GitLab

GitLab

GitLab: The comprehensive DevOps platform revolutionizing software development with automation, AI workflows, and essential tools for efficient collaboration.

Internet Software & Services
1K-5K
Founded 2014

Description

  • Set the long-term strategy and operating model for Product Security across GitLab.com, GitLab Dedicated, and self-managed offerings.
  • Lead a global, multi-disciplinary organization spanning application security, product security engineering, security architecture and platforms, vulnerability management, PSIRT, and infrastructure, cloud, and data security.
  • Partner with senior leaders across Engineering, Product, AI, and Security to embed security into product architecture, planning, and delivery.
  • Own the roadmap for core security services and developer-facing platform capabilities, including authentication, authorization, secrets management, auditability, and security APIs.
  • Drive secure design reviews, threat modeling, and risk-based security practices that help teams ship securely with minimal friction.
  • Guide GitLab’s approach to AI and agentic security, including security architecture, governance decisions, and risk acceptance for new AI surfaces.
  • Oversee vulnerability management, product security incident response, and bug bounty operations.
  • Use trends and root-cause analysis to drive durable product and process improvements.
  • Establish security metrics, planning inputs, and risk visibility to support executive decision-making, customer conversations, and engineering prioritization.

Requirements

  • Senior engineering or security leadership experience with strong product engineering credibility and ownership of security-relevant product architecture.
  • Experience building, shipping, and operating services in a high-growth SaaS or AI environment.
  • Experience leading multi-disciplinary organizations through Directors, Senior Managers, and senior individual contributors in a distributed, remote-first setting.
  • Knowledge of secure design, threat modeling, web application and API security, and modern authentication and authorization patterns.
  • Familiarity with software supply chain security, CI/CD pipelines, vulnerability management, incident response, and cloud security concepts.
  • Experience partnering with Product, Engineering, AI, and Security leaders to turn risk, customer needs, and technical trade-offs into practical roadmaps and decisions.
  • Strong written and verbal communication skills, including presenting technical risk and business trade-offs to executives, customers, and stakeholders.
  • Open to candidates with different career paths, including product engineering leaders with deep security ownership or security leaders with a strong record of building and shipping products.
  • Must be a United States Citizen due to government requirements.
  • Nice to have: experience with developer tools, DevOps/DevSecOps platforms, large-scale open-source projects, security standards and frameworks such as OWASP, NIST, and SLSA, bug bounty and coordinated disclosure programs, or regulated/security-sensitive customer environments such as financial services, government, or healthcare.

Benefits

  • Base salary range of $297,600 to $360,000 USD for the listed level in the United States.
  • Flexible Paid Time Off.
  • Equity compensation and an Employee Stock Purchase Plan.
  • Growth and Development Fund.
  • Parental leave.
  • Benefits to support health, finances, and well-being.
  • Team Member Resource Groups.
  • Remote work with roles generally offered globally, subject to location-based eligibility requirements.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Product Manager

Apply Digital 251-1K Professional Services

Apply Digital is hiring a Senior Product Manager to lead client-facing product strategy, planning, and delivery for digital products across Latin America in a remote or hybrid setup.

Agile Contentful UX Design
1 hour, 9 minutes ago

Product Manager II - API Platform

Filevine 251-1K Specialized Consumer Services

Filevine is hiring a remote Product Manager II to own execution for its API Platform portfolio, including LOIS Workflows, DataBridge, and Platform MCP, within the company’s Legal AI platform.

Agile OAuth Scrum
3 hours, 2 minutes ago

Principal Product Manager

New Relic 1K-5K Internet Software & Services

New Relic is hiring a Principal Product Manager to lead its Browser Monitoring product within the Digital Experience Monitoring team, shaping how customers observe and optimize front-end experiences across complex web applications.

Angular DOM JavaScript OpenTelemetry React SEO Vue.js
3 hours, 48 minutes ago

Director of Product, Lab

Fundraise Up 51-250 Capital Markets

Fundraise Up is hiring a Lab leader in Serbia to build and run a 0→1 product exploration function that tests high-risk opportunities and decides which ideas should scale, pivot, or be killed.

Google Tag Manager LLM Prototyping
4 hours, 17 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers