
Staff Security Engineer, IAM (USA) - Gitlab - Remote - Global
Security Engineer
Tap this card for salary charts and full compensation details.
Expand to unlock full salary context
See benchmark placement, pay-band comparison graph, and localized salary narrative.
Job Description
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. The Corporate Security Identity Team is on a mission to transform how our workforce ecosystem securely accesses the tools they need to do their best work, advancing from foundational controls to sophisticated, automated governance across our identity platforms and our emerging AI tooling. As a Staff Security Engineer, you'll be a senior technical leader and strategic anchor on the team. You're passionate about designing elegant solutions to complex identity challenges, whether that's architecting enterprise-scale conditional access policies, codifying our identity platforms in Terraform, or building governance frameworks for AI agents and non-human identities. You'll be responsible for critical systems, write technical proposals that influence our roadmap, raise the bar through design and code review, and lead cross-functional initiatives that span Security, IT, Engineering, Compliance and People teams. This isn't about maintaining the status quo- it's about architecting the future of identity security for a rapidly scaling company operating in regulated environments. *Because this role may need to support our FedRamp tech stack, hiring may be restricted to US citizens physically located in the US. What you’ll do Design comprehensive identity and AI access solutions that scale with our business growth, from AI agent governance frameworks to privileged access workflows that eliminate standing access through just-in-time provisioning Lead identity and access engineering for our enterprise AI platforms including administration, SSO and SCIM integration, audit logging, data controls, and policy enforcement for Claude (web, Claude Code, Cowork) and adjacent tools Codify our identity platforms in Terraform, leading the migration of Okta, Lumos, and our NHI platform from click-ops to peer-reviewed infrastructure-as-code, with a focus on global critical policies Refactor our authentication framework to implement advanced conditional access controls such as device trust, location-based policies, risk-based step-up authentication, and behavioral analytics across our entire SaaS ecosystem Pioneer non-human identity governance by designing monitoring and management solutions for service accounts, API keys, certificates, AI agents, and MCP integrations, and leading deployment, integration, and operationalization of our NHI platform across the SaaS estate Drive cross-functional initiatives with Security, IT, Engineering, Enterprise AI, and the Office of the CIO to extract requirements from ambiguous business needs and translate them into actionable technical specifications Mentor senior and intermediate engineers on technical implementation and strategic thinking, helping them develop expertise in modern identity and AI security practices What you’ll bring 8+ years of IAM experience designing and implementing enterprise-scale solutions, with demonstrated time at a Staff or senior IC level Expert-level Okta expertise including Identity Engine, advanced authentication policies, lifecycle workflows, and API automation Strong infrastructure-as-code practice with Terraform, including provider experience for SaaS identity platforms and a track record of migrating click-ops to code Hands-on experience administering or governing enterprise AI platforms (Anthropic Claude preferred; OpenAI ChatGPT Enterprise, Google Gemini Enterprise, or similar acceptable), and awareness of AI-specific risks including prompt injection, MCP attack surface, agent identity, and data leakage Strong automation experience using Python and iPaaS tools (Tines, Okta Workflows) Experience with IGA platforms like Lumos, ConductorOne, or similar Working knowledge of non-human identity tooling (Token Security, Oasis, Astrix, or similar), or equivalent experience governing service accounts, OAuth grants, and workload identities Experience in regulated environments with knowledge of compliance frameworks (FedRAMP, SOC2, SOX), including change management, evidence collection, and audit support Collaborative mindset and strategic communication skills for writing technical proposals, leading cross-functional initiatives, and mentoring teammates Nice to have Qualifications: Passion for emerging identity challenges including AI agent governance, non-human identity management, zero-trust architecture, and behavioral analytics; Active user of Claude Code, Cursor, or similar agentic development tools, with intuition for how engineers integrate them into daily workflows Due to government requirements, you must be a United States Citizen (defined as any individual who is a citizen of the United States by law, birth, or naturalization) to fill this position.
