GitLab logo
GitLab

Build software faster. The One DevOps Platform enables your entire org to collaborate around your code. We're hiring.

Staff Infrastructure Security Engineer – APAC, EMEA

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 1,001-5,000Since 2014H1B No SponsorCompany SiteLinkedIn

Location

Oregon + 1 moreAll locations: Oregon | Asia

Posted

43 days ago

Salary

0

Seniority

Lead

Job Description

Staff Infrastructure Security Engineer – APAC, EMEA

GitLab

• Set architectural patterns, reference implementations, and foundational security automation that shape how infrastructure security is implemented across GitLab • Lead infrastructure security initiatives from problem framing through delivery, scoping ambiguous multi-quarter work into executable streams with clear success criteria • Conduct and lead comprehensive security reviews and threat modeling for complex infrastructure components, identifying systemic risks and driving remediation across affected systems • Set the team's approach to AI-assisted security engineering, identifying where AI can meaningfully increase leverage and establishing patterns others can adopt • Serve as an authoritative technical voice for Infrastructure Security across our stakeholders, translating architectural tradeoffs into clear decisions for engineering teams and senior leadership • Partner on technical planning, prioritization, and roadmap development to align technical work with business objectives • Mentor and develop engineers, raising the technical bar and modeling inclusive collaboration • Fulfill the Product Security Division Mission of securing GitLab Infrastructure with our own product ("dogfooding")

Job Requirements

  • Expert knowledge of security for cloud infrastructure (AWS/GCP/Azure), container orchestration (Kubernetes) and related infrastructure and data security topics
  • Proficiency in multiple programming languages (Go, Python, Ruby) with a track record of delivering production-quality security tooling
  • Extensive experience with Infrastructure-as-Code security (Terraform, Ansible, CloudFormation), policy-as-code, and automated compliance
  • Hands-on experience applying AI to security workflows, with a point of view on where it creates meaningful leverage
  • Track record of leading multi-team technical initiatives from ambiguous problem statements to measurable outcomes, setting technical direction that peer teams adopt
  • Strong written and verbal communication skills, able to explain security tradeoffs to technical and non-technical audiences, including senior leadership
  • Familiarity with security certifications, frameworks, and standards (FedRAMP, ISO 27001, SOC 2, PCI-DSS)
  • Share our values, and work in accordance with those values

Benefits

  • Benefits to support your health, finances, and well-being
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental leave
  • Home office support

Related Categories

Related Job Pages

More Security Engineer Jobs

GuidePoint Security logo

Senior Security Sales Engineer

GuidePoint Security

We help organizations make smarter cybersecurity decisions that minimize risk.

Full TimeRemoteTeam 201-500H1B Sponsor

Role Description Sr. Security Sales Engineers at GuidePoint Security are experienced professionals who are autonomous, experienced, self-driven security fanatics. They are materially involved in the complete security technologies opportunity lifecycle, from pre-sales through delivery and have the freedom and control over how engagements are scoped and delivered. Our unique position as both a Value-Added Reseller (VAR) AND a professional services organization also requires our Security Sales Engineers to continually expand their knowledge and experience with the latest cutting-edge information security technologies. Qualifications - MUST be located in Columbus or Cincinnati Ohio and open to local/regional travel for customer/vendor partner events - Minimum 5 years in an enterprise level security consultative, vendor, or operational role building and assessing Information Security architectures and programs - Proficiency in multiple security technologies, including: network security and architecture, NGFW, cloud security, Data Security, Vulnerability & Risk Management, Proxy, EDR, IAM, SIEM & Analytics - A good listener to work with clients to understand issues/gaps in their security programs and works alongside them to provide solutions - Proactively research and engage emerging vendors and technologies to understand how they may be used to solve our clients challenges - Excellent soft skills with the ability to articulate complex technical content to both technical and non-technical audiences - Proactively works to mature the business, including improving existing offerings and creating new offerings - Author comprehensive business and technical collateral to support the business that is proficiently tailored to both technical and managerial audiences - Security Engineers work from remote/virtual when not visiting client locations or attending events/meetings - Position will require travel up to 25% - Expectations for this role is 70% Presales and 30% delivery Requirements - Deep proficiency in multiple security technologies, including: network security, NGFW, cloud security, DLP, CASB, Proxy, IAM, SIEM/Analytics, etc. - Deep expertise architecting and designing enterprise scale security solutions - Strong networking and security troubleshooting - Deep proficiency in various client and server operating systems (Windows, Nix, OSX, etc.) - Working technical knowledge of advanced security concepts (Zero trust, defense in depth, etc.) Preferred - Experience with security technologies including Symantec DLP, ForeScout, Palo Alto, Check Point, CrowdStrike, Splunk, and AWS/Azure/GCP - Bachelor’s degree in a relevant discipline or equivalent experience - 5+ years of security engineering experience in the Information Security industry OR as a technical lead for an internal Information Security program - Previous pre-sales experience is strongly preferred Benefits - Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions) - Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans) - Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans - 12 corporate holidays and a Flexible Time Off (FTO) program - Healthy mobile phone and home internet allowance - Eligibility for retirement plan after 2 months at open enrollment - Pet Benefit Option

United States + 9 moreAll locations: United States | United Kingdom | Canada | Germany | France | India | Brazil | Australia | Estonia | Japan
Job Closed
Yopeso logo

Security, Network, and IT Administrator

Yopeso

Shaping ideas into great products.

