# Staff Infrastructure Security Engineer

**Company:** [GitLab](https://hotfix.jobs/companies/gitlab)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 7+ years
**Skills:** AWS, GCP, Azure, Kubernetes, Go, Python, Ruby, Terraform, Ansible, CloudFormation, Policy As Code, FedRAMP, ISO 27001, SOC 2, Pci-Dss
**Posted:** 2026-08-10

> Leads infrastructure security strategy and execution across GitLab’s cloud platforms and self-managed offerings. The role requires deep cloud, Kubernetes, Infrastructure-as-Code, security tooling, threat modeling, and technical leadership experience.

## Job Description

## Responsibilities
- Set architectural patterns, reference implementations, and foundational security automation for infrastructure security across GitLab.
- Lead infrastructure security initiatives from problem framing through delivery, scoping ambiguous multi-quarter work into executable streams with clear success criteria.
- Conduct and lead security reviews and threat modeling for complex infrastructure components, identify systemic risks, and drive remediation across affected systems.
- Define the approach to AI-assisted security engineering and establish reusable patterns.
- Serve as a technical voice for Infrastructure Security, translating architectural tradeoffs into decisions for engineering teams and senior leadership.
- Partner on technical planning, prioritization, and roadmap development.
- Mentor and develop engineers while modeling inclusive collaboration.
- Secure GitLab infrastructure through internal use of GitLab products.

## Requirements
- Expert knowledge of cloud infrastructure security across AWS, Google Cloud, or Azure.
- Expertise in Kubernetes and related infrastructure and data security topics.
- Proficiency in multiple programming languages, including Go, Python, and Ruby, with experience delivering production-quality security tooling.
- Extensive experience with Infrastructure-as-Code security using Terraform, Ansible, or CloudFormation.
- Experience with policy-as-code and automated compliance.
- Hands-on experience applying AI to security workflows.
- Track record of leading multi-team technical initiatives from ambiguous problem statements to measurable outcomes.
- Strong written and verbal communication skills, including communication with senior leadership.
- Familiarity with FedRAMP, ISO 27001, SOC 2, and PCI-DSS.

## Benefits
- Health, financial, and well-being benefits
- Flexible paid time off
- Team member resource groups
- Equity compensation and employee stock purchase plan
- Growth and development fund
- Parental leave

## Similar jobs

- [Staff Security Researcher](https://hotfix.jobs/jobs/6b308cd8-be33-459a-b904-08e54567ad7b) - GitLab - Remote - $168k – $238k/yr
- [Staff Identity Governance and Access Engineer](https://hotfix.jobs/jobs/8fe7fe60-ff7a-48f4-a805-f3f100e1814f) - Okta - Bellevue, WA - $161k – $221k/yr
- [Staff Security Engineer](https://hotfix.jobs/jobs/29576103-a601-455c-a963-ce04128098e5) - Twilio - Remote - $156k – $194k/yr
- [Staff IAM Engineer](https://hotfix.jobs/jobs/7a722d47-b173-4ffc-9981-f10ed9f3ce9c) - Ironclad - San Francisco, CA - $170k – $190k/yr
- [Staff Identity Engineer](https://hotfix.jobs/jobs/9840c62b-d314-4749-aa98-2057f5343be2) - Okta - Bellevue, WA - $161k – $221k/yr

**Apply:** https://hotfix.jobs/jobs/f59818d3-9cff-419d-8ac0-3352953d91d5
**Canonical:** https://hotfix.jobs/jobs/f59818d3-9cff-419d-8ac0-3352953d91d5