Company Information
| Location | Active listings |
|---|---|
| Remote - Global | 161 |
| Remote - North America | 14 |
| Remote | 9 |
| Remote - EMEA | 5 |
| Remote - United States | 3 |
| Remote - Canada | 3 |
| Remote - Europe | 1 |
| Role type | Active listings |
|---|---|
| Backend Engineer | 23 |
| Solutions Architect | 9 |
| Product Manager | 8 |
| Software Engineer | 7 |
| Commercial Account Executive | 6 |
| Customer Success Manager | 5 |
| Human Resources Specialist | 5 |
| Sales Representative | 5 |
| Program Manager | 4 |
| Engineering Manager | 4 |
| Customer Success Engineer | 4 |
| Account Executive | 4 |
| New Business Account Executive | 4 |
| Data Analyst | 3 |
| Strategic Account Executive | 3 |
| Regional Sales Director | 3 |
| Regional Marketing Manager | 3 |
| AI Engineer | 2 |
| Field CTO | 2 |
| Customer Experience Services Manager | 2 |
| Engagement Manager | 2 |
| Data Scientist | 2 |
| Business Development Representative | 2 |
| Site Reliability Engineer | 2 |
| Senior Manager | 2 |
| Manager | 2 |
| Candidate Experience Specialist | 2 |
| Technical Program Manager | 1 |
| Commercial Legal Counsel | 1 |
| Architect | 1 |
| Program manager | 1 |
| Public Sector Solutions Architect | 1 |
| G&A Engineer | 1 |
| Vice President | 1 |
| Corporate Development Analyst | 1 |
| Infrastructure Security Manager | 1 |
| Major Account Executive | 1 |
| Product Marketing Manager | 1 |
| HRIS Analyst | 1 |
| Legal | 1 |
| CPQ Developer | 1 |
| Customer Service Representative | 1 |
| Enterprise Applications Engineer | 1 |
| Director | 1 |
| Sales Manager | 1 |
| Field Strategist | 1 |
| Vice President of Engineering | 1 |
| Product Design Manager | 1 |
| Renewals Director | 1 |
| Software Engineering Manager | 1 |
| Procurement Analyst | 1 |
| Support Manager | 1 |
| Pricing Director | 1 |
| Contract Manager | 1 |
| Vice President, Legal Commercial | 1 |
| Professional Services Engineer | 1 |
| Sales Development | 1 |
| Enablement Lead | 1 |
| Accounts Receivable Analyst | 1 |
| Technical Writing Director | 1 |
| Sales Development Representative | 1 |
| Infrastructure Platforms Engineer | 1 |
| Financial Analyst | 1 |
| Product Management Specialist | 1 |
| Senior FP&A Analyst | 1 |
| Senior Recruiter | 1 |
| Security Engineer | 1 |
| Principal Engineer | 1 |
| Vulnerability Researcher | 1 |
| Senior Engineering Manager | 1 |
| Database Engineer | 1 |
| Stock Administrator | 1 |
| Executive Business Partner | 1 |
| Software Security Engineer | 1 |
| Corporate Security Engineer | 1 |
| Ecosystem Sales Manager | 1 |
| Data Architect | 1 |
| Security Architect | 1 |
| Infrastructure Security Engineer | 1 |
| Customer Success Architect | 1 |
| Solutions Architect Manager | 1 |
| Business Development Executive | 1 |
| Engineer | 1 |
| Security Risk Management Engineer | 1 |
| Data System Architect | 1 |
| Backend Developer | 1 |
| Public Sector Strategic Account Executive | 1 |
| Senior UX Researcher | 1 |
| Product Security Architecture Director | 1 |
| Legal Engineer | 1 |
| Application Security Manager | 1 |
| Project Manager | 1 |
| People Operations Partner | 1 |
| Vice President, Data & Insights | 1 |
| Customer Relationship Manager | 1 |
| Researcher | 1 |
| Executive Assistant | 1 |
| Role level | Active listings |
|---|---|
| Mid-Level | 141 |
| Senior | 8 |
| Manager | 8 |
Gitlab appears in 196 indexed job postings in JobCrawls' Finland dataset since October 2023. In that historical index, the strongest location signals for this employer are Remote - Global, Remote - North America, and Remote.
Data shown is based on historical job postings from our database.
Job Details
