Staff Detection and Response Engineer

5 Months ago • 12 Years + • Software Development & Engineering

Job Summary

Job Description

Rippling is seeking an experienced Security Engineer to join their Detection and Response Team (DART). This role involves building a world-class incident response function, navigating complex security incidents, driving process improvements, and fostering an open culture for learning. The engineer will also develop tools and detection infrastructure to scale detection and response capabilities across production and corporate environments. Responsibilities include responding to security events, performing investigations, triaging incidents, communicating with stakeholders, improving detection and response processes and technologies, developing and running tools for security telemetry, automating workflows, building and optimizing detection rules, developing runbooks and incident playbooks, and leading threat hunting practices.
Must have:
  • 12+ years experience as security engineer
  • Security monitoring and incident response experience
  • Threat hunting in cloud environments
  • Experience leading complex investigations
  • Strong communication skills
  • Expertise in AWS security controls
  • Experience with coding for automation
  • Knowledge of adversary TTPs
  • Experience with data analysis and correlation
  • OS internals and forensics experience
  • Experience with SIEM and SOAR platforms
  • Experience developing tools and automation
  • Understanding of malware functionality
  • Ability to analyze logs for anomalies

Job Details

About Rippling

Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system.

Take onboarding, for example. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365—all within 90 seconds.

Based in San Francisco, CA, Rippling has raised $1.4B+ from the world’s top investors—including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock—and was named one of America's best startup employers by Forbes.

We prioritize candidate safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.


About the role

We are looking for an experienced Security Engineer to join our Detection and Response Team (DART).  You will help us build out a world class incident response function that will navigate challenging security incidents, drive process improvement, develop an open culture where we grow from our mistakes as an organization.   In this role, you will also build the tools and detection infrastructure that we need to scale our detection and response capability across all threats to our Production and Corporate environments.


What you will do

  • Respond to security events, triage, perform investigations, incident analysis, and communicate clearly and efficiently to stakeholders
  • Contribute to improving processes, procedures, and technologies used for detection and response, enabling us to improve after each incident
  • Develop and run tools to gather security telemetry data from cloud production systems 
  • Automate workflows and improve identification and response time for security events
  • Build and optimize detection rules, allowing us to spend our cycles on the alerts that matter
  • Develop runbooks and incident playbooks for new and existing detections
  • Lead Threat hunting practices, suggest product and infrastructure signals to surface attacks and incorporate findings into security controls


What you will need

  • 12+ years of full-time experience as a security engineer, including security monitoring, incident response, and threat hunting in a cloud environment
  • A defensive practitioner who understands offensive security and, the actual scenarios that lead to compromise
  • Prior experience leading complex investigations with a large number of stakeholders
  • Strong communication skills and a proven track record of communicating with internal and external stakeholders at all levels.
  • Expertise on AWS security controls and services. 
  • Experience leveraging coding for automation, alert enrichment and detections. 
  • Knowledge of adversary tactics, techniques, and procedures (TTPs) and MITRE ATT&CK principles
  • Hands-on experience with data analysis, modeling, and correlation at scale
  • Operating systems internals and forensics experience for macOS, Windows & Linux
  • Domain experience managing and working with current SIEM and SOAR platforms
  • Experience developing tools and automation using common DevOps toolsets and programming languages
  • Understanding of malware functionality and persistence mechanisms
  • Ability to analyze endpoint, network, and application logs for anomalous events


Additional Information

Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics, Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email accomodations@rippling.com

Rippling highly values having employees working in-office to foster a collaborative work environment and company culture. For office-based employees (employees who live within a defined radius of a Rippling office), Rippling considers working in the office, at least three days a week under current policy, to be an essential function of the employee's role.

Similar Jobs

Coherent corp. - Yield Engineer – Optoelectronic Device Manufacturing

Coherent corp.

