members to assess collaboration and communication skills
- 05
Final Interview
Leadership interview focusing on cultural fit and alignment with Ramp's values
Full posting
Original listing.
About Ramp
At Ramp, we’re rethinking how modern finance teams function in the age of AI. We believe AI isn’t just the next big wave. It’s the new foundation for how business gets done. We’re investing in that future — and in the people bold enough to build it.
Ramp is a financial operations platform designed to save companies time and money. Our all-in-one solution combines payments, corporate cards, vendor management, procurement, travel booking, and automated bookkeeping with built-in intelligence to maximize the impact of every dollar and hour spent. More than 50,000 businesses, from family-owned farms to e-commerce giants to space startups, have saved $10B and 27.5M hours with Ramp. Founded in 2019, Ramp powers the fastest-growing corporate card and bill payment platform in America, and enables over $100 billion in purchases each year.
Ramp’s investors include Lightspeed Venture Partners, Thrive Capital, Sands Capital, General Catalyst, Founders Fund, Khosla Ventures, Sequoia Capital, Greylock, Redpoint, and ICONIQ, as well as over 100 angel investors who were founders or executives of leading companies. The Ramp team comprises talented leaders from leading financial services and fintech companies—Stripe, Affirm, Goldman Sachs, American Express, Mastercard, Visa, Capital One—as well as technology companies such as Meta, Uber, Netflix, Twitter, Dropbox, and Instacart.
Ramp has been named to Fast Company’s Most Innovative Companies list and LinkedIn’s Top U.S. Startups for more than 3 years, as well as the Forbes Cloud 100, CNBC Disruptor 50, and TIME Magazine’s 100 Most Influential Companies.
About the Role
The Product Security team helps make Ramp the most secure place for our customers to collect, manage, and put to work their business’ financial information.
Our work centers in three areas:
Ramp builds products with an eye for security
Ramp detects and responds to threats before they cause harm
Security powers Ramp’s growth
Check out our Engineering Blog for more on our tech stack, mission and values!
What You’ll Do
Build security-focused application primitives and integrate them into our existing products
Design and deploy platform-level mitigations to common security issues
Lead remediation of prioritized issues across our technology stack: collaborating with other engineers to triage and fix vulnerabilities discovered internally, through penetration testing, and through our bug bounty program
Partner with engineering teams to design and deploy solutions which are inherently secure
Champion the use of tooling (linters, static analysis, posture assessment scanners, query inspectors, etc.) which help Ramp engineers build secure systems more quickly
What You Need
Minimum of 5 years of experience building software
Minimum of 2 years of experience focused on platform, infrastructure, and/or security
Desire to work in a fast-paced environment, continuously grow, and master your craft
Ability to turn business and product ideas into engineering solutions
Alignment with Ramp’s core values of enabling businesses to grow more by spending less
Nice to Haves
Experience with Python (Flask), Elixir, and AWS (ECS, as well as other core services)
Experience analyzing and improving the security posture of infrastructure in AWS
Benefits (for U.S.-based full-time employees)
100% medical, dental & vision insurance coverage for you
Partially covered for your dependents
One Medical annual membership
401k (including employer match on contributions made while employed by Ramp)
Flexible PTO
Fertility HRA (up to $10,000 per year)
Parental Leave
Unlimited AI token usage
Pet insurance
Centralized home-office equipment ordering for all employees
Health and Wellness stipend
In-office perks: lunch, snacks, drinks, and more
Budget for intra-office travel
Relocation support to NYC or SF (as needed)
Referral Instructions
If you are being referred for the role, please contact that person to apply on your behalf.
Other notices
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Beware of recruiting scams: Ramp will only contact you through official @Ramp.com email addresses and will never ask for payment or sensitive personal information during the hiring process.
Redirects to Ramp's application page.
Other roles
More at Ramp.
Staff Software Engineer | iOS
Staff
Applied AI Engineer, Fullstack
Senior
Software Engineer, International
Senior
Software Engineer, Onboarding
Mid
Senior Software Engineer | GTM Platform, Backend
Senior