Systems Engineer, Corporate Security

Ramp
New York
Workplace: HybridFull timeUSD 144,000 - 199,000 annuallyFunction: IT Operations (Systems/Network Admin)Experience: 3-5 yearsSkills: ["Ability to evaluate tradeoffs","Clear communication"]

Build and operate security controls for Ramp’s internal environment, covering device fleet management, identity access (Okta), network enforcement (Cloudflare), and enterprise AI deployments. You’ll write code to automate patching and endpoint compliance, remediate agent and identity posture gaps, and implement identity-aware access, logging/retention, and appropriate DLP. Work hands-on across overlapping systems using APIs to integrate, automate, and document control operations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Ramp
Ramp
17 hours ago

Systems Engineer, Corporate Security

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Build and operate security controls for Ramp’s internal environment, covering device fleet management, identity access (Okta), network enforcement (Cloudflare), and enterprise AI deployments. You’ll write code to automate patching and endpoint compliance, remediate agent and identity posture gaps, and implement identity-aware access, logging/retention, and appropriate DLP. Work hands-on across overlapping systems using APIs to integrate, automate, and document control operations.
Location: New York
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Mid level

Key Responsibilities

  • •Maintain OS and software update policies, monitoring the fleet to bring newly introduced applications into the patching cadence.
  • •Build automation to remediate endpoint security agents across EDR, DLP, VPN, and similar tooling to restore compliance.
  • •Maintain device configuration baselines as code, including drift detection and hardening standards.
  • •Configure Okta authentication and authenticator policies, including SSO, MFA, device trust, and conditional access.
  • •Implement and operate controls for enterprise AI usage, including identity-aware access, logging/retention, DLP where appropriate, and enforcement.

Pay and Benefits

Salary: USD 144,000 - 199,000 annually
Equity and Bonus:Equity
Perks:Paid LeaveHealth InsuranceDentalVision401kHome OfficePet InsuranceParental LeaveMeal Allowance

Key Requirements

  • •3–5 years of experience in Client Platform Engineering/Endpoint Engineering, Identity Access & Management, or Corporate Security.
  • •Hands-on macOS management at scale using MDM (Jamf, Fleet, Kandji, or equivalent) and macOS update mechanisms.
  • •Working knowledge of an identity provider (Okta or similar), including SSO, authentication/authenticator policies, SCIM provisioning, and conditional access.
  • •Scripting ability in Python, Go, or Bash, with experience automating against platform APIs.
  • •Experience with EDR and endpoint vulnerability management (e.g., CrowdStrike or similar).
Experience:3-5 years
Skills:Ability to evaluate tradeoffsClear communication
Tech Stack:MacOSMDMJamfFleetKandjiOktaSSOMFASCIMConditional accessPythonGoBashCloudflareCloudflare Zero TrustEDRDLPVPNCrowdStrikeISPM

Company Brief

Ramp
Provides an AI-enabled finance operations platform offering corporate cards, expense management, bill payments, procurement, travel, treasury, and automated accounting to help finance teams save time and money.
Industry: Fintech Infrastructure
Company Size: Enterprise (1,001+ employees)
Revenue: USD 500M to 1B
Growth: Scaleup
Valuation: Decacorn (USD 10B+)
Funding: Series E+
Headquarters: New York, United States
Founded: 2019
Glassdoor
Glassdoor: 4.2
WebsiteLinkedInGlassdoor