Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Senior Staff Security Engineer, Ripple Treasury role.
Rezi rewrites your resume against Ripple's job description. Free.

Tailor your resume to this Senior Staff Security Engineer, Ripple Treasury role.
Rezi rewrites your resume against Ripple's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Senior Staff Security Engineer, Ripple Treasury posting at Ripple — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Senior Staff Security Engineer, Ripple Treasury posting at Ripple — free, in seconds.
About the Role
As a Senior Staff Security Engineer at Ripple, you will be a senior technical security practitioner focused on application security, cloud infrastructure security, and secure software delivery. This role is crucial for enhancing Ripple's security posture as the engineering organization scales and faces an evolving threat landscape. You will partner with Ripple Treasury Product and Engineering teams to lead technical direction in product and infrastructure security, secure design, threat modeling, vulnerability management, and cloud security architecture.
Responsibilities
- Serve as the dedicated Security Engineering partner for Ripple Treasury BU, owning the security posture of the Treasury solution and infrastructure environment from assessment through remediation and ongoing maturity improvement.
- Lead threat modeling and security architecture reviews across Treasury offerings.
- Own the secure software development lifecycle for your product surface area, defining security guardrails, CI/CD integrations, and developer guidance.
- Drive the cloud security architecture for Treasury across Azure and AWS, including IAM, network segmentation, encryption, zero trust controls, Kubernetes traffic policies, and DDoS and WAF strategy.
- Partner with GRC to ensure Treasury meets its compliance obligations across SOC 2, ISO 27001, and applicable financial regulatory frameworks.
- Own vulnerability discovery via security assessments, penetration testing and bug bounty, driving findings through triage, prioritization, remediation, and validation with a bias toward automation and developer self-service.
- Build and scale a Security Champions model within Treasury Engineering.
- Influence engineering architecture decisions at the senior level, participating in design reviews and architectural assessments.
- Mentor and develop Security Engineers, raising the technical bar through threat model walkthroughs, design discussions, and structured knowledge sharing.
- Stay ahead of the threat landscape for FinTech, crypto, and enterprise treasury systems, translating emerging attack techniques into concrete defensive improvements.
Requirements
- 10+ years of Security Engineering experience, including hands-on work in Product Security and Infrastructure Security.
- Expert-level product security skills including threat modeling using STRIDE or equivalent, security architecture review, OWASP Top 10 and beyond, API security, authentication and authorization design, and secure SDLC development.
- Deep expertise in securing cloud environments across Azure, AWS, and/or GCP, covering IAM architecture, network security, secrets management, container and Kubernetes security, and infrastructure as code security.
- Hands-on experience building and operating DevSecOps tooling, including static analysis, dynamic analysis, software composition analysis, secrets scanning, container scanning, and CI/CD pipeline security integration.
- Strong software engineering skills in Python, Go, or equivalent, with the ability to build security tooling, automate controls, and integrate security into engineering workflows.
- Experience with cryptographic principles and key management, including HSMs, MPC, PKI, and key rotation.
- Background in FinTech, crypto, blockchain, or high-stakes financial environments is a strong plus.
- A practitioner's approach. Most effective when close to the work, writing threat models, reviewing architecture documents, reading code, and building tooling.
Skills
- Application Security
- Cloud Infrastructure Security
- Secure Software Delivery
- Threat Modeling
- Vulnerability Management
- Cloud Security Architecture
- Azure
- AWS
- IAM
- Network Segmentation
- Encryption
- Zero Trust Controls
- Kubernetes
- DDoS
- WAF
- SOC 2
- ISO 27001
- Penetration Testing
- Bug Bounty
- Automation
- DevSecOps
- Static Analysis
- Dynamic Analysis
- Software Composition Analysis
- Secrets Scanning
- Container Scanning
- CI/CD Pipeline Security
- Python
- Go
- Cryptographic Principles
- Key Management
- HSMs
- MPC
- PKI
- FinTech
- Crypto
- Blockchain
Work Type
- Hybrid
Experience Level
- Senior Staff
- 10+ years
Salary/Compensations
- $224,000—$300,000 USD
Benefits
- Competitive salary, bonuses, and equity
- Competitive benefits that cover physical and mental healthcare, retirement, family forming, and family support
- Employee giving match
- Mobile phone stipend
- R&R days
- Generous wellness reimbursement and weekly onsite & virtual programming
- Generous vacation policy
- Industry-leading parental leave policies
- Family planning benefits
- Catered lunches
- Fully-stocked kitchens with premium snacks/beverages
- Plenty of fun events
- Professional development budget
About the Company
- Ripple is building a world where value moves like information does today, improving the global financial system and creating greater economic fairness and opportunity.
- The opportunity to build in a fast-paced start-up environment with experienced industry leaders.
- A learning environment where you can dive deep into the latest technologies and make an impact.
- Thrive in an environment where every employee is a respected, valued, and empowered part of the team.
- In-office collaboration for moments that matter is important to our culture, and we give managers and teams the flexibility to decide which 10+ days a month they come in.
- Bi-weekly all-company meeting - business updates and ask me anything style discussion with our Leadership Team.
- We come together for moments that matter which include team offsites, team bonding activities, happy hours and more!
Equal Opportunity
- Ripple is an Equal Opportunity Employer. We’re committed to building a diverse and inclusive team. We do not discriminate against qualified employees or applicants because of race, color, religion, gender identity, sex, sexual identity, pregnancy, national origin, ancestry, citizenship, age, marital status, physical disability, mental disability, medical condition, military status, or any other characteristic protected by local law or ordinance.
- Please find our UK/EU Applicant Privacy Notice and our California Applicant Privacy Notice for reference.