资深企业安全工程师
查看雇主原标题
Staff Corporate Security EngineerGitLab · Remote, Canada; Remote, 美国 · base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary ra
职位信息来自雇主公开的招聘页面。申请前请务必在雇主官网核实详情。
为什么值得关注?
发现指数 50/100,仅依据与该职位一起存储的证据计算。
- 新的雇主官方职位
- 远程职位
分数构成
- 时效性 (随职位发布时间变化)+18
- 雇主官方来源+15
- 远程职位+8
- 稀有职位+1
- 公司来源健康度+8
该职位未包含:已披露薪资、提及签证担保、提及搬迁、未出现在监控的职位板上。
这些理由来自雇主自己的职位描述与我们核实过的来源检查结果。除了已存储的信号之外,我们不做任何推测。
职位描述
机器翻译GitLab 是面向 DevSecOps 的智能编排平台。GitLab 帮助组织提升开发者生产力、提高运营效率、降低安全与合规风险,并加速数字化转型。超过 5000 万注册用户以及超过 50% 的《财富》100 强*企业信赖 GitLab,以更快交付更优质、更安全的软件。
我们产品中内置的相同原则也体现在我们团队的工作方式中:我们将 AI 视为核心生产力倍增器,所有团队成员都应将 AI 融入日常工作流程,以推动效率、创新和影响力。GitLab 是职业加速发展、创新蓬勃生长、每个声音都受到重视的地方。我们的高绩效文化由我们的价值观和持续的知识交流驱动,使团队成员能够充分发挥潜力,同时与行业领袖协作解决复杂问题。与我们一起共创未来,打造改变世界软件开发方式的技术。
* Fortune 500® 是 Fortune Media IP Limited 的注册商标,经许可使用。该声明基于 GitLab 数据。Fortune 100 指 2025 年 6 月发布的 2025 年 Fortune 500 榜单中排名前 20% 的公司。Fortune 和 Fortune Media IP Limited 与 GitLab 无关联,也不为 GitLab 的产品或服务背书。
职位概述
作为高级企业安全工程师,您将帮助保护 GitLab 团队成员在完全远程环境中每天依赖的系统。该职位隶属于企业安全工程团队,专注于为终端以及支持终端的 SaaS 平台构建默认安全的控制措施,并高度重视 macOS。您将负责终端加固、自动化和检测方面的重要技术决策,并帮助将安全要求转化为可扩展的工程系统,这些系统可衡量、可审计,并以减少最终用户摩擦为目标。
如果您热衷于用代码解决安全问题,这个职位将非常适合您。您将跨终端管理、身份和安全运营开展工作,通过基础设施即代码、Terraform 和 GitOps 工作流,改进 GitLab 管理 macOS、iOS、Windows 和 Linux 设备的方式。在您的第一年,您将被期望加强终端安全架构、扩展自动化,并提高控制措施部署和维护方式的可靠性与可审计性。
岗位职责
• 主导 GitLab 终端设备群及相关基础设施的安全架构,主要聚焦于 macOS。
• 使用基于代码的工作流,设计并支持安全终端部署、配置和生命周期管理的自动化。
• 通过 Terraform、版本控制、合并请求、持续集成流水线和自动化发布,管理终端和 SaaS 安全配置。
• 定义并执行 macOS、iOS、Windows 和 Linux 终端的安全基线。
• 制定符合安全、合规和运营要求的补丁与软件分发方案。
• 与信息技术、安全运营以及检测与响应团队合作,改进终端遥测、检测和响应模型。
• 推动流程改进,通过优先采用自动化、策略驱动控制和可审计的变更管理,减少人工工作并降低风险。
• 指导企业安全和信息技术部门的工程师,并作为复杂终端安全问题的资深升级支持点。
您将带来
• 在需要可扩展、持久控制措施的环境中,设计并交付终端、系统或企业安全解决方案的经验。
• 对 Jamf Pro 或 FleetDM 等终端管理平台的深入了解,尤其是在架构设计和保护 macOS 环境方面。
• 对 Terraform 和基础设施即代码实践有很强的实操能力,包括模块设计、状态管理和基于流水线的部署。
• 具有 GitOps 工作流经验,即变更通过 Git 仓库、合并请求、代码审查和自动化流水线进行管理。
• 精通用于自动化和安全工具的脚本或编程,例如 bash、Python、PowerShell 或 Go。
• 熟悉云身份提供商和目录服务,包括 Okta、Google Workspace、LDAP 等平台。
• 具备清晰沟通、跨分布式团队协作,并在全远程环境中独立工作的能力。
• 愿意带来来自相关安全、系统或平台工程背景的可迁移经验,并以务实且注重安全的方式解决问题。
福利待遇
• 灵活带薪休假
• 团队成员资源小组
• 股权薪酬与员工购股计划
• 成长与发展基金
• 育儿假
请注意,我们欢迎具有不同经验水平的候选人表达兴趣;许多成功的候选人并不满足每一项要求。此外,研究表明,来自代表性不足群体的人除非满足每一项资格要求,否则不太可能申请职位。如果您对这个职位感到兴奋,请申请,并让我们的招聘人员评估您的申请。
国家招聘准则:GitLab 在世界各国招聘新团队成员。我们的所有职位均为远程职位,但某些职位可能有特定的基于地点的资格要求。我们的招聘团队可以在启动招聘流程后帮助回答有关地点的任何问题。
隐私政策:请查看我们的招聘隐私政策。您的隐私对我们很重要。
GitLab 自豪地成为提供平等机会的工作场所,并且是积极行动雇主。GitLab 在招聘、雇佣、职业发展和晋升、升职以及退休方面的政策和实践完全基于能力,不论种族、肤色、宗教、血统、性别(包括怀孕、哺乳、性取向、性别认同或性别表达)、国籍、年龄、公民身份、婚姻状况、精神或身体残疾、遗传信息(包括家族病史)、退伍状态、受保护退伍军人身份(包括残疾退伍军人、近期退伍军人、战时或战役徽章现役退伍军人以及武装部队服务奖章退伍军人),或任何其他受法律保护的基础。GitLab 不会容忍基于任何这些特征的歧视或骚扰。另请参阅 GitLab 的 EEO 政策以及 EEO is the Law。如果您有残疾或特殊需求需要便利安排,请在招聘流程中告知我们。
以上内容由机器翻译自动生成,可能存在错误;投递前请以雇主原文为准。
查看雇主原文
职位描述
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.
The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.
* Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab.
An overview of this role
As a Senior Corporate Security Engineer, you'll help secure the systems GitLab team members rely on every day across a fully remote environment. This role sits within Corporate Security Engineering and focuses on building secure-by-default controls for endpoints and the SaaS platforms that support them, with a strong emphasis on macOS. You'll own meaningful technical decisions around endpoint hardening, automation, and detection, and you'll help turn security requirements into scalable engineering systems that are measurable, auditable, and designed to reduce friction for end users.