Full TimeRemoteTeam 201-500H1B No Sponsor

• Administration and maintenance of a virtualized test environment (Hyper-V) serving as the technical foundation for critical infrastructure projects in energy systems (HVDC, FACTS) • Install, configure, and maintain virtual machines, operating systems, and applications within the test environment • Install and configure physical and virtual network devices, including switches, routers, and firewalls • Monitor system and network performance to identify and predict problems and make proactive adjustments • Manage the full lifecycle of virtualization and network components in alignment with cybersecurity guidelines and mandatory patching activities • Maintain and manage backup and recovery processes for the test environment • Troubleshoot and resolve issues across the Hyper-V environment and connected network infrastructure • Administer and maintain security applications within the test environment, including endpoint protection, vulnerability scanning tools, and access control systems • Provide technical support and create documentation for Hyper-V processes, network configurations, and security procedures • Track technical developments and technological trends in IT and OT security; continuously expand know-how relevant to energy system test environments • Create and maintain disaster recovery plans and procedures for responding to major outages affecting the test infrastructure • Identify, assess, and remediate security issues as they arise; implement and refine system hardening measures across the environment

Moldova
Deutsche Telekom IT Solutions Slovakia logo

Security Engineer

Deutsche Telekom IT Solutions Slovakia

Growing bigger, getting better. An IT company which creates values for its customers and helps its region to improve.

Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

Role Description We run T-Cloud Public! T Cloud Public is a public cloud standard product based on open source community software and driven by principles of DevSecOps. Lean structures, agile methods, highly motivated teams and an extremely dynamic business environment determine our actions. With this customer-oriented and agile orientation, we are the anchor point for the Public Cloud business in Deutsche Telekom Group. As a Security Engineer Public Cloud you understand the latest developments in the field of Security & Cloud. You respond to and prevent cyberattacks, security breaches and data breaches. Furthermore, you perform independently penetration tests for our services and features. WHAT WILL YOU DO? - Preventively perform penetration tests and actively combat attacks. - Being a driver for automation with regards to security testing. - Analyze and mitigate data and cyber risks. - Be a trusted advisor on information and IT security. - Work in a team of specialists where everyone helps each other in an open and trusting manner. Qualifications - Completed studies in a technical, engineering or scientific subject or comparable professional training. - Minimum 2 years of professional experience in IT ideally with cloud security and/or penetration testing. - Experience in penetration testing and averted attacks is an advantage. - Relevant certification in IT security (such as OSCE, OSEP, OSEE, OSCP, CCSP, CISSP, etc.). - Some experience with penetration testing and averted attacks. - Knowledge of relevant scanning/assessment/automation tools. - Strong experience in Linux and network related services. - High level of customer focus. - Knowledge of agile development processes. - Fluency in written and spoken English. Requirements - Technical skills: - Network General - Security & Privacy - Network Protocols - Network Security - Office Tools - Computer Architecture Knowledge - Kubernetes - Network Equipment - Ansible - Bash - Soft skills: - Analytical Skills - Customer Orientation - Communication - Motivational Skills - Self-organisation - Creativity - Moderation - Self-competence - Social competence - Stress Tolerance Benefits - We believe in balance between work and personal life. - An attractive and extensive work-life balance portfolio guarantees lasting motivation for employees and thus a better quality of life. - Promotes physical and mental well-being and contributes to a positive work environment. - Offers over 25 different benefits to improve personal and professional life in the following areas: - Financial benefits - Benefits with focus on learning and development - Benefits with focus on health and sport - Benefits with focus on family and work-life balance - Other benefits Compensation Final salary is negotiable. We are offering base salary depending on seniority level and previous experience of candidate. In addition to base salary we provide variable part and other financial benefits. Base salary will not be lower than 1500 € /brutto. Additional Information - Please be informed that our remote working possibility is only available within Slovakia due to European taxation regulation. - Location: Kosice - Company: Deutsche Telekom System Solutions Slovakia - Language: English - Job category: Technical positions - Compensation: from EUR 1500 - monthly

Slovakia
€1.5K / month
24 Seven Talent logo

Senior Cybersecurity Writer

24 Seven Talent

The Sage Group is a 24 Seven company and a staffing agency focused on providing consultants, contractors, and permanent staff for business operations and marketing jobs. The Sage G

Sr. Cybersecurity Writer Contract type Freelance Location Columbia, Maryland Specialty Marketing Salary $70/hour - $78/hour Remote Yes Reference 509303 Contact name Barton Bromley Apply For This Job Job description One of The Sage Group’s clients is looking for a Sr. Cybersecurity Writer, strong at Cybersecurity long form and writing SEO pillar pages. The client focuses on cutting-edge cyber security. Duration: 6-12 months to start plus extension possibilities Location: 100% remote in USA Part time: 20 hours per week, work any hours, so keep your day job Compensation: $70-78 hour Portfolio: Required with application to display samples of the following - 10 years Cybersecurity writing experience - Proven experience with SEO optimization as they need someone to write their SEO pillar pages - Great at writing strong first drafts - Deep Cybersecurity knowledge - Able to work independently with minimal supervision - Can produce high-quality long-form content independently - This team moves quickly so no time for extensive editing cycles

Worldwide
$70 - $78 / hour