Talent.com
Senior Security Engineer, Application Security

Senior Security Engineer, Application Security

GitLabWorkFromHome, Gauteng, South Africa
19 days ago
Job description

Senior Security Engineer, Application Security

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. By uniting teams and eliminating barriers, we redefine what is possible in software development and deliver AI benefits at every stage of the SDLC.

An Overview of This Role

The Application Security team works with GitLab engineers and product teams to anticipate and prevent the introduction of vulnerabilities during design and development, ensuring delivery of high quality software that customers can trust.

What You'll Do

  • Conduct security-focused application design and architecture reviews, threat modeling, code review, and security testing assessments, pushing the boundaries by exploring the full impact and demonstrating real exploitation in controlled environments.
  • Propose and establish secure development practices, develop and refine security standards that support Product and Engineering teams to deliver secure features at high velocity.
  • Help secure GitLab by directly contributing to the product, providing customer feedback on platform features, capabilities, scope, and technology coverage.
  • Secure our software supply chain and improve security workflows and controls of our supply chain security.
  • Identify and drive team maturity opportunities to enable scaling of internal processes, metrics, workflows, and automations as we grow.

What You’ll Bring

  • Bachelor’s degree or equivalent in Computer Science or equivalent practical education.
  • 5+ years professional experience in computer technology, including IT, technical support, or engineering.
  • Strong understanding of computer code and ability to detect and remediate common security defects, race conditions, and logic vulnerabilities.
  • Programming experience in one or more coding languages, preferred Ruby on Rails or Go.
  • Comfortable with shell scripting to automate recurring work or build PoC exploits.
  • Strong knowledge of application security concepts such as OWASP Top 10, STRIDE, CVSS, and threat modeling assessments.
  • Experience with application security practices : code review, threat modeling, static and dynamic analysis (SAST, DAST), and attack surface analysis.
  • Experience performing application penetration testing or vulnerability research / bug bounty hunting.
  • Ability to provide subject matter expertise on software architecture design and system security.
  • Familiar with common security libraries and controls for Ruby on Rails applications.
  • Demonstrated ability to learn new technical concepts in cloud and web application security assessment.
  • Strong communication skills, able to collaborate with technical and non‑technical audiences across teams.
  • Fluent in English, both written and verbal, suitable for a remote, asynchronous environment.
  • Comfortable using Git.
  • Experience with standard web application security tools such as Brakeman and BurpSuite.
  • How GitLab Will Support You

  • Benefits to support health, finances, and well‑being.
  • Flexible paid time off.
  • Team Member Resource Groups.
  • Equity compensation and employee stock purchase plan.
  • Growth and development fund.
  • Parental leave.
  • Home office support.
  • GitLab is proud to be an equal‑opportunity workplace and is an affirmative action employer. Our policies and practices related to recruitment, employment, and advancement are based solely on merit, regardless of race, color, religion, ancestry, sex, national origin, age, citizenship, marital status, disability, genetic information, military service, or any other protected characteristic. GitLab will not tolerate discrimination or harassment.

    If you have a disability or special need requiring accommodation, please let us know during the recruiting process.

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Engineer • WorkFromHome, Gauteng, South Africa

    Related jobs
    • Promoted
    Security Engineer Centurion

    Security Engineer Centurion

    Alinta Tech SolutionsCenturion, Gauteng, South Africa
    The Security Engineer is tasked with the vital responsibility of implementing and maintaining robust security protocols to safeguard the organization's data and infrastructure.This hands-on positio...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    NintexJohannesburg, Gauteng, South Africa
    At Nintex, we are transforming the way people work, everywhere.As the global standard for process intelligence and automation, we're trusted by over 10,000 public and private sector organizations a...Show moreLast updated: 30+ days ago
    • Promoted
    Engineer, Security

    Engineer, Security

    Standard Bank of South Africa LimitedJohannesburg, Gauteng, South Africa
    Location : ZA, GP, Johannesburg, Simmonds Street.To provide expert professional knowledge and technical skills within a specialist area, and to execute the bank's information security initiatives, e...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Solutions Architect (Cyber Security)

    Senior Solutions Architect (Cyber Security)

