
GitLab · Security Platforms & Architecture, Product Security
Director, Product Security Architecture
NewremoteRemote, Canada; Remote, EMEA; Remote, US$206k–$306kDevToolsSecurityPlatform
Our Take
Lead Product Security Architecture strategy and team scaling at GitLab.
What they’re looking for
- 10+ years leading security or architecture initiatives
- Product Security Architecture strategy and team leadership
- CI/CD, supply chain, or IAM security expertise
- Ability to influence product and engineering roadmaps
- Secure-by-default design patterns and standards
As posted by GitLab
The role
- Manage and mentor a team of Product Security Architects dedicated to Security, AI, and Core DevOps product areas, evolving them from embedded consultants to accelerators of secure delivery.
- Own the Product Security Architecture strategy and partnership model with Product and Engineering Directors/VPs, surfacing material security risks and tradeoffs at the right leadership levels.
- Oversee the Product Security Risk Register, ensuring systemic risks are articulated, prioritized, and paired with multi-quarter risk reduction plans that reduce long-term product security debt.
- Define security visions, standards, "paved roads," and secure-by-default platform behaviors that enable teams to make sound security decisions with minimal overhead.
- Lead Product Security AI strategy for scaling, including AI-assisted investments that expand security review coverage while enabling developer velocity.
What they are looking for
- 10+ years leading software, architecture, or application security initiatives in high-velocity R&D organizations with strong grounding in complex software systems.
- Deep application security and secure design literacy: familiarity with common vulnerability classes, modern architectures, CI/CD security, supply chain security, AuthN/Z, AI/ML security, or multi-tenant SaaS.
- Proven ability to balance business goals and risk reduction, focusing on highest-impact decisions and framing options in terms of risk, cost, and customer impact.
- Demonstrated success building trust with Product and Engineering leadership, influencing multi-quarter roadmaps, and co-owning outcomes rather than gating.
- Experience designing and rolling out scalable security patterns, standards, and secure-by-default configurations that reduce risk with minimal toil.
- Comfort with AI-augmented workflows, enthusiasm for GitLab Duo, and strong alignment to remote-first, asynchronous culture.
What is in it for you
- Competitive base salary of $205,900–$305,700 USD (United States residents).
- Equity compensation and Employee Stock Purchase Plan.
- Flexible Paid Time Off and parental leave.
- Growth and Development Fund and home office support.
- Lead a high-impact security function across the world's most-used DevSecOps platform, trusted by 50% of Fortune 100 companies.
Skills & Focus Areas
- security architecture
- risk management
- stakeholder management
- secure design patterns
- AI-assisted security tools
Languages
English
