Talent.com
No longer accepting applications
Senior Security Engineer, Security Incident Response Team

Senior Security Engineer, Security Incident Response Team

GitLabWorkFromHome, South Africa
30+ days ago
Job description

Senior Security Engineer, Security Incident Response Team

GitLab is an open-core software company that develops an AI-powered DevSecOps Platform used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. Our platform unites teams and organizations, breaking down barriers and redefining what\'s possible in software development. Thanks to products like Duo Enterprise and Duo Agent Platform, customers get AI benefits at every stage of the SDLC.

The same principles built into our products are reflected in how our team works : we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.

An Overview Of This Role

As a Senior Security Engineer on GitLab\'s Security Incident Response Team (SIRT), you will be on the frontline of protecting both GitLab.com and GitLab the company from security threats.

Role

This role follows a compressed four-day workweek, with standard full-time hours spread across four extended shifts. To ensure 24 / 7 / 365 security coverage, team members work one of two schedules :

  • Sunday through Wednesday
  • Wednesday through Saturday

Your primary focus will be detecting and responding to security incidents during your scheduled shifts. You\'ll work extensively with our incident response automation tools to investigate, analyze, and resolve security events. You\'ll also have opportunities to contribute to our security tooling and automation, helping to improve our detection and response capabilities.

In this role, you\'ll develop expertise using our security infrastructure to monitor for threats, analyze potential incidents, and coordinate response efforts across teams. This position is ideal for someone who wants to grow their incident response skills while working within GitLab\'s established security framework. You\'ll learn to think both tactically and strategically about security, while getting hands-on experience handling real-world incidents.

Successful Security Engineers thrive in high-pressure environments, remaining calm while following prepared runbooks and thinking critically about security challenges. In this role, you will learn to think like both an attacker and defender, developing proactive and preventative security measures to keep GitLab and its users\' data safe in our ever-changing threat landscape. Through hands-on experience and mentorship, you\'ll develop the skills needed to anticipate security risks, respond effectively to incidents, and contribute to GitLab\'s robust security posture.

Find out more about the Security Operations team and responsibilities here :

  • Incident Response
  • Trust and Safety
  • Red Team
  • Threat-Intelligence
  • Signals-Engineering
  • What You’ll Do

  • Lead security incident response in our 24 / 7 global rotation, managing incidents from detection through containment and recovery
  • Create and maintain comprehensive incident response documentation, including runbooks and standard procedures
  • Conduct post-incident analysis through RCA and lessons-learned reviews to strengthen our incident response program
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention
  • Drive continuous improvement by identifying security gaps and implementing advanced detection and response capabilities
  • Collaborate across GitLab teams to develop new security capabilities and deliver technical projects that enhance our infrastructure
  • What You’ll Bring

  • Demonstrated ability to learn and lead incident response processes independently
  • Experience with SIEM / security logging tools
  • Experience with cloud platforms (GCP and / or AWS)
  • Python programming skills or strong willingness to learn
  • A passion for technical documentation
  • Proactive approach to identifying and investigating security threats
  • Interest in conducting forensic analysis of infected hosts
  • Experience or strong desire to learn cloud-based security investigations
  • About The Team

    Security Operations is a globally distributed team of engineers split across 3 core regions; AMER, APAC and EMEA, and is at the forefront of security events that impact both GitLab.com and GitLab. We are both reactive and proactive, leading security investigations, incident response support and response resolution, through to cyber threat analysis and detection and response engineering. Even though we\'re a global team, we work together in a cross-regional manner and have automation and processes to facilitate collaboration when resolving incidents, handovers, and general collaboration for project work as well.

    How GitLab Will Support You

  • Benefits to support your health, finances, and well-being
  • All remote, asynchronous work environment
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and development budget
  • Parental leave
  • Home office support
  • Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you\'re excited about this role, please apply and allow our recruiters to assess your application.

    Country Hiring Guidelines : GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.

    Privacy Policy : Please review our Recruitment Privacy Policy. Your privacy is important to us.

    GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab\'s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status, or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab\'s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Engineer • WorkFromHome, South Africa

    Related jobs
    • Promoted
    Divisional Head : Security Infrastructure and Incident Management

    Divisional Head : Security Infrastructure and Incident Management

    Rooftop RecruitmentPretoria, South Africa
    Divisional Head : Security Infrastructure and Incident Management.The main purpose of this position is to provide leadership and strategic direction for the Security Infrastructure and Incident Man...Show moreLast updated: 30+ days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    Dina Gates Recruitment (Pty) LtdJohannesburg, South Africa
    At least 4-7 years of Cloud Experience (AWS, Azure or GCP (Google)).Securing cloud environments and protecting data.Implementing security measures, monitoring cloud infrastructure for threats, and ...Show moreLast updated: 30+ days ago
    • Promoted
    Team Lead : Security Engineer

    Team Lead : Security Engineer

    Tracker Connect LtdRandburg, ZA
    Job title : Team Lead : Security Engineer.Job Location : Gauteng, Randburg.Tracker is seeking an individual to lead the design, implementation, and continuous improvement of a secure, scalable, and ...Show moreLast updated: 16 days ago
    AWS Developer Cryptography (Senior)

