Senior Professional Services Technical Architect - Security

6 hours, 39 minutes ago
Full-time
Senior
DevOps and Infrastructure
GitLab

GitLab

GitLab: The comprehensive DevOps platform revolutionizing software development with automation, AI workflows, and essential tools for efficient collaboration.

Internet Software & Services
1K-5K
Founded 2014

Description

  • Design and lead secure GitLab solution implementations, including security risk assessments and threat modeling.
  • Advise customers on GitLab SaaS, Self-Managed, and Dedicated deployment architectures based on security and compliance needs.
  • Lead technical discovery and translate customer requirements into implementation plans and deliverables.
  • Lead migrations from legacy source control, CI/CD, and application security tools to GitLab CI/CD and GitLab Security Scanners.
  • Support security-related statements of work, sales scoping, and pre-sales planning.
  • Coordinate security implementation work across cross-functional teams and communicate customer needs to Product teams.
  • Mentor Professional Services and partner consultants and create delivery kits, documentation, training, case studies, and enablement sessions.
  • Partner with Training, Support, Customer Success, Engagement Managers, and Program Managers to deliver client engagements.

Requirements

  • Experience delivering secure enterprise architectures across application security, cloud security, secure cloud infrastructure, and DevSecOps.
  • Experience migrating source code management and CI/CD platforms with security controls.
  • Experience advising on GitLab SaaS, Self-Managed, and Dedicated deployment tradeoffs.
  • Hands-on experience with Ansible, Terraform, configuration management, and infrastructure as code.
  • Experience integrating security controls into CI/CD pipelines.
  • Deep knowledge of GitLab SAST, DAST, Dependency Scanning, Secret Detection, and Container Scanning.
  • Experience migrating Snyk, Checkmarx, Veracode, SonarQube, and GitGuardian to GitLab Security Scanners.
  • Experience mapping findings, managing risk findings, and building migration validation frameworks.
  • Knowledge of ISO 27001, NIST 800-53, SOC 2, GDPR, and FedRAMP.
  • Understanding of supply-chain security, generative AI and LLM risks, zero-trust architecture, and the OWASP Top 10 for LLM Applications; ability to communicate with technical and non-technical stakeholders in an asynchronous remote environment.

Benefits

  • US base salary range of $164,880–$277,560, excluding bonuses, equity, and benefits.
  • Health, financial, and well-being benefits.
  • Flexible paid time off.
  • Equity compensation and employee stock purchase plan.
  • Growth and Development Fund.
  • Parental leave.
  • Fully remote work environment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Lead Security Engineer - Penetration Testing & AI Security

HighLevel 251-1K Internet Software & Services

HighLevel is seeking a Lead Security Engineer to secure its SaaS platform and AI-enabled products through application security leadership, secure development practices, and adversarial testing of AI systems.

Bash CI/CD Cybersecurity DevSecOps Docker Go JavaScript JWT Kubernetes Microservices OpenID Connect OWASP Penetration Testing Python SAML
3 days, 7 hours ago

Principal Consultant - ICS/OT Cybersecurity

Dragos 251-1K Professional Services

Dragos is seeking a Singapore-based Principal Consultant to lead high-impact OT/ICS cybersecurity engagements and shape long-term security strategies for critical infrastructure organizations across APAC.

Cybersecurity SIEM
6 days, 7 hours ago

Cybersecurity, Incident Response & Hands-On Training Contract IT Instructor (Onsite and virtual live classes) (copy)

Pluralsight 1K-5K Internet Software & Services

Pluralsight is seeking independent contract cybersecurity instructors and scenario developers worldwide to deliver remote and onsite incident-response training, tabletop exercises, and Capture the Flag events for enterprise clients.

Bash Burp Suite Cybersecurity Docker Metasploit Penetration Testing Python Splunk Wireshark
1 week ago

Professional Services Consultant, GRC

Mitratech 1K-5K Professional Services

Mitratech is seeking a Services Consultant in Mexico to support client implementations of its GRC suite through requirements analysis, configuration, testing, training, and go-live support.

SQL
1 week, 2 days ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers