The Manager, Product Security Engineering will lead a critical team responsible for delivering security capabilities through direct contributions to the GitLab platform. This role combines software engineering leadership with security domain expertise to drive GitLab's vision of being the most secure DevOps platform. Reporting to the VP of Product Security, you'll lead a team that bridges Product Security needs with engineering solutions, focusing on integrating security tooling into the product and building new security capabilities that enable GitLab’s Security Department, GitLab’s engineering teams, and our customers to operate more securely.
Learn more about the team and its processes in our handbook: https://handbook.gitlab.com/handbook/security/product-security/product-security-engineering/.
What You'll Do Lead and grow a team of security and software engineers, focusing on their technical growth, career development, and ability to deliver impactful security solutions Drive the strategy and execution of integrating custom security tooling into GitLab's product, working closely with Security, Product and Engineering stakeholders Manage the team's milestone planning process, ensuring alignment with both immediate needs and long-term strategic goals Partner with Product teams to shepherd the team’s security enhancements from concept through implementation Own and iterate on processes for pilot engineering and integration engineering workflows Lead cross-functional initiatives with Application Security, Infrastructure Security, and other security teams to identify and implement automation opportunities Balance the needs of maintaining existing security tooling while driving forward new security enhancements and features Champion the team's work and communicate its impact to various stakeholders, from engineering teams to executive leadership Guide the team in contributing to GitLab's broader security strategy through software solutions and platform improvements What You'll Bring Required Experience: 5+ years of software engineering management experience, with a focus on building and shipping production software Strong understanding of software security principles and best practices Strong understanding of modern software development practices, CI/CD, and DevOps principles Experience managing development teams working with Ruby on Rails or similar web frameworks Track record of successful cross-functional project leadership and stakeholder management Demonstrated ability to translate complex technical requirements into actionable engineering plans Experience balancing team autonomy with organizational needs and strategic alignment Preferred Experience: Experience managing security engineering teams conducting security-focused software projects Background in application security, infrastructure security, or related security domains Familiarity with GitLab's architecture and development practices History of contributing to or maintaining open-source software Experience with pilot programs or feature incubation within a larger product Track record of building and executing on technical roadmaps that span multiple quarters Experience working with enterprise customers and understanding their security needs (note: this isn’t a customer-facing role) Personal Qualities: Strong bias for action while maintaining attention to security details Excellent communication skills with ability to engage technical and non-technical stakeholders on security and engineering topics Proven ability to build and maintain strong relationships across organizational boundaries Data-driven approach to decision making and measuring team impact Commitment to fostering an inclusive and collaborative team environment Growth mindset with focus on continuous learning and improvement