Staff Infrastructure Security Engineer

at GitLab
USD 168,000-238,000 per year
SENIOR
✅ Remote

Tech Stack

AI @ 4 AWS @ 4 Ansible @ 4 Azure @ 4 CloudFormation @ 4 Communication @ 7 Compliance @ 4 GCP @ 4 Go @ 6 Kubernetes @ 4 Leadership @ 7 Python @ 6 Ruby @ 6 SRE Security @ 6 Terraform @ 4

Details

GitLab is seeking a Staff Infrastructure Security Engineer to serve as the technical lead for infrastructure security supporting GitLab Dedicated for Government and the broader FedRAMP environment. The role will define technical direction, establish secure operating patterns, and influence their adoption across GitLab Dedicated, Cells, and Self-Managed offerings. The position requires United States citizenship and residence in the United States.

Responsibilities

  • Set the technical direction, architectural patterns, reference implementations, and foundational security automation for GitLab's FedRAMP environment.
  • Influence the adoption of infrastructure security patterns across GitLab's Dedicated and Self-Managed offerings.
  • Own the security posture of the FedRAMP environment as the senior technical voice and partner with the Public Sector SRE team.
  • Lead infrastructure security initiatives from problem framing through delivery, including FedRAMP continuous monitoring, control implementation, and authorization-impacting changes.
  • Scope ambiguous, multi-quarter initiatives into executable workstreams with clear success criteria.
  • Conduct and lead comprehensive security reviews and threat modeling for complex infrastructure components in the Federal environment.
  • Identify systemic risks and drive remediation across affected systems.
  • Define GitLab's approach to AI-assisted security engineering within the constraints of a FedRAMP-authorized environment.
  • Serve as the authoritative technical voice for Federal Infrastructure Security with engineering, compliance, and senior leadership stakeholders.
  • Translate architectural tradeoffs and FedRAMP control implications into clear decisions.
  • Partner on technical planning, prioritization, and roadmap development for the Public Sector offering.
  • Mentor and develop engineers, raise the technical bar, and model inclusive collaboration.
  • Secure GitLab infrastructure using GitLab's own product.

Requirements

  • Proof of United States citizenship and United States residency.
  • Expert knowledge of cloud infrastructure security across AWS, GCP, and/or Azure.
  • Expert knowledge of Kubernetes and related infrastructure and data security topics.
  • Deep working knowledge of FedRAMP Moderate and/or High and the operational realities of running and continuously monitoring an authorized environment.
  • Familiarity with NIST 800-53, FIPS 140-2/3, ISO 27001, SOC 2, and PCI-DSS.
  • Proficiency in multiple programming languages, including Go, Python, and Ruby, with a record of delivering production-quality security tooling.
  • Extensive experience with Infrastructure-as-Code security using Terraform, Ansible, and CloudFormation.
  • Experience with policy-as-code and automated compliance, particularly for regulated environments.
  • Hands-on experience applying AI to security workflows and a point of view on its use in compliance-constrained environments.
  • Experience leading multi-team technical initiatives from ambiguous problem statements to measurable outcomes and setting technical direction adopted by peer teams.
  • Strong written and verbal communication skills, including the ability to explain security and compliance tradeoffs to technical and non-technical audiences, senior leadership, and assessors.
  • Alignment with GitLab's values.

Benefits

  • Benefits supporting health, finances, and well-being.
  • Flexible paid time off.
  • Team member resource groups.
  • Equity compensation and employee stock purchase plan.
  • Growth and development fund.
  • Parental leave.

More jobs at GitLab

Similar jobs