Staff Corporate Security Engineer
Core
Design and automate secure-by-default controls for GitLab's internal endpoint fleet and SaaS platforms, with a primary focus on macOS.
Role type
Senior IC corporate security engineer (endpoint & infrastructure)
Builds
Scalable engineering systems for endpoint hardening, automation, detection, and lifecycle management
Domain
Corporate Security / Endpoint Management / DevSecOps
Deliverable
production ML models | product features | infrastructure
Required skills
Endpoint security architecture, macOS security, Terraform, Infrastructure-as-Code, GitOps workflows, scripting (bash/Python/PowerShell/Go), identity management (Okta/Google Workspace/LDAP)
Preferred skills
Experience with Jamf Pro or FleetDM, patching strategies, cloud identity providers
Technologies
Terraform, Git, macOS, iOS, Windows, Linux, Jamf Pro, FleetDM, Okta, Google Workspace, LDAP
Responsibilities
Lead security architecture for the endpoint fleet; design automation for secure deployment and lifecycle management; define and enforce security baselines across multiple OS; develop patching and distribution approaches; partner with IT and Security Ops to improve telemetry and response; mentor engineers and serve as escalation point
Seniority
Senior, hands-on IC