InternFlow

Greenhouse ·

full-time

Staff Product Security Architect

Gitlab · Remote, Canada; Remote, Israel; Remote, Poland; Remote, United Kingdom; Remote, United States

GitLab operates as an intelligent orchestration platform for DevSecOps, focusing on streamlining software development, security, and operational efficiency. As a Staff Product Security Architect, you will join the Security Platforms and Architecture organization to move beyond traditional consultative roles. Your daily responsibilities involve acting as a hands-on technical driver, embedding proactive security standards directly into developer workflows and automated coding environments. You will collaborate with product engineering leadership to spearhead architectural strategy, conduct design reviews, and build proofs of concept that enable teams to deliver resilient software autonomously. A significant portion of the role involves identifying systemic risks, acting as the Security Owner for high-priority items, and codifying security decisions into reusable patterns and threat models. This position is well-suited for a seasoned security professional with deep expertise in application security, authentication models, and privilege escalation who is comfortable working in a high-performance, remote environment. You will be expected to balance architectural oversight with technical prototyping to ensure security is integrated from the outset of the development process.

product securitysecurity architecturedevsecopsapplication securitythreat modelingsoftware engineeringrisk managementremote

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role We are hiring a Staff Product Security Architect to join our Security Platforms and Architecture organization at GitLab. Rather than operating as a purely consultative body, Security Architecture at GitLab functions as a hands-on technical driver. Our mission is to embed proactive guidance directly into modern developer workflows and automated coding environments, embedding security standards into the software development process from the outset. We strive to enable teams to deliver secure, resilient software seamlessly while minimizing reliance on manual security gates. In this role, you will collaborate closely with product engineering organizations, spearhead architectural strategy for critical capabilities, and serve as the primary Security Owner driving risk reduction for key entries within our risk management framework. Your daily work will span architectural design reviews, technical prototyping, and establishing scalable patterns that enable engineering teams to execute autonomously. What you’ll do Partner with engineering and product leadership across GitLab, developing enough context in their domains to anticipate security problems rather than react to them Lead security architecture and design work for strategic initiatives, and provide direction to the cross-functional teams delivering them Identify, assess, and prioritise systemic security risks, and act as Security Owner for high-priority items in the Product Security Risk Register, co-executing remediation with the teams who own the code Codify recurring security decisions into reusable artifacts — guardrails, standards, design patterns,skills, and reference threat models — delivered into developer and AI coding tool workflows Build proofs of concept and prototypes to unblock engineering teams and shorten the distance between a security requirement and a working implementation Conduct security architecture reviews for large or strategic projects, and coordinate with Application Security so that review coverage is comprehensive and correctly prioritised Threat model new and existing systems, and establish the patterns that let teams threat model their own work Work with Security Research on proactive exploration of unknown risks in GitLab's architecture Anticipate emerging security challenges and propose architectural responses before they reach implementation Mentor security engineers across the division, and represent security architecture to engineering audiences What you’ll bring Depth in application security architecture, including authentication and authorization models, privilege escalation, multi-tenant isolation, and trust boundary analysis Experience securing distributed systems, including service-to-service authentication, secrets handling, and the failure modes of security decisions made across process boundaries Working knowledge of software supply chain security: build and release integrity, artifact provenance, and dependency risk A track record of proactive architecture work — identifying risk before it becomes an incident, and designing something that prevents a class of problem rather than an instance of one Demonstrated ability to build trusted relationships with engineering leadership and influence technical direction through expertise rather than gatekeeping Experience defining security standards or patterns that teams adopted without being compelled to The ability to operate strategically while remaining hands-on, including reading unfamiliar code, building prototypes, and contributing changes Clear written communication, and the ability to make a security argument

RoleStaff Product Security Architect
CompanyGitlab
LocationRemote, Canada; Remote, Israel; Remote, Poland; Remote, United Kingdom; Remote, United States
CompensationNot disclosed
Posted2026-09-29
DeadlineRolling

Typical process for this type of role

A general guide — the exact steps for this specific listing may vary; check the original posting for details.

  1. 1ApplicationSubmit your resume through the apply link.
  2. 2ScreeningRecruiter reviews your background against the role.
  3. 3AssessmentA technical test, assignment, or coding round, depending on the role.
  4. 4Interview(s)One or more rounds with the hiring team.
  5. 5OfferOffer letter with compensation and start date.

Before you apply

0/4

Staff Product Security Architect at Gitlab: frequently asked questions

What is the salary for this role?
Gitlab has not stated compensation in the listing. Check the original posting or ask during the application process.
Is the Staff Product Security Architect position remote, hybrid or onsite?
The listing marks this role as remote, with Remote, Canada; Remote, Israel; Remote, Poland; Remote, United Kingdom; Remote, United States as the location.
What is the application deadline?
Gitlab has not listed a fixed deadline, so apply early in case the opening is filled.
How do I apply for the Staff Product Security Architect role?
Use the Apply button on this page. It opens the original listing on job-boards.greenhouse.io, where you submit your application with the company.

More at Gitlab

Other jobs at Gitlab

See all 60 openings at Gitlab

Explore Related Placements


// similar opportunities

You might also like

Senior Product Security Architect

Axonius

Axonius logo
Remotefull-time
Arbeitnow

As a Senior Product Security Architect , you will join a highly technical, fast-moving Product Security team to advance and secure Axonius's platform and its mo...

Apply now →

Staff Product Security Engineer

Dashlane

Dashlane logo
Parisfull-time
Arbeitnow

About Dashlane Dashlane’s mission is to deliver the credential security every business and employee needs to thrive. Millions of consumers, and over 25,000 bran...

Apply now →

Staff Cloud Architect

Ripple

Ripple logo
Sydney, Australiafull-time
Arbeitnow

At Ripple, we’re building a world where value moves like information does today. It’s big, it’s bold, and we’re already doing it. Through our crypto solutions f...

Apply now →

Staff System Architect

Ionq

Ionq logo
Genevafull-time
Arbeitnow

About IonQ: IonQ, Inc . [NYSE: IONQ] is the world’s leading quantum platform and merchant supplier - delivering integrated quantum solutions across computing, n...

Apply now →

Senior Staff Engineer, Product Security

Druva

Druva logo
Pune, Maharashtrafull-time
Top Company
Greenhouse

About Druva Druva is the resilience foundation for the AI enterprise, helping organizations secure and recover from connected risk across data, cyber, identity,...

Apply now →

Staff Enterprise Architect

Gitlab

Remote, United Statesfull-time
RemoteAny GraduateGreenhouseEnterprise Architecture# AI# DevSecOps# Enterprise Architecture# Salesforce+6 more

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency,...

Apply now →