×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Systems Engineer, Corporate Security

Job in New York, New York County, New York, 10261, USA
Listing for: Ramp
Full Time position
Listed on 2026-09-15
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 150000 - 210000 USD Yearly USD 150000.00 210000.00 YEAR
Job Description & How to Apply Below

About Ramp

Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books.

About Ramp

Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books. The problems are high-stakes, data-dense, and unforgiving. We hire people with high agency and high urgency. We look for slope over intercept.

We care less about where you trained and more about what you’ve built. At Ramp, everyone is a builder who owns problems end to end and makes consequential decisions that shape the outcome. The median Ramp customer saves 5% and grows revenue 16% in their first year – far in excess of businesses operating without Ramp. We believe every ambitious company deserves the same.

If you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it.

About

The Role

Corporate Security at Ramp owns the security of our internal environment: the device fleet, the identity and access layer, and the AI tools employees use for their work. We are hiring a Systems Engineer to build and operate the controls across these systems. The role is hands‑on, writing code and building agentic loops wherever possible rather than solving problems manually. You will help manage device configuration and patching via configuration-as-code, authentication and authenticator policies in Okta, network and gateway enforcement in Cloudflare, and the controls around our enterprise Claude and OpenAI deployments.

These systems overlap heavily in practice, and the work is largely about integrating them and automating what would otherwise be manual administration. You will report to the Corporate Security lead and work closely with IT, Security Engineering, and AI DevX.

What you'll do
  • Maintain update policies for both OS and software, and monitor the fleet so that newly introduced applications are brought into the patching cadence
  • Build automation for endpoint security agent remediation across EDR, DLP, VPN, and similar tooling — detecting missing, stale, or unhealthy agents and bringing devices back into compliance
  • Maintain device configuration baselines as code, including drift detection and hardening standards
  • Configure authentication and authenticator policies in Okta: SSO, MFA and authenticator enrollment, device trust, and conditional access
  • Remediate identity posture gaps surfaced by ISPM tooling: stale accounts, orphaned service principals, over‑scoped OAuth grants, MFA gaps, and excess privileges
  • Implement and operate controls for enterprise AI usage, including identity‑aware access, logging and retention, DLP where appropriate, and enforcement
  • Automate across these platforms using their APIs, build reporting on control coverage, and document how the controls you build are operated
What you need
  • 3–5 years of experience in Client Platform Engineer/Endpoint Engineering, Identity Access & Management, or Corporate Security
  • Hands‑on macOS management at scale: MDM (Jamf, Fleet, Kandji, or equivalent) and macOS update mechanisms
  • Working knowledge of an identity provider (Okta or similar): SSO, authentication and authenticator policies, SCIM provisioning, and conditional access
  • Scripting ability in Python, Go, or Bash, and experience automating against platform APIs
  • Experience with EDR and endpoint vulnerability management (Crowd Strike or similar)
  • Ability to…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary