Intermediate Backend Engineer, Security Risk Management: Security Policies

GitLab

GitLab

Marketing & Communications, Software Engineering
Remote
Posted on Aug 13, 2024

GitLab is an open core software company that develops the most comprehensive DevSecOps Platform used by more than 100,000 organizations. Our mission makes it clear that we believe in a world where everyone can contribute. We make that possible at GitLab by running our operations on our product and staying aligned with our values. Learn more about Life at GitLab.

An overview of this role

Join GitLab's Security Policies team and be at the forefront of building a more secure software development lifecycle! As a Backend Engineer, you will play a crucial role in empowering organizations to define, implement, and manage security policies within GitLab. Initially, your focus will be enhancing the quality and robustness of our current feature set. This includes reducing our test gap, leading testing efforts, and developing comprehensive automated test cases. By solidifying our existing foundation, you'll be setting the stage for the future of Security Policies. Once our foundation is solid, you'll leverage your expertise to help us introduce powerful new features that give customers greater control and visibility over their security posture. You'll collaborate closely with product manager, designers, and frontend engineers to deliver a seamless and impactful user experience. If you're driven to make a real difference in the world of DevSecOps, we encourage you to apply!


Examples of our projects:

What You’ll Do

  • Build and enhance Security Policies features with a focus on security, performance, and robust testing.
  • Take ownership of feature quality by executing manual test cases and driving improvements to the verification process.
  • Partner with Product Management and Engineering to uphold rigorous quality standards.
  • Champion continuous improvement in product quality, security, and performance.
  • Deliver clean, maintainable code adhering to best practices for high-scale web applications.
  • Provide timely and constructive code reviews, fostering a welcoming environment for community contributions.
  • Proactively identify and address technical debt, optimizing team efficiency.
  • Deliver features independently while excelling in collaborative environments for larger projects.
  • Contribute to on-call rotations, ensuring the stability and security of GitLab operations.

What You’ll Bring

  • Proven expertise in Ruby on Rails development.
  • Proficiency in relational databases, particularly PostgreSQL.
  • Ability to articulate complex technical challenges and propose well-defined, iterative solutions.
  • Solid understanding of software testing principles and experience with quality assurance tasks.
  • Comfort working in a highly agile, intensely iterative software development process
  • Effective communication skills: Regularly achieve consensus with peers, provide clear and consistent status updates, with a positive and solution-oriented mindset.
  • Experience owning a project from concept to production, including proposal, discussion, and execution
  • Highly organized, self-starter with strong self-management skills.

About the team

The Security Policies team is at the forefront of security policy management, building powerful tools that empower organizations to secure their software development lifecycle. They are focused on enabling automated policy enforcement, providing detailed insights into security posture, and simplifying the process of managing policies across different environments. If you are passionate about building secure and reliable software, this team offers a unique opportunity to impact how companies approach security.

Our technical roadmap is available here. In the future, we will work on improving current policy types and implementing new ones, as well as collaborate with other teams. Additional challenges we will tackle will require us to collaborate with different groups, ie. from Secure and other Govern groups. Additionally, we will enhance External Status Checks with additional features.

More information about our team:

How GitLab will support you

Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.

The base salary range for this role’s listed level is currently for residents of listed locations only. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, and alignment with market data. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.

California/Colorado/Hawaii/New Jersey/New York/Washington/DC pay range
$98,000$210,000 USD

Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.

Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us.

GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.