GitLab logo
GitLabΒ·Verified

Senior Professional Services Technical Architect - Security

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation.

An Overview of This Role

As a Senior Professional Services Technical Architect, Security at GitLab, you'll lead the design and implementation of secure enterprise solutions for Professional Services clients across AMER. You'll assess complex security architectures, guide security tool and CI/CD migrations (including legacy tools such as Jenkins), and implement GitLab security capabilities to help customers meet compliance frameworks such as NIST 800-53, ISO 27001, and SOC 2.

Working closely with Professional Services Engineers, Engagement Managers, and Program Managers, you'll provide technical leadership throughout the engagement lifecycle, from pre-sales security scoping through delivery and enablement.

What You'll Do

  • Design and lead secure GitLab solution implementations for Professional Services client engagements, including security risk assessments and threat modeling.
  • Advise customers on GitLab SaaS, Self-Managed, and Dedicated architecture choices in light of their security and compliance requirements.
  • Lead technical discovery to understand customer security, compliance, and infrastructure needs to guide implementation plans and deliverables.
  • Lead migrations from legacy source code management and continuous integration and continuous delivery (CI/CD) tooling, including application security tools such as Snyk, Checkmarx, Veracode, SonarQube, and GitGuardian, to GitLab CI/CD and GitLab security scanners.
  • Support Professional Services Engagement Managers with security-related statements of work (SOWs), sales scoping, and pre-sales planning.
  • Coordinate security implementation work across cross-functional teams and share customer needs with GitLab Product teams to inform security features and roadmap decisions.
  • Mentor Professional Services and partner consultants, creating security-focused delivery kits, documentation, training materials, case studies, and enablement sessions.
  • Partner with Training, Support, Customer Success, and Professional Services Program Managers to plan and deliver engagements.

What You'll Bring

Technical Expertise

  • Experience delivering secure enterprise architectures across application security, cloud security, secure cloud infrastructure, and DevSecOps practices.
  • Experience migrating source code management and CI/CD platforms with integrated security controls.
  • Experience advising on GitLab SaaS, Self-Managed, and Dedicated deployment tradeoffs for security and compliance needs.
  • Hands-on experience with configuration management and infrastructure-as-code tooling, including Ansible and Terraform.
  • Experience integrating security controls into CI/CD pipelines.
  • Deep knowledge of GitLab security scanning capabilities, including SAST, DAST, Dependency Scanning, Secret Detection, and Container Scanning.
  • Experience migrating application security tooling (Snyk, Checkmarx, Veracode, SonarQube, GitGuardian) to GitLab Security Scanners.
  • Experience planning and executing security tool migrations, mapping findings between platforms, managing risk findings, and building migration validation frameworks.

Security & Compliance

  • Knowledge of security frameworks and standards, including ISO 27001, NIST 800-53, SOC 2, GDPR, and FedRAMP.
  • Understanding of current security threats, including supply chain security, generative AI / LLM security risks, and zero-trust architecture.
  • Working knowledge of the OWASP Top 10 for LLM Applications and how these risks apply to AI-assisted development tools.
  • Ability to communicate technical concepts, tradeoffs, and recommendations to both technical and executive stakeholders.
  • Ability to work independently and collaboratively in an all-remote, asynchronous environment.

Timezone overlap

UTC-8–-4

Culture

Async-friendly

Open to

NA

Sign in to track applications and earn points.

More roles at GitLab

Similar remote roles