Principal Security Engineer

RipplingSan Francisco, CA
$207,000 - $345,000Onsite

About The Position

Rippling is looking for a Principal Security Engineer to tackle some of the most complex, cross-cutting security challenges across our technical ecosystem. Reporting directly to the CSO, you will lead high-impact initiatives that span security, AI, infrastructure, identity, developer experience, internal tooling, and third-party SaaS systems. This is a deeply technical, hands-on role for an engineer who can move between architecture and implementation. You will take ambiguous security problems that cross organizational and technical boundaries, develop a cohesive technical strategy, and work alongside engineering teams to build and ship the solution. We’re looking for someone who has designed and delivered large-scale systems, can influence technical direction across multiple teams, and still wants to build. You’ll help redefine and implement parts of Rippling’s security program to take advantage of AI and agentic systems, applying these technologies to security controls, automation, and decision-making in ways that weren’t previously possible. Key initiatives include replacing RBAC for internal system access with a minimal privilege, JIT system using real-time agentic inspection of raw data from the employee graph, system alerts, incidents, customer requests, and support tickets; integrating this JIT access control system into all third-party tools (e.g. SAAS applications) used by Rippling, and working with the product team to enable this for Rippling customers as well; and designing and building robust inter-service isolation and sandboxing, as well as AuthN/Z to manage product attack surface, 0-day blast radius, and limit lateral movement. This role is based in San Francisco.

Requirements

  • Significant experience designing, building, and operating complex systems in large-scale cloud or enterprise environments.
  • A track record of leading technically complex initiatives involving multiple engineering teams, competing requirements, and cross-functional stakeholders.
  • Deep expertise in one or more security domains, with identity and access management (IAM), authentication, authorization, or identity architecture experience particularly relevant.
  • Strong understanding of modern cloud and enterprise architecture, including security boundaries, workload isolation, service-to-service communication, and access-control systems.
  • Recent hands-on engineering experience and the ability to prototype, write code, and work directly with modern development tooling.
  • Experience building defensive agentic systems and integrating them with dynamic software development and operations.
  • Ability to move fluidly between high-level system architecture and detailed implementation decisions.
  • Strong technical judgment and the ability to make pragmatic tradeoffs between security, scalability, developer experience, and business needs.
  • Demonstrated ability to influence senior technical stakeholders without relying on organizational authority.
  • High degree of ownership, urgency, and bias toward action in ambiguous environments.
  • Candidates will have 10+ years experience solving complex engineering and security problems.

Responsibilities

  • Lead the architecture and implementation of complex security initiatives spanning multiple engineering teams and technical domains.
  • Incorporate the use of agentic AI technologies into security capabilities within both product and infrastructure technologies
  • Help business leaders understand and navigate risk tradeoffs to ensure Rippling is making well informed security decisions.
  • Design scalable security systems across areas such as identity and access management, cloud infrastructure, internal tooling, developer infrastructure, and third-party SaaS.
  • Translate ambiguous or fragmented security problems into clear technical architectures, roadmaps, and executable engineering plans.
  • Rationalize requirements and technical roadmaps across three or more teams into cohesive systems and long-term solutions.
  • Partner with senior engineers and engineering leaders across Security, Infrastructure, Developer Experience, IT, and Product to drive alignment on critical technical decisions.
  • Build prototypes, write production code, and remain hands-on throughout the lifecycle of the systems you design.
  • Identify architectural weaknesses and systemic security risks before they become incidents, then drive durable engineering solutions.
  • Establish technical patterns and frameworks that improve security while allowing engineering teams to continue moving quickly.
  • Raise the technical bar across the security organization through design reviews, mentorship, and influence across engineering.

Benefits

  • competitive salary + benefits + equity
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service