工程总监,安全工厂
查看雇主原标题
Director of Engineering, Security FactoryGitLab · Remote, Israel; Remote, 英国
职位信息来自雇主公开的招聘页面。申请前请务必在雇主官网核实详情。
为什么值得关注?
发现指数 60/100,仅依据与该职位一起存储的证据计算。
- 新的雇主官方职位
- 远程职位
- 稀有职位匹配
分数构成
- 时效性 (随职位发布时间变化)+18
- 雇主官方来源+15
- 远程职位+8
- 稀有职位+11
- 公司来源健康度+8
该职位未包含:已披露薪资、提及签证担保、提及搬迁、未出现在监控的职位板上。
这些理由来自雇主自己的职位描述与我们核实过的来源检查结果。除了已存储的信号之外,我们不做任何推测。
职位描述
机器翻译GitLab 是面向 DevSecOps 的智能编排平台。GitLab 帮助组织提升开发者生产力、改善运营效率、降低安全与合规风险,并加速数字化转型。超过 5000 万注册用户以及超过 50% 的《财富》100 强*企业信赖 GitLab,以更快交付更优质、更安全的软件。
我们产品中内置的同样原则也体现在我们团队的工作方式中:我们将 AI 视为核心生产力倍增器,所有团队成员都应把 AI 融入日常工作流程,以推动效率、创新和影响力。GitLab 是职业加速发展、创新蓬勃生长、每一个声音都被重视的地方。我们的高绩效文化由我们的价值观和持续的知识交流驱动,使团队成员能够充分发挥潜力,同时与行业领导者协作解决复杂问题。与我们一起共创未来,打造改变世界软件开发方式的技术。
* Fortune 500® 是 Fortune Media IP Limited 的注册商标,经许可使用。该声明基于 GitLab 数据。Fortune 100 指 2025 年《财富》500 强榜单中排名前 20% 的公司,该榜单于 2025 年 6 月发布。Fortune 和 Fortune Media IP Limited 与 GitLab 无关联,也不为 GitLab 的产品或服务背书。
职位概览
作为 Security Factory 工程总监,你将领导工程组织,负责 GitLab 基于 AI 的 DevSecOps 平台中面向客户的安全能力。你将通过指导构建专有扫描器、AI 驱动的检测引擎、代理式修复流程以及配套安全基础的团队,帮助塑造客户如何在现代软件工作流中检测、确定优先级并修复漏洞。你将向 Sec 部门工程副总裁汇报,为九个团队的分布式组织制定工程愿景和路线图,其中包括工程经理,并为高质量交付、稳健的技术方向和健康的团队成长创造条件。
我们项目的一些示例:
• 用于静态应用安全测试、软件组成分析、密钥检测及相关 AI 和机器学习检测引擎的高级专有扫描器
• 用于自动修复和引导式修复的代理式安全流程,以及强化 AI 安全、威胁情报、漏洞管理和安全基础的研究
岗位职责
• 为负责专有扫描器、AI 驱动安全流程、研究职能、漏洞管理和安全基础的各团队制定工程愿景和多季度路线图。
• 领导由经理和个人贡献者组成的分布式工程组织,重点关注团队绩效、敬业度和职业发展。
• 推动 AI 和机器学习检测引擎、代理式修复流程以及可扩展扫描基础设施的架构决策。
• 与产品管理合作,在受监管且重视安全的环境中为客户定义优先级、塑造需求并交付安全能力。
• 负责 GitLab 专有应用安全扫描器、代理式修复工作流和 AI 安全研究工作的工程交付。
• 在跨职能规划、高管评审、安全披露和客户沟通中代表 Security Factory 阶段。
• 建立交付、可观测性、事件响应、扫描器质量和代码质量方面的工程标准。
• 通过议题、合并请求和 GitLab 手册,为 GitLab 透明、异步优先的工作方式做出贡献。
你将带来
• 在分布式环境中领导拥有多个团队和经理的工程组织的经验。
• 对应用安全基础有深入理解,包括静态应用安全测试、软件组成分析、密钥检测、漏洞管理工作流和软件供应链安全。
• 在软件即服务或 DevSecOps 环境中构建检测、分析或扫描系统的经验,包括在精确率、召回率、延迟和规模之间进行权衡。
• 直接交付过面向客户的 AI 或机器学习产品功能,并与检测或修复质量成果相关的经验。
• 能够在产品主导的环境中,与产品管理就路线图规划、优先级排序和需求密切合作。
• 出色的书面沟通能力,并能在远程、异步优先的组织中通过清晰文档进行领导。
• 协作式领导风格,能够支持团队、给予直接反馈,并与 GitLab 的价值观保持一致。
• 熟悉代理式 AI 系统、AI 代理编排、威胁情报研究或开源安全工具有所帮助,我们也欢迎具备相邻或可迁移经验的候选人。
福利待遇
• 灵活带薪休假
• 团队成员资源小组
• 股权薪酬与员工购股计划
• 成长与发展基金
• 育儿假
请注意,我们欢迎具有不同经验水平的候选人表达兴趣;许多成功候选人并不满足每一项要求。此外,研究表明,来自代表性不足群体的人除非满足每一项资格要求,否则不太可能申请职位。如果你对这个职位感到兴奋,请申请,并让我们的招聘人员评估你的申请。
国家招聘准则:GitLab 在世界各国招聘新团队成员。我们的所有职位均为远程职位,但某些职位可能有特定的基于地点的资格要求。我们的招聘团队可以在启动招聘流程后帮助回答有关地点的任何问题。
隐私政策:请查看我们的招聘隐私政策。你的隐私对我们很重要。
GitLab 自豪地成为机会平等的雇主,也是平权行动雇主。GitLab 在招聘、雇佣、职业发展与晋升、升职和退休方面的政策与实践完全基于能力,不论种族、肤色、宗教、血统、性别(包括怀孕、哺乳、性取向、性别认同或性别表达)、国籍、年龄、公民身份、婚姻状况、精神或身体残疾、遗传信息(包括家族病史)、退伍状态、受保护退伍军人身份(包括残疾退伍军人、近期退伍军人、战时或战役徽章现役退伍军人以及武装部队服务奖章退伍军人),或任何其他受法律保护的基础。GitLab 不会容忍基于任何这些特征的歧视或骚扰。另请参阅 GitLab 的 EEO 政策和 EEO is the Law。如果你有需要便利安排的残疾或特殊需求,请在招聘流程中告知我们。
以上内容由机器翻译自动生成,可能存在错误;投递前请以雇主原文为准。
查看雇主原文
职位描述
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.
The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.
* Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab.
An overview of this role
As Director of Engineering, Security Factory , you will lead the engineering organization responsible for GitLab’s customer-facing security capabilities across our AI-powered DevSecOps platform. You’ll help shape how customers detect, prioritize, and remediate vulnerabilities across modern software workflows by guiding teams that build proprietary scanners, AI-driven detection engines, agentic remediation flows, and supporting security foundations. Reporting to the VP of Engineering, Sec section , you’ll set the engineering vision and roadmap for a distributed group of nine teams, including engineering managers, and create the conditions for strong delivery, sound technical direction, and healthy team growth.
