GitLab is offering an exciting opportunity for an experienced security professional to join its team as a Staff Corporate Security Engineer in a fully remote U.S. role. This position is ideal for someone who enjoys solving complex security challenges, strengthening enterprise security programs, and working across teams to protect systems, data, and employees. If you have strong corporate security engineering experience and are looking for a senior-level role with significant impact, this could be an excellent opportunity to explore.
Job Overview
| Field | Details |
|---|---|
| Company Name | GitLab |
| Role | Staff Corporate Security Engineer |
| Qualification | Bachelor’s degree or equivalent practical experience in cybersecurity, computer science, information technology, or a related field; strong corporate security engineering experience |
| Job Location | United States – Remote |
| Salary | $168,000–$238,000 USD per year |
| Work Type | Remote |
| Job Type | Full-Time |
| Job Level | Staff / Senior-Level |
| Industry | Software / Technology / Cybersecurity |
Job Description
As a Senior Corporate Security Engineer, you’ll help secure the systems GitLab team members rely on every day across a fully remote environment. This role sits within Corporate Security Engineering and focuses on building secure-by-default controls for endpoints and the SaaS platforms that support them, with a strong emphasis on macOS. You’ll own meaningful technical decisions around endpoint hardening, automation, and detection, and you’ll help turn security requirements into scalable engineering systems that are measurable, auditable, and designed to reduce friction for end users.
This is a strong fit if you’re motivated by solving security problems with code. You will work across endpoint management, identity, and security operations to improve how GitLab manages macOS, iOS, Windows, and Linux devices through Infrastructure-as-Code, Terraform, and GitOps workflows. In your first year, you’ll be expected to strengthen endpoint security architecture, expand automation, and improve the reliability and auditability of how controls are deployed and maintained.
What you’ll do
- Lead the security architecture of GitLab’s endpoint fleet and related infrastructure, with a primary focus on macOS.
- Design and support automation for secure endpoint deployment, configuration, and lifecycle management using code-based workflows.
- Manage endpoint and SaaS security configuration through Terraform, version control, merge requests, continuous integration pipelines, and automated rollouts.
- Define and enforce security baselines across macOS, iOS, Windows, and Linux endpoints.
- Develop patching and software distribution approaches that align with security, compliance, and operational requirements.
- Partner with Information Technology, Security Operations, and Detection and Response teams to improve endpoint telemetry, detections, and response models.
- Drive process improvements that reduce manual work and lower risk by favoring automation, policy-driven controls, and auditable change management.
- Mentor engineers across Corporate Security and Information Technology, and serve as a senior escalation point for complex endpoint security issues.
What you’ll bring
- Experience designing and delivering endpoint, systems, or corporate security solutions in environments that require scalable, durable controls.
- Deep knowledge of endpoint management platforms such as Jamf Pro or FleetDM, especially for architecting and securing macOS environments.
- Strong hands-on ability with Terraform and Infrastructure-as-Code practices, including module design, state management, and pipeline-based deployment.
- Experience working with GitOps workflows where changes are managed through Git repositories, merge requests, code review, and automated pipelines.
- Strong proficiency in scripting or programming for automation and security tooling, such as bash, Python, PowerShell, or Go.
- Familiarity with cloud identity providers and directories, including platforms such as Okta, Google Workspace, LDAP.
- Ability to communicate clearly, collaborate across distributed teams, and work independently in an all-remote environment.
- Openness to bringing transferable experience from adjacent security, systems, or platform engineering backgrounds, along with a practical and security-focused approach to problem solving.
Selection Process
- Application Submission – Submit your application and resume through GitLab’s careers platform.
- Application Screening – The recruiting team reviews your qualifications and relevant security engineering experience.
- Recruiter Interview – Discuss your background, experience, expectations, and interest in GitLab.
- Technical Interviews – Demonstrate your corporate security engineering knowledge, problem-solving skills, and technical expertise.
- Hiring Manager Interview – Discuss the role, responsibilities, team structure, and your potential contribution.
- Final Interview / Assessment – Complete additional interviews or assessments as required for the position.
- Offer – Successful candidates receive a formal employment offer and proceed through the onboarding process.
How to Apply
- Visit GitLab’s official careers website.
- Search for “Staff Corporate Security Engineer.”
- Review the job requirements, responsibilities, and eligibility criteria.
- Prepare an updated resume highlighting your corporate security, cybersecurity, engineering, and enterprise security experience.
- Complete the online application form.
- Submit your application and monitor your email for updates from GitLab’s recruiting team.