Description
GitLab is seeking a Senior Software Engineer to join its Authorization team, focusing on GitLab's Ruby on Rails monolith and next-generation authorization stack. The ideal candidate will design and ship authorization changes, own workstreams end-to-end, build and extend fine-grained permissions, and refactor long-lived policy code.
Responsibilities:
- Design and ship authorization changes in GitLab's Ruby on Rails monolith
- Own a workstream end to end, from problem definition through feature-flagged rollout, dual-run verification, and cleanup
- Build and extend fine-grained permissions for tokens and roles
- Extend and harden authorization enforcement across GraphQL and the REST API
- Refactor long-lived policy code for evaluation by both the monolith and new authorization engine
- Improve reliability, performance, and security posture of existing authorization systems
- Partner with teams on interface contracts as authorization moves toward a shared service
- Drive technical decisions through writing design docs, architecture decision records, and code reviews
Requirements:
- Significant experience building and operating production Ruby on Rails applications
- Experience designing or implementing authorization systems
- A security mindset with attention to permission bugs as security bugs
- Comfort making careful changes to large, long-lived codebases
- Working knowledge of GraphQL and API authorization patterns
- Attention to performance at scale
- Strong written communication skills
Nice to Have:
- Experience with Rust, gRPC, Protocol Buffers, Cedar, or other policy languages
- Knowledge of Zanzibar-style authorization systems, Go, or service-oriented architecture
The base salary range for this role is $139,200-$235,200 USD.
This listing is enriched and indexed by YubHub. To apply, use the employer's original posting:
https://job-boards.greenhouse.io/gitlab/jobs/8738225002