Senior Manager, Product Security Engineering – Security Posture, Supply Chain

Job not on LinkedIn

🔥 0 minutes ago

🌐 United States, Canada, +2 more countries – Remote

infoinfo

💵 $168k - $245k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of GitLab

GitLab

1001 - 5000 employees

Founded 2014

💼 Consulting

📣 Marketing

🤖 Artificial Intelligence

💰 Secondary Market on 2020-11

Consulting • Marketing • Artificial Intelligence

GitLab is the most comprehensive AI-powered DevSecOps platform, offering tools for automated software delivery, security, and compliance throughout the software development lifecycle. It provides solutions across areas such as AI-assisted development, continuous integration/continuous deployment (CI/CD), source code management, and vulnerability management. GitLab aims to simplify and accelerate software delivery by uniting development, security, and operations on a unified platform. It is particularly recognized for its AI code assistants and has been named a leader in the Gartner Magic Quadrant™ for DevOps Platforms, making it a preferred choice for many enterprises.

📋 Description

• Lead governed rollouts of GitLab security capabilities across every project and maintain alignment with the Project Security Configuration Standard. • Establish secure defaults and paved paths that accelerate engineering. • Serve as Customer Zero for GitLab security features, feeding adoption evidence to Product and Engineering to influence roadmap decisions. • Establish software supply chain security, including third-party component governance, trusted dependency controls, and product-level SBOM requirements. • Reduce systemic risk across groups and namespaces, including lateral movement and token governance. • Own the Product Security Risk Register, metrics, and posture dashboards. • Partner with Compliance to produce security-control evidence for audits, certifications, and internal maturity assessments. • Represent GitLab’s software factory security work externally through thought leadership. • Lead, coach, and grow the team and shape its operating model.

🎯 Requirements

• Experience managing a security or engineering team, including hiring, performance, and career development. • Technical fluency across security posture management, software supply chain security, and secure configuration of a large SaaS estate. • Track record of driving broad, governed rollouts of security capability across an engineering organization and sustaining adoption after launch. • Experience translating security requirements into controls that engineering teams can meet without slowing down. • Familiarity with producing control evidence for audit, certification, or maturity assessment, and partnering with Compliance or GRC counterparts. • Ability to drive measurable impact under high ambiguity, including building organizational buy-in. • Ability to break large problems into iterative wins that ship and compound. • Sound judgment and strong written communication leading in an all-remote, async environment. • Team members are expected to incorporate AI into their daily workflows.

🏖️ Benefits

• Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Parental Leave

Apply Now

Similar Jobs

🔥 29 minutes ago

KBR, Inc.

10,000+ employees

💼 Consulting

🎖️ Defense

📦 Logistics

Senior ISSM securing Air Force ABMS systems for KBR’s national security engineering solutions. Leading RMF authorization, vulnerability management, and DoD cybersecurity compliance.

🔥 4 hours ago

CareSource

1001 - 5000

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Information Security GRC Analyst III managing enterprise, vendor, and compliance risks for CareSource, a healthcare organization. Developing mitigation plans and reporting security risk to management.

🔥 5 hours ago

Abnormal Security

501 - 1000

🔒 Cybersecurity

Senior Security Engineer securing Abnormal AI’s AWS cloud platforms and products. Building preventative controls, incident capabilities, and AI-assisted security automation.

🔥 7 hours ago

Palo Alto Networks

10,000+ employees

🔒 Cybersecurity

🏢 Enterprise

AI Security Domain Consultant securing enterprise AI adoption for Palo Alto Networks. Leading AI threat prevention, governance, DLP, and customer Proof of Value engagements.

🔥 16 hours ago

Paradigm

1001 - 5000

☁️ SaaS

Senior Security Engineer protecting Paradigm’s networks, cloud deployments, data centers, and software systems. Monitoring threats, mitigating breaches, and supporting cybersecurity projects.