Engineering Manager, Software Supply Chain Security – Pipeline Security

🕒 December 18, 2025

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of GitLab

GitLab

1001 - 5000 employees

Founded 2014

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

💰 Secondary Market on 2020-11

Artificial Intelligence • Enterprise • SaaS

GitLab is the most comprehensive AI-powered DevSecOps platform, offering tools for automated software delivery, security, and compliance throughout the software development lifecycle. It provides solutions across areas such as AI-assisted development, continuous integration/continuous deployment (CI/CD), source code management, and vulnerability management. GitLab aims to simplify and accelerate software delivery by uniting development, security, and operations on a unified platform. It is particularly recognized for its AI code assistants and has been named a leader in the Gartner Magic Quadrant™ for DevOps Platforms, making it a preferred choice for many enterprises.

📋 Description

• Lead a team of engineers building Software Supply Chain Security features with a focus on CI job artifact security. • Guide the design and implementation of SLSA (Supply-chain Levels for Software Artifacts) compliance within GitLab CI/CD pipelines. • Collaborate with Product Managers to define, prioritize, and deliver the roadmap for supply chain security capabilities. • Partner with Security team members to ensure new and existing features meet GitLab’s security standards and align with best practices. • Stay current with software supply chain security standards and tools, including SLSA, SBOM, software composition analysis, and vulnerability management. Translate what you learn into actionable product improvements. • Educate and advocate for supply chain security best practices across engineering teams to drive adoption of secure patterns in CI pipelines. • Represent the Pipeline Security team in cross-functional initiatives and, when appropriate, in external industry forums focused on software supply chain security. • Drive continuous improvement in team health, delivery predictability, and documentation quality for pipeline and supply chain security features.

🎯 Requirements

• Experience leading and developing engineering teams, with a focus on building secure, reliable product features. • Practical knowledge of software supply chain security concepts, tools, and industry standards. • Understanding of the SLSA (Supply-chain Levels for Software Artifacts) framework and how to apply it in CI/CD pipelines. • Familiarity with software artifact provenance, attestation, and verification techniques. • Knowledge of secure software development practices, including container security, software composition analysis, and vulnerability management. • Experience working with CI/CD systems and their security considerations. • Ability to collaborate effectively with product management, security, and other cross-functional partners, and to advocate for supply chain security best practices. • Openness to learning new technologies and approaches, with transferable skills from related security, infrastructure, or software engineering domains.

🏖️ Benefits

• Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Parental leave • Home office support

Apply Now

Similar Jobs

🕒 December 10, 2025

Western Computer

51 - 200

🤝 B2B

☁️ SaaS

🏢 Enterprise

Senior Data Engineering Manager leading data engineering organization at New Western. Driving design, development, and optimization of scalable data platforms in a collaborative culture.

🕒 December 5, 2025

Veeva Systems

1001 - 5000

☁️ SaaS

⚕️ Healthcare Insurance

💊 Pharmaceuticals

Engineering Manager leading and recruiting highly skilled engineers at Veeva Systems. Creating software solutions to positively impact life sciences and enhance patient therapy delivery.

🕒 December 4, 2025

ISEE

51 - 200

🚗 Transport

🤖 Artificial Intelligence

🔧 Hardware

ISEE seeks Sr Safety Engineering Manager to ensure software compliance with automotive standards. Experience in safety-critical software and ISO 26262 certification required.

🕒 December 4, 2025

RevenueCat

51 - 200

☁️ SaaS

🔌 API

🤝 B2B

Engineering Manager overseeing engineering teams and project development at RevenueCat. Focused on building web tools for a great user experience and helping developers grow their business.

🕒 November 21, 2025

Doximity

501 - 1000

⚕️ Healthcare Insurance

📡 Telecommunications

☁️ SaaS

Data Engineering Manager leading projects and data pipelines at Doximity in the healthcare sector. Collaborate with product teams and manage data engineers to optimize operational efficiency.