    A 1 LJohannesburg, Gauteng, South Africa
    Our client in the Telecom sector is seeking a professional Senior Solutions Architect on a 12 months contract duration.Minimum 10 years in security architecture with multiSIEM / SOAR environments a...Show moreLast updated: 11 days ago
    • Promoted
    Senior Security Engineer, Application Security

    Senior Security Engineer, Application Security

    GitLabWorkFromHome, South Africa
    Senior Security Engineer, Application Security.GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps platform, used by more than 100,000 organizations.Ou...Show moreLast updated: 19 days ago
    • Promoted
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    CanonicalWorkFromHome, Gauteng, South Africa
    Canonical Cape Town, Western Cape, South Africa.We have opened several senior / staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO.We are looking for a rang...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    OutsidecapitalJohannesburg, Gauteng, South Africa
    We are exclusively representing a mission-driven global leader in the Health-Tech sector.This rapidly scaling organization is dedicated to developing smart affordable digital health solutions that ...Show moreLast updated: 30+ days ago
    • Promoted
    Team Lead Security Engineer

    Team Lead Security Engineer

    Hire ResolveRandburg, Gauteng, South Africa
    A leading provider in vehicle tracking telematics and security technology is seeking a highly skilled Team Lead Security Engineer to head up a dedicated security engineering team.The position calls...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    The Hiring HousePretoria, Gauteng, South Africa
    Risk Management and Compliance.Engineering degree (Computer, Software, Mechanical or Electronic).OSCP (Offensive Security Certified Professional). PNPT (Practical Network Penetration Tester).CISSP (...Show moreLast updated: 30+ days ago
    • Promoted
    End-Point Security Engineer

    End-Point Security Engineer

    Standard Bank of South Africa LimitedJohannesburg, Gauteng, South Africa
    Business Segment : Personal & Private Banking.Location : ZA, GP, Johannesburg, 30 Baker Street.Standard Bank is looking for a driven technical professional to join the Endpoint Security team.The cand...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Technical Architect

    Senior Security Technical Architect

    NTTJohannesburg, Gauteng, South Africa
    Join a company that is pushing the boundaries of what is possible.We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society.Our wo...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Specialist

    Application Security Specialist

    MukuruJohannesburg, Gauteng, South Africa
    Job title : Application Security Specialist.Job Location : Gauteng, Johannesburg.We’re looking for an Application Security Specialist to join our forward-thinking Information Security Team.This is ...Show moreLast updated: 7 days ago
    • Promoted
    Security Engineer Active Directory

    Security Engineer Active Directory

    Standard Bank of South Africa LimitedJohannesburg, Gauteng, South Africa
    Business Segment : Personal & Private Banking.Location : ZA, GP, Johannesburg, 30 Baker Street.Administer and secure Microsoft Active Directory environments across multiple domains and forests.Manage...Show moreLast updated: 30+ days ago
    • Promoted
    Manager : Application Security Engineering Lead

    Manager : Application Security Engineering Lead

    A 1 LJohannesburg, Gauteng, South Africa
    Our client in the telecommunications sector is seeking a Manager : Application Security Engineering Lead on a contract duration of 5 months. The Manager : Application Security Engineering Lead is re...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    wePlacePretoria, South Africa
    Responsible for company-wide cybersecurity and related documents, process and record management to ensure that systems and products are safe and effective. Ensures data integrity, and that informati...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Technical Architect

    Senior Security Technical Architect

    NTT DATA, Inc.WorkFromHome, Gauteng, South Africa
    Senior Security Technical Architect.Join a company that is pushing the boundaries of what is possible.We are renowned for our technical excellence and leading innovations, and for making a differen...Show moreLast updated: 30+ days ago
    • Promoted
    IT Security Engineer

    IT Security Engineer

    CodeConnect Staffing (Pty) LtdPretoria North, South Africa
    Work Model : 2 days remote per week (post-probation).A well-established medical devices company is seeking a skilled IT Security Engineer to lead company-wide cybersecurity operations.This role will...Show moreLast updated: 30+ days ago
    • Promoted
    Team Lead : Security Engineer

    Team Lead : Security Engineer

    Tracker South AfricaRandburg, Gauteng, South Africa
    Network Administration and Security.Tracker is seeking an individual to lead the design, implementation, and continuous improvement of a secure, scalable, and high-performing network infrastructure...Show moreLast updated: 30+ days ago