Own and enhance GitLab's security policies and standards in a fully remote role focused on governance and compliance.
Posted by employer 1 day ago
First seen on Joblaze 21 hours ago
Last verified on the company career page 21 hours ago
What you'll build
Must have
Nice to have
AI in the day-to-day
All team members are expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact.
Requirements
Not disclosed in this posting: visa sponsorship.
Benefits
Joblaze summary
In the role of Staff Security Governance Engineer at GitLab, the individual is responsible for managing the lifecycle of security policies and standards, ensuring they are practical and aligned with engineering practices. Key skills include a deep understanding of security frameworks like SOC 2 and ISO 27001, along with experience in automation and AI to streamline governance processes. This position is suited for seasoned professionals with over a decade in security governance, particularly those who can navigate complex regulatory landscapes and collaborate across multiple teams. The role is part of a small, impactful team focused on enhancing customer trust and security compliance.
Joblaze insights
Quick facts
From the original posting
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.
As a Staff Security Governance Engineer, you will be the individual contributor who owns how GitLab writes, maintains, communicates, and measures its security policies and standards. You will turn emerging regulations, including AI regulation, into clear requirements that engineering, product, and legal teams can act on, and you will use automation to keep governance lightweight and continuous rather than a point-in-time exercise. You will sit on the Security Governance team within Security Assurance and work closely with Security Compliance, Security Risk, and GRC Engineering. You will report to the Director, Customer Trust & Security Governance.
The Security Assurance organization helps GitLab build and maintain trust by strengthening how we approach security, compliance, and risk. Security Governance sits within it and owns customer trust, security awareness, policies and standards, and other governance functions. Our counterparts are Security Compliance, Security Risk, and GRC Engineering.
You will join a small team of four direct reports under the Director, where each person has broad scope and visible impact. We work remote-first and asynchronously, and we write things down and share them openly, so you'll draft and revise policies and standards in the open with input from Security, Legal, Product, and Engineering.
The base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary rate in locations throughout the US. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, alignment with market data, and geographic location. The base salary range does not include any bonuses, equity, or benefits. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.
Standard company text repeated across GitLab's postings is omitted here.