    AWS Developer Cryptography (Senior)

    Khonology (Pty) LtdRandburg, GP, ZA
    The Cloud Security Engineer is responsible for designing, building, and maintaining secure, scalable cloud infrastructure primarily on AWS, with integration across Azure environments.This role ensu...Show moreLast updated: 30+ days ago
    • Promoted
    Security Technology Manager

    Security Technology Manager

    Hire ResolveJohannesburg, ZA
    Job title : Security Technology Manager.Job Location : Gauteng, Johannesburg.Hire Resolve's client is currently looking for an experienced Security Technology Manager to join their mining company b...Show moreLast updated: 16 days ago
    • Promoted
    Senior Solutions Architect (Cyber Security)

    Senior Solutions Architect (Cyber Security)

    A 1L Realization (Pty) LtdJohannesburg, South Africa
    Required Skills & Experience.Minimum 10 years in security architecture with multi‑SIEM / SOAR environments and complex hybrid networks. Proven delivery of enterprise RFI / RFP cycles and technical...Show moreLast updated: 9 days ago
    Security Engineer

    Security Engineer

    AiRPretoria, South Africa
    Remote
    Quick Apply
    Cybersecurity Management (40%).Develop and maintain security standards and processes to support compliance requirements.Oversee cybersecurity operations and ensure alignment with internal policies ...Show moreLast updated: 9 days ago
    Senior AWS Engineer

    Senior AWS Engineer

    Boardroom AppointmentsJohannesburg, South Africa
    Quick Apply
    Senior AWS Engineer - 6 Month Contract.Design and implement AWS-based infrastructure solutions using best practices.Automate infrastructure provisioning using Infrastructure as Code (IaC) tools lik...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    wePlacePretoria, South Africa
    Responsible for company-wide cybersecurity and related documents, process and record management to ensure that systems and products are safe and effective. Ensures data integrity, and that informati...Show moreLast updated: 30+ days ago
    • Promoted
    IT Security Engineer

    IT Security Engineer

    CodeConnect Staffing (Pty) LtdPretoria North, South Africa
    Work Model : 2 days remote per week (post-probation).A well-established medical devices company is seeking a skilled IT Security Engineer to lead company-wide cybersecurity operations.This role will...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer Team Lead

    Security Engineer Team Lead

    Hire ResolveRandburg, ZA
    Job title : Security Engineer Team Lead.Job Location : Gauteng, Randburg.A company that provides personal and vehicle safety services, including stolen vehicle recovery, driver safety, and business...Show moreLast updated: 24 days ago
    • Promoted
    Risk Engineer, Incident investigation and Learning Manager

    Risk Engineer, Incident investigation and Learning Manager

    bpJohannesburg, ZA
    Job title : Risk Engineer, Incident investigation and Learning Manager.Job Location : Gauteng, Johannesburg.Responsible for coordinating activities of a team and providing Engineering Leadership to...Show moreLast updated: 24 days ago
    • Promoted
    Cyber Security Architecture and Engineering Manager

    Cyber Security Architecture and Engineering Manager

    Control RisksJohannesburg, ZA
    Job title : Cyber Security Architecture and Engineering Manager.Job Location : Gauteng, Johannesburg.We are seeking a hands on, skilled and detail-oriented Security Leader to spear head our Archite...Show moreLast updated: 16 days ago
    • Promoted
    Security Engineer

    Security Engineer

    Network RecruitmentPretoria, South Africa
    Our Client has a presence in over 60 countries and a global leader in health solutions.Youll work closely with cross-functional teams to implement robust security measures, manage audits, and drive...Show moreLast updated: 14 days ago
    • Promoted
    SysOp Team Leader

    SysOp Team Leader

    Pronel PersonnelJohannesburg, South Africa
    Our client is looking for an individual to take responsibility for the designing, building, and operating a state-of-the-art Remote Monitoring and Management (RMM) system that underpins the compani...Show moreLast updated: 23 days ago
    • Promoted
    Security Analyst - Penetration Testing & Red Teaming

    Security Analyst - Penetration Testing & Red Teaming

    The Legends AgencyJohannesburg, South Africa
    Security Analyst : Penetration Testing & Red Teaming Specialist.Our client is looking for a talented Security Analyst who is ready to take on a variety of security assessments and grow their career ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior IT Auditor (Security)

    Senior IT Auditor (Security)

    Salix RecruitmentJohannesburg, South Africa
    Are you an experienced IT auditor with a deep understanding of information security practices? Are you ready to play a critical role in securing digital landscape and protecting global mining opera...Show moreLast updated: 12 days ago
    • Promoted
    Security Engineer

    Security Engineer

    The Hiring HousePretoria, South Africa
    Risk Management and Compliance.Engineering degree (Computer, Software, Mechanical or Electronic).Minimum education (desirable) : . OSCP (Offensive Security Certified Professional).PNPT (Practical Netw...Show moreLast updated: 30+ days ago