Principal Engineer, Infrastructure Security

2 days ago

Apply Now
Logo of GitLab

GitLab

Artificial Intelligence • Enterprise • SaaS

GitLab is the most comprehensive AI-powered DevSecOps platform, offering tools for automated software delivery, security, and compliance throughout the software development lifecycle. It provides solutions across areas such as AI-assisted development, continuous integration/continuous deployment (CI/CD), source code management, and vulnerability management. GitLab aims to simplify and accelerate software delivery by uniting development, security, and operations on a unified platform. It is particularly recognized for its AI code assistants and has been named a leader in the Gartner Magic Quadrant™ for DevOps Platforms, making it a preferred choice for many enterprises.

1001 - 5000 employees

Founded 2014

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

💰 Secondary Market on 2020-11

📋 Description

• Independently define multi-year security strategy components for cloud infrastructure, including compute, networking, storage, and orchestration platforms, balancing security risk with operational and business requirements • Design and scope infrastructure security initiatives for the team to execute, breaking down complex problems into actionable work streams with clear success criteria • Architect and drive implementation of security automation, frameworks, and tooling that become foundational to infrastructure operations (e.g., secrets management, certificate automation, security agents) • Conduct and lead comprehensive security reviews and threat modeling for complex infrastructure components • Drive adoption of infrastructure security standards across engineering teams through technical influence, reference implementations, and hands-on enablement • Quantify and distill architectural tradeoffs into clear decisions for Engineers and Senior Leadership. • Serve as the go-to expert for Infrastructure Security across the company, providing authoritative technical guidance • Mentor and develop engineers, elevating the technical leadership and modeling inclusive collaboration. • Fulfill the Product Security Division Mission of securing GitLab Infrastructure with our own product (“dogfooding”)

🎯 Requirements

• Expert-level knowledge of security for cloud infrastructure (AWS/GCP/Azure), container orchestration (Kubernetes) and related infrastructure and data security topics • Demonstrated ability to translate complex security concepts into clear, actionable recommendations • Principal-level technical leadership: ability to set strategy, influence across organizations, and mentor senior engineers. • Extensive experience designing, developing, and operating large distributed systems in a SaaS context. • Track record of leading projects with ambiguous requirements that delivered measurable business impact • Demonstrated history of driving technical strategy that influenced organization-wide security posture • Understanding of security certifications, frameworks, and standards, like FedRAMP, ISO 27001, SOC 2, PCI-DSS, etc. • Share our values, and work in accordance with those values

🏖️ Benefits

• Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Parental leave • Home office support

Apply Now

Similar Jobs

November 25

TD

10,000+ employees

🏦 Banking

💸 Finance

Information Security Specialist managing technology controls and information security programs at TD Bank. Responsible for regulatory compliance and risk management in the financial sector.

🇨🇦 Canada – Remote

💵 $91.2k - $136.8k / year

💰 Grant on 2023-10

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

November 20

Narvar

201 - 500

🛍️ eCommerce

☁️ SaaS

🛒 Retail

Head of Information Security responsible for enterprise security programs at Narvar. Leading security efforts for SaaS products and collaborating with business units on risk management.

🇨🇦 Canada – Remote

💵 $200k - $300k / year

💰 $30M Series C on 2018-08

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

November 15

Fullscript

201 - 500

⚕️ Healthcare Insurance

🧘 Wellness

☁️ SaaS

Senior Security Engineer shaping technical vision for AI and product security at Fullscript. Leading design, implementation, and fostering a culture of security excellence across teams.

🇨🇦 Canada – Remote

💰 $240M Private Equity Round on 2021-11

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

November 14

Desjardins

10,000+ employees

🏦 Banking

💸 Finance

Offensive Security Advisor performing adversary simulation and threat monitoring at Desjardins. Collaborating with cyber-defence teams and implementing security measures across IT systems.

🇨🇦 Canada – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🗣️🇫🇷 French Required

November 13

Luxury Presence

201 - 500

🏠 Real Estate

Staff Security Engineer managing security for Luxury Presence's digital platform. Collaborating with teams to implement secure systems across web, mobile, and AI technologies.

Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com