Systems Engineer, Corporate Security
Core
Build and operate security controls for Ramp's internal environment, covering device fleets, identity access, and enterprise AI tools.
Role type
Senior Systems Engineer (Corporate Security)
Builds
Automated security controls, device configuration baselines, and identity posture remediation for Ramp's internal infrastructure.
Domain
Corporate Security / Endpoint Engineering / Identity Access Management
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
macOS management at scale (MDM), Identity Provider configuration (Okta), scripting (Python/Go/Bash), EDR and vulnerability management, API automation, drift detection, conditional access policies
Preferred skills
osquery, Fleet, Cloudflare Zero Trust, AI/LLM security, Infrastructure-as-code (Terraform), Windows fleet management, Compliance frameworks (SOC 2, PCI)
Technologies
Okta, CrowdStrike, Cloudflare, Jamf, Fleet, Kandji, Python, Go, Bash, Terraform, GitHub Actions
Responsibilities
Maintain OS and software update policies for the device fleet; Build automation for endpoint security agent remediation (EDR, DLP, VPN); Configure authentication and authenticator policies in Okta; Remediate identity posture gaps (stale accounts, orphaned service principals, MFA gaps); Implement controls for enterprise AI usage (identity-aware access, logging, DLP); Automate across platforms using APIs and document control operations
Seniority
Senior, hands-on IC