GitLab

Senior Backend Engineer SRM: Security Platform Management

Remote

Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, Software Development, DevSecOpsIndustries

Senior Backend Engineer - Application Security Posture Management (ASPM)

Position Overview

GitLab is seeking a Senior Backend Engineer to join its next-generation Application Security Posture Management (ASPM) team. This role involves architecting critical greenfield projects to build enterprise security solutions from the ground up, aiming to establish GitLab as the single-stop-shop for enterprise security. You will collaborate with a distributed team of engineers, a Product Manager, and a UX Designer to shape how organizations secure their applications at scale.

The team is focused on high-profile initiatives including:

  • Building a new Security Manager role system.
  • Creating asset inventory capabilities with security posture sharing.
  • Implementing logical asset gathering with statistics.
  • Developing a unified configuration mechanism for all GitLab security tools.

Responsibilities

  • Design and develop next-generation ASPM capabilities.
  • Build scalable backend systems for enterprise-scale security data.
  • Create robust APIs that power GitLab's expanding security offering.
  • Collaborate with Infrastructure, Policies, and Security Insights teams on cross-functional initiatives.
  • Architect greenfield solutions for the Security Manager role system and Assets inventory capabilities.
  • Implement unified configuration mechanisms for GitLab's comprehensive security tool suite.
  • Work in feature-specific squads to minimize context switching and maximize impact.
  • Contribute to technical decisions that shape GitLab's security platform architecture.

Requirements

  • Strong experience with Ruby on Rails.
  • Expertise in PostgreSQL database design and optimization.
  • Proficiency in REST API and GraphQL development.
  • Experience with Git and GitLab CI/CD workflows.
  • Knowledge of Elasticsearch and NoSQL database technologies.
  • Track record of delivering high-quality software in collaborative environments.
  • Ability to work autonomously while contributing to team success.
  • Passion for building secure, scalable enterprise solutions.

About the Team

The ASPM team is at the forefront of GitLab's security innovation, building entirely new capabilities to help enterprises better understand and manage their security posture. It's a growing team actively hiring for multiple positions, reflecting the strategic importance of its mission. The team operates with high autonomy while maintaining close collaboration with its PM and UX designer, organizing into feature-specific squads to deliver maximum impact. The focus is on greenfield development, creating new solutions rather than maintaining legacy systems.

Company Information

GitLab is an open core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. We embrace AI as a core productivity multiplier, encouraging all team members to incorporate AI into their daily workflows. Learn more about Life at GitLab and our values.


Note: Salary and specific Location Type details were not provided in the original description.

Skills

Backend Development
Security Platform
Application Security
Security Posture Management
Asset Inventory
Security Configuration
Enterprise Security Solutions
Distributed Team Collaboration

GitLab

Unified DevOps platform for software development

About GitLab

GitLab offers a DevOps platform that simplifies the software development process by providing a single application for collaboration, visibility, and speed. The platform integrates various tools needed for software development, which helps teams manage their projects more efficiently without juggling multiple tools. This allows companies to concentrate on enhancing their products instead of spending too much time on builds. GitLab serves a wide range of clients, including large corporations from different industries, demonstrating its versatility. The company operates on a subscription-based model, where clients pay for access to the platform, which includes features for continuous integration and deployment. GitLab also provides free trials and regularly updates its platform to deliver ongoing value to its users. By customizing its offerings and partnering with other technology providers, GitLab aims to enhance its ecosystem and drive revenue.

San Francisco, CaliforniaHeadquarters
2014Year Founded
$421.8MTotal Funding
IPOCompany Stage
Consulting, Enterprise SoftwareIndustries
1,001-5,000Employees

Benefits

Spending Company Money
Equity Compensation
Life Insurance
Financial Wellness
Paid Time Off
Growth and Development Benefit
GitLab Contribute
Business Travel Accident Policy
Immigration
Employee Assistance Program
Incentives
All-Remote
Part-time contracts
Meal Train
Fertility & Family Planning
Parental Leave

Risks

AI-powered coding assistants like Claude pose a competitive threat to GitLab's platform.
Potential sale to Datadog may lead to strategic shifts misaligned with customer expectations.
Integration of Oxeye may distract from GitLab's core DevOps offerings.

Differentiation

GitLab offers a unified DevOps platform, reducing complexity in software development.
The platform integrates tools for collaboration, visibility, and speed, enhancing development processes.
GitLab's open-source model fosters continuous innovation with a large developer community.

Upsides

Acquiring Oxeye enhances GitLab's cloud security, appealing to security-conscious enterprises.
Partnership with Ooredoo Kuwait expands GitLab's influence in the telecommunications sector.
Potential sale to Datadog could create strategic synergies and expand market reach.

Land your dream remote job 3x faster with AI