Staff Detection and Response Engineer

3 Months ago • 10-15 Years • Cyber Security

About the job

Job Description

Rippling seeks an experienced Security Engineer to join their Detection and Response Team. You'll be responsible for incident response, process improvement, building detection infrastructure, and automating workflows. Expertise in AWS security controls, coding for automation, and adversary tactics is crucial.
Must have:
  • Security Engineer
  • Incident Response
  • AWS Security
  • Threat Hunting
Good to have:
  • SIEM Platforms
  • DevOps Toolsets
  • Malware Functionality
  • Data Analysis
Perks:
  • Top Investors
  • Forbes Best Employer
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

About the job

About Rippling

Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system.

Take onboarding, for example. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365—all within 90 seconds.

Based in San Francisco, CA, Rippling has raised $1.2B from the world’s top investors—including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock—and was named one of America's best startup employers by Forbes.

We prioritize candidate safety. Please be aware that all official communication will only be sent from @Rippling.com addresses.

About The Role

We are looking for an experienced Security Engineer to join our Detection and Response Team (DART). You will help us build out a world class incident response function that will navigate challenging security incidents, drive process improvement, develop an open culture where we grow from our mistakes as an organization. In this role, you will also build the tools and detection infrastructure that we need to scale our detection and response capability across all threats to our Production and Corporate environments.

What You Will Do

  • Respond to security events, triage, perform investigations, incident analysis, and communicate clearly and efficiently to stakeholders
  • Contribute to improving processes, procedures, and technologies used for detection and response, enabling us to improve after each incident
  • Develop and run tools to gather security telemetry data from cloud production systems
  • Automate workflows and improve identification and response time for security events
  • Build and optimize detection rules, allowing us to spend our cycles on the alerts that matter
  • Develop runbooks and incident playbooks for new and existing detections
  • Lead Threat hunting practices, suggest product and infrastructure signals to surface attacks and incorporate findings into security controls

What You Will Need

  • 10+ years of full-time experience as a security engineer, including security monitoring, incident response, and threat hunting in a cloud environment
  • A defensive practitioner who understands offensive security and, the actual scenarios that lead to compromise
  • Prior experience leading complex investigations with a large number of stakeholders
  • Strong communication skills and a proven track record of communicating with internal and external stakeholders at all levels.
  • Expertise on AWS security controls and services.
  • Experience leveraging coding for automation, alert enrichment and detections.
  • Knowledge of adversary tactics, techniques, and procedures (TTPs) and MITRE ATT&CK principles
  • Hands-on experience with data analysis, modeling, and correlation at scale
  • Operating systems internals and forensics experience for macOS, Windows & Linux
  • Domain experience managing and working with current SIEM and SOAR platforms
  • Experience developing tools and automation using common DevOps toolsets and programming languages
  • Understanding of malware functionality and persistence mechanisms
  • Ability to analyze endpoint, network, and application logs for anomalous events

Additional Information

Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics, Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email accomodations@rippling.com

Rippling highly values having employees working in-office to foster a collaborative work environment and company culture. For office-based employees (employees who live within a 40 mile radius of a Rippling office), Rippling considers working in the office, at least three days a week under current policy, to be an essential function of the employee's role.
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Rippling

Similar Jobs

Zebra Technologies - Software Engineer, II

Zebra Technologies, India (Hybrid)

Ello - Mobile Engineer (Flutter)

Ello, Kenya (On-Site)

Scale AI - Remote AI Training Consultant, Coding

Scale AI, Argentina (Remote)

Palo Alto Networks - Solutions Consultant - Strategic Accounts

Palo Alto Networks, United Kingdom (On-Site)

Paytm - Information Security Manager

Paytm, India (On-Site)

Kenvue - APPLICATION SECURITY MANAGER

Kenvue, India (On-Site)

Axinous - Customer Success Engineer

Axinous, Japan (Remote)

Redhorse Corp - Industrial Security Policy SME

Redhorse Corp, United States (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Capco - QA Derivatives

Capco, India (Hybrid)

Dew Software - Microsoft Administrator

Dew Software, India (On-Site)

Assystems - BIM Modeler - Water

Assystems, India (On-Site)

Luxoft - Cyber Security Business Analyst

Luxoft, India (On-Site)

Bounteous - Senior Braze Developer

Bounteous, India (Hybrid)

Myntra - Partner Consultant (Photographer)

Myntra, India (On-Site)

Fugro - Survey Engineer

Fugro, India (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Varonis  - Junior Security Analyst

Varonis , United States (On-Site)

Granicus - Senior Security Analyst

Granicus, India (Hybrid)

Trellix - Professional Services Consultant

Trellix, Japan (On-Site)

Meetelise - Senior Security Engineer

Meetelise, United States (On-Site)

Sporty Group - Information Security Engineer

Sporty Group, (Remote)

Terralogic - THREAT HUNTER

Terralogic, India (On-Site)

Rackspace Technology - GRC Governance Specialist

Rackspace Technology, Mexico (Remote)

Get notifed when new similar jobs are uploaded