Description
As a Senior Security Engineer on GitLab's Security Incident Response Team (SIRT), you will protect GitLab.com and GitLab from security threats.
You will lead high-impact incidents and investigations, drive continuous improvements in defense, detection, and response capabilities, and help scale security operations through automation and intelligent workflows.
Operating within a 24/7 global environment, you will own incidents end-to-end - from detection and triage through containment, eradication, and recovery - while partnering cross-functionally to strengthen GitLab’s overall security posture.
Key aspects of this role include:
- Leading and coordinating end-to-end incident response for high-severity security events
- Preparing clear executive communications during incidents
- Investigating complex security incidents across cloud environments
- Partnering with Detection Engineering to design and implement detection capabilities
- Building and enhancing automation and AI-assisted workflows
- Partnering with Threat Intelligence to contextualize threats
- Conducting root cause analysis and leading post-incident reviews
- Developing and maintaining runbooks, playbooks, and operational documentation
- Collaborating cross-functionally during incidents and leading proactive initiatives
- Mentoring other engineers and helping elevate the team’s overall incident response maturity
Requirements:
- Strong experience in security incident response and investigations in cloud-first environments
- Experience using or administering Git/GitLab in a security or engineering context
- Hands-on experience with SIEM, EDR, and/or detection engineering
- Experience with cloud platforms (AWS & GCP)
- Familiarity with threat intelligence and adversary tactics (e.g., MITRE ATT&CK)
- Experience building or working with automation (e.g., Python, scripting, SOAR platforms)
- Interest or experience in applying AI/ML or data-driven techniques to detection, triage, or response workflows
- Strong analytical and problem-solving skills; ability to operate effectively during high-severity incidents
- Excellent written communication skills with a passion for clear, actionable documentation
- Growth mindset with a proactive approach to identifying and mitigating security risks
This listing is enriched and indexed by YubHub. To apply, use the employer's original posting:
https://job-boards.greenhouse.io/gitlab/jobs/8815229002