InternFlow

Greenhouse ·

full-time

Staff Infrastructure Security Engineer (USA)

Gitlab · Remote, United States

GitLab provides an intelligent orchestration platform for DevSecOps, helping organizations streamline software development and improve operational security. As a Staff Infrastructure Security Engineer, you will serve as a technical lead focused on the security of the company's FedRAMP environment and GitLab Dedicated for Government offering. Your daily responsibilities will involve defining architectural patterns, establishing foundational security automation, and leading initiatives related to continuous monitoring and control implementation. You will act as the primary technical voice for infrastructure security, partnering with SRE teams to conduct threat modeling and comprehensive security reviews. This role requires you to translate complex, multi-quarter security objectives into actionable engineering streams while influencing security practices across broader SaaS and self-managed platforms. The position is well-suited for a senior security professional with deep expertise in cloud infrastructure, compliance frameworks, and threat mitigation. You must be comfortable working in a remote environment, navigating the specific constraints of federal security requirements, and integrating AI-assisted tools into your engineering workflow to drive efficiency and platform resiliency.

infrastructure securitydevsecopsfedrampcloud securitythreat modelingsecurity engineeringcompliancestaff engineer

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role As a member of the Infrastructure Security Team within the Product Security Department , you will work with teams across GitLab to ensure that the components that comprise our public cloud infrastructure are built from the beginning with the resiliency and security expectations that our customers — including the U.S. public sector — rely on to power their DevSecOps goals. As a Staff Security Engineer, you will serve as the technical lead for the infrastructure security of our GitLab Dedicated for Government offering and the broader FedRAMP environment that supports it. You will define the technical direction for how we secure our Federal platform, set the patterns the team uses to operate it, and influence how those patterns extend into our other SaaS platforms (e.g. GitLab Dedicated, Cells) and Self-Managed offerings. You will combine hands-on execution with influence that reaches into partner engineering teams, driving business outcomes by ensuring that we pragmatically implement security capabilities into the platform that empowers critical software factories — including those operated by the U.S. government and its mission partners. Due to government requirements, you must be a United States Citizen (defined as any individual who is a citizen of the United States by law, birth, or naturalization) to fill this position, and you must be based in the United States. What You'll Do Set the technical direction, architectural patterns, reference implementations, and foundational security automation that shape how infrastructure security is implemented for GitLab's FedRAMP environment, and influence how those patterns are adopted across our broader Dedicated and Self-Managed offerings Own the security posture of GitLab's FedRAMP environment as the senior technical voice, partnering with the Public Sector SRE team as a stable counterpart Lead infrastructure security initiatives from problem framing through delivery, scoping ambiguous multi-quarter work — including FedRAMP continuous monitoring, control implementation, and authorization-impacting changes — into executable streams with clear success criteria Conduct and lead comprehensive security reviews and threat modeling for complex infrastructure components in the Federal environment, identifying systemic risks and driving remediation across affected systems Set the team's approach to AI-assisted security engineering within the constraints of a FedRAMP-authorized environment, identifying where AI can meaningfully increase leverage and establishing patterns others can adopt Serve as an authoritative technical voice for Federal Infrastructure Security across our stakeholders — including engineering, compliance, and senior leadership — translating architectural tradeoffs and FedRAMP control implications into clear decisions Partner on technical planning, prioritization, and roadmap development to align infrastructure security work with the business objectives of our Public Sector offering Mentor and develop engineers on the team, raising the technical bar and modeling inclusive collaboration Fulfill the Product Security Division Mission of securing GitLab Infrastructure with our own product ("dogfooding") What You'll Bring Proof of U.S. citizenship and U.S. residency Expert knowledge of security for cloud infrastructure (AWS/GCP/Azure), container orchestration (Kubernetes) and related infrastructure and data security topics Deep working knowledge of FedRAMP (Moderate and/or High) and the operational realities of running and continuously monitoring an authorized environment; familiarity with adjacent framew

RoleStaff Infrastructure Security Engineer (USA)
CompanyGitlab
LocationRemote, United States
CompensationNot disclosed
Posted2026-09-29
DeadlineRolling

Typical process for this type of role

A general guide — the exact steps for this specific listing may vary; check the original posting for details.

  1. 1ApplicationSubmit your resume through the apply link.
  2. 2ScreeningRecruiter reviews your background against the role.
  3. 3AssessmentA technical test, assignment, or coding round, depending on the role.
  4. 4Interview(s)One or more rounds with the hiring team.
  5. 5OfferOffer letter with compensation and start date.

Before you apply

0/4

Staff Infrastructure Security Engineer (USA) at Gitlab: frequently asked questions

What is the salary for this role?
Gitlab has not stated compensation in the listing. Check the original posting or ask during the application process.
Is the Staff Infrastructure Security Engineer (USA) position remote, hybrid or onsite?
The listing marks this role as remote, with Remote, United States as the location.
What is the application deadline?
Gitlab has not listed a fixed deadline, so apply early in case the opening is filled.
How do I apply for the Staff Infrastructure Security Engineer (USA) role?
Use the Apply button on this page. It opens the original listing on job-boards.greenhouse.io, where you submit your application with the company.

More at Gitlab

Other jobs at Gitlab

See all 60 openings at Gitlab

Explore Related Placements


// similar opportunities

You might also like

Infrastructure Security Engineer - London

Xai

Xai logo
Londonfull-time
Arbeitnow

SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly m...

Apply now →

Staff Software Engineer, Cloud Infrastructure

Airbnb

Airbnb logo
Remote, USAfull-time
Greenhouse

Airbnb was born in 2007 when two hosts welcomed three guests to their San Francisco home, and has since grown to over 5 million hosts who have welcomed over 2 b...

Apply now →

Staff Security Governance Engineer, Policies & Standards

Gitlab

Remote, United Statesfull-time
Greenhouse

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency,...

Apply now →

Software Engineer - Infrastructure

Mercury

San Francisco, CA, New York, NY, Portland, OR, or Remote within Canada or United Statesfull-time
Greenhouse

The backbone of any technology org is its infrastructure, come join the team giving that skeleton superhuman abilities. The Infrastructure team at Mercury is an...

Apply now →

Infrastructure & Security Lead

Luo

Luo logo
Parisfull-time
Arbeitnow

About Luo Luo is one of the fastest-growing FX and cross-border payments companies in Africa. We help African businesses pay their international suppliers faste...

Apply now →

Software Engineer - Infrastructure

Camunda

Camunda logo
Remotefull-time
Arbeitnow

Camunda is the enterprise platform for agentic orchestration , enabling organizations to coordinate AI agents, people, and systems across complex, end-to-end bu...

Apply now →