GitLab Logo

GitLab

Senior Security Engineer, IAM

Posted Yesterday
Easy Apply
Remote
2 Locations
Senior level
Easy Apply
Remote
2 Locations
Senior level
The Senior Security Engineer will design and implement identity solutions, drive initiatives across teams, and mentor engineers in identity security.
The summary above was generated by AI

GitLab is an open core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. When everyone can contribute, consumers become contributors, significantly accelerating the rate of human progress. This mission is integral to our culture, influencing how we hire, build products, and lead our industry. We make this possible at GitLab by running our operations on our product and staying aligned with our values. Learn more about Life at GitLab.

Thanks to products like Duo Enterprise, and Duo Workflow, customers get the benefit of AI at every stage of the SDLC. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier. All team members are encouraged and expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact across our global organization.

An overview of this role

The Identity Engineering team is on a mission to transform how our workforce ecosystem securely accesses the tools they need to do their best work, advancing from foundational controls to sophisticated, automated governance.
As our new Senior Identity Security Engineer, you'll be a technical leader and strategic thinker who thrives in ambiguous situations. You're passionate about designing elegant solutions to complex identity challenges, whether that's architecting enterprise-scale conditional access policies or building observability for non-human identities. You'll serve as a DRI (Designated Responsible Individual) for critical systems, write technical proposals that influence our roadmap, and mentor teammates while driving cross-functional initiatives.

This isn't about maintaining the status quo- it's about architecting the future of identity security for a rapidly scaling company operating in regulated environments.

What you’ll do  

  • Design comprehensive identity solutions that scale with our business growth, from AI agent governance frameworks to privileged access workflows that eliminate standing access through just-in-time provisioning
  • Drive cross-functional initiatives with Security, IT, Engineering, and Business teams to extract requirements from ambiguous business needs and translate them into actionable technical specifications
  • Refactor our authentication framework to implement advanced conditional access controls—device trust, location-based policies, risk-based step-up authentication, and behavioral analytics across our entire SaaS ecosystem
  • Support critical identity platforms and drive their strategic evolution through technical proposals and design documents that influence our multi-year roadmap
  • Lead the consolidation of fragmented automations into maintainable, resilient workflows that can handle the complexity of enterprise-scale identity management
  • Pioneer non-human identity governance by designing comprehensive monitoring and management solutions for service accounts, API keys, certificates, and emerging AI agent identities
  • Mentor intermediate engineers on both technical implementation and strategic thinking, helping them develop expertise in modern identity security practices

What you’ll bring 

  • 5+ years of IAM experience designing and implementing enterprise-scale solutions
  • Expert-level Okta expertise including advanced authentication policies, lifecycle workflows, and API automation
  • Strong automation experience using Python or iPaaS tools (Tines, Okta Workflows)
  • Experience with IGA platforms like Lumos, ConductorOne or similar IGA tools
  • Strategic communication skills for writing technical proposals and leading cross-functional initiatives
  • Experience in regulated environments with knowledge of compliance frameworks (FedRAMP, SOC2, SOX)
  • Collaborative mindset with experience mentoring teammates and driving technical initiatives

Nice to have Qualifications:

  • Passion for emerging identity challenges including AI agent governance, non-human identity management, zero-trust architecture, and behavioral analytics
How GitLab will support you
  • Benefits to support your health, finances, and well-being
  • All remote, asynchronous work environment
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and development budget 
  • Parental leave 
  • Home office support

Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.

The base salary range for this role’s listed level is currently for residents of listed locations only. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, and alignment with market data. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.

California/Colorado/Hawaii/New Jersey/New York/Washington/DC/Illinois/Minnesota pay range
$124,300$188,700 USD

Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.  

Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us.

GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.

Top Skills

Iga Platforms
Okta
Okta Workflows
Python
Tines

Similar Jobs at GitLab

3 Hours Ago
Easy Apply
Remote
Canada
Easy Apply
Mid level
Mid level
Cloud • Security • Software • Cybersecurity • Automation
As a Staff Backend Engineer at GitLab, you will enhance developer productivity by creating tools, mentoring engineers, and optimizing workflows.
Top Skills: AnsibleAWSAzureGCPGoGoogle Cloud RunRubySnowflakeTerraform
3 Hours Ago
Easy Apply
Remote
3 Locations
Easy Apply
Senior level
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Manage a high-performance Analytics Engineering team, translating business needs into data models, while enhancing the Data Program and implementing DataOps.
Top Skills: SnowflakeSQL
Yesterday
Easy Apply
Remote
3 Locations
Easy Apply
Junior
Junior
Cloud • Security • Software • Cybersecurity • Automation
As a Business Development Representative, you will lead outreach to target accounts, generate sales opportunities, and collaborate with marketing and sales teams.
Top Skills: Linkedin Sales NavigatorSalesforce

What you need to know about the Sydney Tech Scene

From opera to comedy shows, the Sydney Opera House hosts more than 1,600 performances a year, yet its entertainment sector isn't the only one taking center stage. The city's tech sector has earned a reputation as one of the fastest-growing in the region. More specifically, its IT sector stands out as the country's third-largest, growing at twice the rate of overall employment in the past decade as businesses continue to digitize their operations to stay competitive.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account