Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
GitLab

Staff Infrastructure Security Engineer – APAC, EMEA

GitLab

Staff Security Engineer leading infrastructure security initiatives for GitLab's cloud infrastructure. Mentoring engineers and defining technical direction for security processes.

Posted 4/27/2026full-timeRemote • ⛩ Anywhere in AsiaLeadWebsite

Tech Stack

Tools & technologies
AnsibleAWSAzureCloudGoGoogle Cloud PlatformKubernetesPythonRubyTerraform

About the role

Key responsibilities & impact
  • Set architectural patterns, reference implementations, and foundational security automation that shape how infrastructure security is implemented across GitLab
  • Lead infrastructure security initiatives from problem framing through delivery, scoping ambiguous multi-quarter work into executable streams with clear success criteria
  • Conduct and lead comprehensive security reviews and threat modeling for complex infrastructure components, identifying systemic risks and driving remediation across affected systems
  • Set the team's approach to AI-assisted security engineering, identifying where AI can meaningfully increase leverage and establishing patterns others can adopt
  • Serve as an authoritative technical voice for Infrastructure Security across our stakeholders, translating architectural tradeoffs into clear decisions for engineering teams and senior leadership
  • Partner on technical planning, prioritization, and roadmap development to align technical work with business objectives
  • Mentor and develop engineers, raising the technical bar and modeling inclusive collaboration
  • Fulfill the Product Security Division Mission of securing GitLab Infrastructure with our own product ("dogfooding")

Requirements

What you’ll need
  • Expert knowledge of security for cloud infrastructure (AWS/GCP/Azure), container orchestration (Kubernetes) and related infrastructure and data security topics
  • Proficiency in multiple programming languages (Go, Python, Ruby) with a track record of delivering production-quality security tooling
  • Extensive experience with Infrastructure-as-Code security (Terraform, Ansible, CloudFormation), policy-as-code, and automated compliance
  • Hands-on experience applying AI to security workflows, with a point of view on where it creates meaningful leverage
  • Track record of leading multi-team technical initiatives from ambiguous problem statements to measurable outcomes, setting technical direction that peer teams adopt
  • Strong written and verbal communication skills, able to explain security tradeoffs to technical and non-technical audiences, including senior leadership
  • Familiarity with security certifications, frameworks, and standards (FedRAMP, ISO 27001, SOC 2, PCI-DSS)
  • Share our values, and work in accordance with those values

Benefits

Comp & perks
  • Benefits to support your health, finances, and well-being
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental leave
  • Home office support

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
cloud infrastructure securityKubernetesGoPythonRubyInfrastructure-as-Code securityTerraformAnsibleCloudFormationAI in security workflows
Soft Skills
leadershipcommunicationmentoringcollaborationproblem framingtechnical planningprioritizationroadmap developmenttranslating technical conceptsinclusive collaboration
Certifications
FedRAMPISO 27001SOC 2PCI-DSS