Some examples of our projects:
• Advanced proprietary scanners for Static Application Security Testing, Software Composition Analysis, Secret Detection, and related AI and machine learning detection engines
• Agentic security flows for autofix and guided remediation, plus research that strengthens AI security, threat intelligence, vulnerability management, and security foundations
岗位职责
• Set the engineering vision and multi-quarter roadmap across teams working on proprietary scanners, AI-driven security workflows, research functions, vulnerability management, and security foundations.
• Lead a distributed engineering organization of managers and individual contributors, with a focus on team performance, engagement, and career development.
• Drive architectural decisions for AI and machine learning detection engines, agentic remediation flows, and scalable scanning infrastructure.
• Partner with product management to define priorities, shape requirements, and deliver security capabilities for customers in regulated and security-conscious environments.
• Own the engineering delivery of GitLab’s proprietary application security scanners, agentic remediation workflows, and AI Security Research efforts.
• Represent the Security Factory stage in cross-functional planning, executive reviews, security disclosures, and customer conversations.
• Establish engineering standards for delivery, observability, incident response, scanner quality, and code quality.
• Contribute to GitLab’s transparent, async-first way of working through issues, merge requests, and the GitLab handbook.
What you’ll bring
• Experience leading engineering organizations with multiple teams and managers in a distributed environment.
• Strong understanding of application security fundamentals, including Static Application Security Testing, Software Composition Analysis, secret detection, vulnerability management workflows, and software supply chain security.
• Experience building detection, analysis, or scanning systems in a software as a service or DevSecOps environment, including trade-offs across precision, recall, latency, and scale.
• Direct experience shipping a customer-facing AI or machine learning product feature tied to detection or remediation quality outcomes.
• Ability to partner closely with product management on roadmap planning, prioritization, and requirements in a product-led context.
• Strong written communication skills and comfort leading through clear documentation in a remote, async-first organization.
• Collaborative leadership style that supports teams, gives direct feedback, and aligns with GitLab’s values.
• Familiarity with agentic AI systems, AI agent orchestration, threat intelligence research, or open source security tooling is useful, and we welcome candidates with adjacent or transferable experience.
福利待遇
• Flexible Paid Time Off
• Team Member Resource Groups
• Equity Compensation & Employee Stock Purchase Plan
• Growth and Development Fund
• Parental Leave
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.
Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us.
GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law . If you have a disability or special need that requires accommodation , please let us know during the recruiting process .