Senior Security Analyst, Enterprise Security at Ramp Financial
New York, New York, USA -
Full Time


Start Date

Immediate

Expiry Date

19 Nov, 25

Salary

220600.0

Posted On

20 Aug, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Good communication skills

Industry

Information Technology/IT

Description

Location
New York
Employment Type
Full time
Location Type
Hybrid
Department
Security
Compensation
Target Base Salary $160.4K – $220.6K • Offers Equity
The final compensation will depend on the location and level at which the candidate is hired.

How To Apply:

Incase you would like to apply to this job directly from the source, please click here

Responsibilities

ABOUT THE ROLE

Join Ramp’s Enterprise Security team to operationalize core and sovereign security programs. You’ll oversee Insider Risk, DLP, SaaS posture, and Endpoint security across corporate and FedRAMP‑aligned environments—setting strategy, implementing controls, and measuring outcomes. Ramp is agent‑first: you will securely enable AI assistants and automated workflows across the enterprise.

WHAT YOU’LL DO

  • Harden Core Programs: Evaluate and uplift Insider Risk and DLP coverage; tune detections, policies, and workflows end‑to‑end.
  • Secure SaaS at Scale: Use SSPM/CASB and configuration baselines to remediate misconfigurations, remove stale access/admins, enforce key rotation, and gate risky app/OAuth scopes.
  • Operate Sovereign SaaS: Maintain strict access and monitoring for sovereign Google Workspace and Okta tenants; ensure controls map to NIST 800‑53/800‑171 and FedRAMP‑aligned requirements.
  • Modernize Identity & Access: Enforce phishing‑resistant MFA, device‑aware access, least privilege/JIT, SCIM life‑cycle, and strong break‑glass patterns.
  • Endpoint & Network Defense: Keep macOS/Windows hardened at scale (EDR, disk encryption, MDM), ensure patch SLAs, and apply ZTNA/SSE (e.g., Cloudflare WARP) policies.
  • Continuous Improvement: Define metrics (coverage, policy efficacy, MTTD/MTTR, configuration drift), run control health reviews, and close gaps across corporate and sovereign environments.
  • Partner & Ship: Work with IT to validate endpoint agents and patching; document risks, decisions, and runbooks succinctly.

U.S. CITIZENSHIP IS REQUIRED FOR THIS ROLE.

  • Proven delivery hardening Insider Risk, DLP, SaaS posture, and endpoint controls.
  • Hands‑on Okta administration and Google Workspace security configuration.
  • Experience with EDR/MDM, SSPM/CASB, DSPM, and ZTNA/SSE; macOS/Windows hardening at scale.
  • Solid grasp of IAM and control mapping in FedRAMP‑aligned environments; familiarity with NIST 800‑53/171.
  • Ability to identify gaps, design remediations, automate where possible, and drive adoption across teams.
  • Clear, concise communicator who writes crisp docs and runbooks.
Loading...