Sherman, Texas, United States (Hybrid)
2 Weeks ago
Illumina - Senior Accounting Analyst - Latin America (Hybrid)

Illumina

State Of São Paulo, Brazil (Hybrid)
1 Week ago
Sportradar - Back-End Developer

Sportradar

Athens, Greece (Hybrid)
3 Weeks ago
Luxoft - Regular Data Engineer

Luxoft

(Remote)
7 Months ago
Greenworks Sunrise Global Marketing - Field Service Technician

Greenworks Sunrise Global Marketing

Orlando, Florida, United States (On-Site)
2 Weeks ago
Scout - Senior Engineer, Side Impact

Scout

Novi, Michigan, United States (On-Site)
1 Week ago
Optiv - Splunk Engineer - TS/SCI with FS Poly

Optiv

Herndon, Virginia, United States (On-Site)
3 Weeks ago
PwC - Manager SAP Sales | CDI | H/F

PwC

Neuilly-sur-Seine, Île-de-France, France (On-Site)
9 Months ago
Qualcomm - Embedded Software Engineer - Display

Qualcomm

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
Assystems - PHE Design Engineer

Assystems

Hyderabad, Telangana, India (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

gym class vr  - VR Gameplay Engineer - Player Interactions & Physics

gym class vr

California, United States (Remote)
2 Months ago
Tesla - Service Technician

Tesla

Hengelo, Overijssel, Netherlands (On-Site)
4 Months ago
Fashionphile - Luxury Sales Specialist

Fashionphile

Scottsdale, Arizona, United States (On-Site)
3 Months ago
Head Digital Works - Associate - Public Policy

Head Digital Works

Delhi, India (On-Site)
2 Weeks ago
Tesla - Service Technician

Tesla

Purmerend, North Holland, Netherlands (On-Site)
4 Months ago
SSC Technologies - Associate Manager

SSC Technologies

New York, United States (Hybrid)
1 Month ago
Assystems - Contracts Specialist

Assystems

Gurugram, Haryana, India (On-Site)
8 Months ago
NinjaVan - Field Sales Executive

NinjaVan

East Java, Indonesia (On-Site)
5 Months ago
Sharkmob - Principal User Researcher

Sharkmob

Malmö, Skåne County, Sweden (On-Site)
1 Week ago
NCR Voyix - IT Support Engineer

NCR Voyix

Chennai, Tamil Nadu, India (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Accenture - Sales Operations Analyst

Accenture

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Nagarro - Principal Consultant, PO

Nagarro

India (Remote)
8 Months ago
PwC - IN_Associate_ Energy_Decarbonisation_Advisory_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
8 Months ago
Roblox - Data Scientist

Roblox

Gurugram, India (On-Site)
2 Weeks ago
ShyftLabs - Data Engineer

ShyftLabs

Noida, Uttar Pradesh, India (Hybrid)
4 Weeks ago
InMobiInMobi - Lead - Learning & Organizational Development

InMobiInMobi

Bengaluru, Karnataka, India (On-Site)
3 Months ago
NCR Voyix - Oracle Fusion Technical/Techno Functional

NCR Voyix

Gurugram, Haryana, India (On-Site)
2 Months ago
Gallagher - Data Scientist

Gallagher

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Neolytix - US Healthcare Trainees– Credentialing and Billing Operations

Neolytix

Gurugram, Haryana, India (On-Site)
1 Month ago
Capgemini - SAP SUPPLY PLANNING ASSOCIATE

Capgemini

Salem, Tamil Nadu, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Software Development & Engineering Jobs

Assystems - Sr. ELV Engineer

Assystems

Gurugram, Haryana, India (On-Site)
8 Months ago
PayPal - Principal Engineer, Personalization

PayPal

New York, New York, United States (Hybrid)
1 Month ago
Rippling - Senior Software Engineer, Payroll Onboarding

Rippling

San Francisco, California, United States (On-Site)
1 Month ago
Roblox - Principal Software Engineer, Virtual Economy Optimization

Roblox

San Mateo, California, United States (On-Site)
1 Week ago
Apple - ASIC Design & Integration Engineer

Apple

Irvine, California, United States (On-Site)
1 Week ago
Univision - Maintenance Engineer

Univision

Los Angeles, California, United States (On-Site)
2 Months ago
Canonical - Observability Engineering Manager

Canonical

(Remote)
1 Month ago
Fictiv - Lead Manufacturing Engineer

Fictiv

Santa Catarina, Nuevo Leon, Mexico (On-Site)
3 Weeks ago
Canonical - Desktop and Embedded Linux Field Engineer

Canonical

Beijing, China (On-Site)
1 Month ago
Ramboll3 - Senior Mechanical HVAC Engineer

Ramboll3

Binghamton, New York, United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Bengaluru, Karnataka, India (On-Site)

Sydney, New South Wales, Australia (Hybrid)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

San Francisco, California, United States (On-Site)

San Francisco, California, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

San Francisco, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Rippling

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug