Senior Security Engineer, Offensive Security
RipplingAbout the role
About Rippling
Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system.
Take onboarding, for example. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365—all within 90 seconds.
Based in San Francisco, CA, Rippling has raised $1.4B+ from the world’s top investors—including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock—and was named one of America's best startup employers by Forbes.
We prioritize candidate safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.
About The Role
We're looking for a hands-on Senior Security Engineer - Offensive Security to join Rippling’s growing security team. As a key contributor, you’ll build and lead offensive security initiatives that challenge and improve our defensive capabilities. Our platform’s breadth—spanning HR, IT, Payment, Identity, access, and infrastructure—presents a rich attack surface and a unique opportunity to work on high-impact assessments across multiple domains.
As one of the first members of our security intelligence team at Rippling, you will shape our security intelligence discipline from the ground up and influence how we approach continuous learning and improvement mechanisms across detection, response, and engineering resilience across our systems.
About the team
We are a diverse team of skilled security engineers who are passionate about pushing the boundaries of security practices. We look to collaborate with our Engineering partners to find the right solution for our interesting challenges. Our team thrives on re-imagining approaches to traditional security to secure our vast ecosystem.
A little more about our team:
- Our Infrastructure Security team shared a blog about how they streamlined AWS access
- We spoke at BSides SF about attacking and defending infrastructure with terraform
- Our Product Security lead talked about the Future Application Security Engineers
- Our Security Engineering lead talks about an innovative way to reduce vulnerabilities in your organization
What You'll Do
- Design and execute end-to-end security intelligence exercises to evaluate Rippling’s security posture against detection and response capabilities
- Strategically influence our prioritization and security investments horizontally across all divisions of the company, from Engineering, Operations, Finance, Sales, and others
- Conduct targeted threat emulation, assumed breach, and purple team engagements across cloud infrastructure, endpoints, applications, and identity systems
- Develop custom tooling and automation to support offensive operations
- Perform post-engagement debriefs to the company C-Suite and senior leadership
Qualifications
- 5+ years of experience in a offensive security engineer role
- Experience breaking down complex security problems into measurable and solvable pieces
- Proficiency in scripting languages (e.g., Python, P
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s