This is a strong fit if you're motivated by solving security problems with code. You will work across endpoint management, identity, and security operations to improve how GitLab manages macOS, iOS, Windows, and Linux devices through Infrastructure-as-Code, Terraform, and GitOps workflows. In your first year, you'll be expected to strengthen endpoint security architecture, expand automation, and improve the reliability and auditability of how controls are deployed and maintained.
岗位职责
• Lead the security architecture of GitLab's endpoint fleet and related infrastructure, with a primary focus on macOS.
• Design and support automation for secure endpoint deployment, configuration, and lifecycle management using code-based workflows.
• Manage endpoint and SaaS security configuration through Terraform, version control, merge requests, continuous integration pipelines, and automated rollouts.
• Define and enforce security baselines across macOS, iOS, Windows, and Linux endpoints.
• Develop patching and software distribution approaches that align with security, compliance, and operational requirements.
• Partner with Information Technology, Security Operations, and Detection and Response teams to improve endpoint telemetry, detections, and response models.
• Drive process improvements that reduce manual work and lower risk by favoring automation, policy-driven controls, and auditable change management.
• Mentor engineers across Corporate Security and Information Technology, and serve as a senior escalation point for complex endpoint security issues.
What you’ll bring
• Experience designing and delivering endpoint, systems, or corporate security solutions in environments that require scalable, durable controls.
• Deep knowledge of endpoint management platforms such as Jamf Pro or FleetDM, especially for architecting and securing macOS environments.
• Strong hands-on ability with Terraform and Infrastructure-as-Code practices, including module design, state management, and pipeline-based deployment.
• Experience working with GitOps workflows where changes are managed through Git repositories, merge requests, code review, and automated pipelines.
• Strong proficiency in scripting or programming for automation and security tooling, such as bash, Python, PowerShell, or Go.
• Familiarity with cloud identity providers and directories, including platforms such as Okta, Google Workspace, LDAP.
• Ability to communicate clearly, collaborate across distributed teams, and work independently in an all-remote environment.
• Openness to bringing transferable experience from adjacent security, systems, or platform engineering backgrounds, along with a practical and security-focused approach to problem solving.
福利待遇
• Flexible Paid Time Off
• Team Member Resource Groups
• Equity Compensation & Employee Stock Purchase Plan
• Growth and Development Fund
• Parental Leave
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.
Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us.
GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law . If you have a disability or special need that requires accommodation , please let us know during the recruiting process .