GitLab logo
GitLab·Verified

Staff Infrastructure Security Engineer (USA) - GitLab

Remote (region-restricted)Full-timeSenior$168K - $238KUTC-8–-4US#aws#kubernetes#fedrampEquityESPPPTOParental leaveWellness

About the Role

As a Staff Infrastructure Security Engineer within the Product Security Department, you will lead the security strategy for GitLab's public cloud infrastructure, specifically focusing on our FedRAMP-authorized environments. You will act as the technical lead for the GitLab Dedicated for Government offering, ensuring our platforms meet the rigorous security and resiliency standards required by the U.S. public sector.

What You'll Do

  • Technical Leadership: Define architectural patterns, reference implementations, and security automation for FedRAMP environments, influencing broader SaaS and Self-Managed offerings.
  • Security Posture: Own the security strategy for the FedRAMP environment, partnering closely with the Public Sector SRE team.
  • Initiative Ownership: Lead complex, multi-quarter security initiatives, including FedRAMP continuous monitoring and authorization-impacting changes.
  • Threat Modeling: Conduct comprehensive security reviews and threat modeling to identify and remediate systemic risks.
  • AI Integration: Establish patterns for AI-assisted security engineering within compliance-constrained environments.
  • Stakeholder Management: Serve as the authoritative voice for Federal Infrastructure Security, translating technical tradeoffs for leadership and compliance teams.
  • Mentorship: Mentor and develop team members while modeling inclusive collaboration.

What You'll Bring

  • Citizenship: Proof of U.S. citizenship and residency (required).
  • Cloud Expertise: Expert knowledge of cloud infrastructure (AWS/GCP/Azure) and container orchestration (Kubernetes).
  • Compliance Knowledge: Deep understanding of FedRAMP (Moderate/High), NIST 800-53, FIPS 140-2/3, ISO 27001, and SOC 2.
  • Technical Proficiency: Proficiency in Go, Python, or Ruby with a track record of delivering production-quality security tooling.
  • Infrastructure as Code: Extensive experience with Terraform, Ansible, or CloudFormation and automated compliance.
  • Communication: Strong ability to explain complex security tradeoffs to both technical and non-technical stakeholders.

How GitLab Supports You

  • Comprehensive benefits for health, finances, and well-being
  • Flexible Paid Time Off
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental Leave
  • Team Member Resource Groups

Timezone overlap

UTC-8–-4

Open to

US

Sign in to track applications and earn points.

More roles at GitLab

Similar remote roles