Talent.com
Senior Security Engineer, Security Incident Response Team

Senior Security Engineer, Security Incident Response Team

GitLabWorkFromHome, Western Cape, South Africa
30+ days ago
Job description

Senior Security Engineer, Security Incident Response Team

GitLab is an open-core software company that develops an AI-powered DevSecOps Platform used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. Our platform unites teams and organizations, breaking down barriers and redefining what\'s possible in software development. Thanks to products like Duo Enterprise and Duo Agent Platform, customers get AI benefits at every stage of the SDLC.

The same principles built into our products are reflected in how our team works : we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.

An Overview Of This Role

As a Senior Security Engineer on GitLab\'s Security Incident Response Team (SIRT), you will be on the frontline of protecting both GitLab.com and GitLab the company from security threats.

Role

This role follows a compressed four-day workweek, with standard full-time hours spread across four extended shifts. To ensure 24 / 7 / 365 security coverage, team members work one of two schedules :

  • Sunday through Wednesday
  • Wednesday through Saturday

Your primary focus will be detecting and responding to security incidents during your scheduled shifts. You\'ll work extensively with our incident response automation tools to investigate, analyze, and resolve security events. You\'ll also have opportunities to contribute to our security tooling and automation, helping to improve our detection and response capabilities.

In this role, you\'ll develop expertise using our security infrastructure to monitor for threats, analyze potential incidents, and coordinate response efforts across teams. This position is ideal for someone who wants to grow their incident response skills while working within GitLab\'s established security framework. You\'ll learn to think both tactically and strategically about security, while getting hands-on experience handling real-world incidents.

Successful Security Engineers thrive in high-pressure environments, remaining calm while following prepared runbooks and thinking critically about security challenges. In this role, you will learn to think like both an attacker and defender, developing proactive and preventative security measures to keep GitLab and its users\' data safe in our ever-changing threat landscape. Through hands-on experience and mentorship, you\'ll develop the skills needed to anticipate security risks, respond effectively to incidents, and contribute to GitLab\'s robust security posture.

Find out more about the Security Operations team and responsibilities here :

  • Incident Response
  • Trust and Safety
  • Red Team
  • Threat-Intelligence
  • Signals-Engineering
  • What You’ll Do

  • Lead security incident response in our 24 / 7 global rotation, managing incidents from detection through containment and recovery
  • Create and maintain comprehensive incident response documentation, including runbooks and standard procedures
  • Conduct post-incident analysis through RCA and lessons-learned reviews to strengthen our incident response program
  • Design and implement automated security processes to improve operational efficiency and reduce manual intervention
  • Drive continuous improvement by identifying security gaps and implementing advanced detection and response capabilities
  • Collaborate across GitLab teams to develop new security capabilities and deliver technical projects that enhance our infrastructure
  • What You’ll Bring

  • Demonstrated ability to learn and lead incident response processes independently
  • Experience with SIEM / security logging tools
  • Experience with cloud platforms (GCP and / or AWS)
  • Python programming skills or strong willingness to learn
  • A passion for technical documentation
  • Proactive approach to identifying and investigating security threats
  • Interest in conducting forensic analysis of infected hosts
  • Experience or strong desire to learn cloud-based security investigations
  • About The Team

    Security Operations is a globally distributed team of engineers split across 3 core regions; AMER, APAC and EMEA, and is at the forefront of security events that impact both GitLab.com and GitLab. We are both reactive and proactive, leading security investigations, incident response support and response resolution, through to cyber threat analysis and detection and response engineering. Even though we\'re a global team, we work together in a cross-regional manner and have automation and processes to facilitate collaboration when resolving incidents, handovers, and general collaboration for project work as well.

    How GitLab Will Support You

  • Benefits to support your health, finances, and well-being
  • All remote, asynchronous work environment
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and development budget
  • Parental leave
  • Home office support
  • Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you\'re excited about this role, please apply and allow our recruiters to assess your application.

    Country Hiring Guidelines : GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process.

    Privacy Policy : Please review our Recruitment Privacy Policy. Your privacy is important to us.

    GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab\'s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status, or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab\'s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Engineer • WorkFromHome, Western Cape, South Africa

    Related jobs
    • Promoted
    Cyber Security Lead - Red Team

    Cyber Security Lead - Red Team

    Hyperclear TechWorkFromHome, Western Cape, South Africa
    Cyber Security Lead – Red Team (Administrative Focus).Johannesburg / Cape Town (Remote / Hybrid).Cyberlogic is a trusted Managed Solutions Provider with offices in South Africa, Mauritius, and the ...Show moreLast updated: 30+ days ago
    Senior Application / Platform Security Engineer

    Senior Application / Platform Security Engineer

    Sabenza IT & RecruitmentCape Town, WC, za
    Quick Apply
    The Senior Application / Platform Security Engineer is responsible for designing, implementing, and managing advanced security measures to safeguard the organization’s applications and platforms.This...Show moreLast updated: 11 days ago
    • Promoted
    Application / Platform Security Engineer (Specialist)

    Application / Platform Security Engineer (Specialist)

    Careers at DLK GroupCape Town, Western Cape, South Africa
    The role of the Specialist Application / Platform Security Engineer is to design and implement security measures for applications and platforms and encompasses many activities including (but not limi...Show moreLast updated: 13 days ago
    • Promoted
    Cyber Security Lead - Red Team

    Cyber Security Lead - Red Team

    CyberlogicWorkFromHome, Western Cape, South Africa
    Cyber Security Lead – Red Team (Administrative Focus) at Cyberlogic.Location : Johannesburg / Cape Town (Remote / Hybrid). Cyberlogic is a trusted Managed Solutions Provider with offices in South Afr...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security & Systems Engineer Market related

    Senior Security & Systems Engineer Market related

    Datafin IT RecruitmentCape Town, Western Cape, South Africa
    Your strong passion for Information Governance and Cyber Security and technical expertise is sought to fill the role of a Senior Security & Systems Engineer by a dynamic Healthcare Service Provider...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    DigiCertCape Town, Western Cape, South Africa
    We're a leading, global security authority that's disrupting our own category.Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, enti...Show moreLast updated: 30+ days ago
    • Promoted
    Security Architect - Stellenbosch

    Security Architect - Stellenbosch

    People SolvedCape Town, South Africa
    Exciting opportunity for a Group Security Architect to design, implement, and maintain secure architecture for cloud and hybrid IT systems. This role has a strong focus on Microsoft 365 and Azure pl...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, Application Security

    Senior Security Engineer, Application Security

    GitLabWorkFromHome, Western Cape, South Africa
    Senior Security Engineer, Application Security.GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps platform, used by more than 100,000 organizations.Ou...Show moreLast updated: 4 days ago
    • Promoted
    Infrastructure Cost Engineer

    Infrastructure Cost Engineer

    Premium ConsultingStellenbosch, South Africa
    Drive and support process improvement initiatives that enhance the efficiency and effectiveness of Department.Ensure governance, compliance, and control related to cost management, documentation pr...Show moreLast updated: 13 days ago
    • Promoted
    Specialist Services Engineer (Tier 3)

    Specialist Services Engineer (Tier 3)

    PRR RecruitmentBellville, South Africa
    Specialist Services Engineer (Tier 3).Are you a senior IT professional with deep technical expertise and a track record of successful project delivery? A high-performing team in Bellville is lookin...Show moreLast updated: 2 days ago
    • Promoted
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    CanonicalWorkFromHome, Western Cape, South Africa
    Canonical Cape Town, Western Cape, South Africa.We have opened several senior / staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO.We are looking for a rang...Show moreLast updated: 30+ days ago
    • Promoted
    Remote Incident Response Tech Lead

    Remote Incident Response Tech Lead

    FusionTekWorkFromHome, Western Cape, South Africa
    Remote
    Managed Security Service Provider (MSSP) with offices in multiple US locations and team members globally.We’re a tight-knit team of friendly, intelligent people focused on IT infrastructure managem...Show moreLast updated: 30+ days ago
    Security Operations Engineer (DevSecOps)

    Security Operations Engineer (DevSecOps)

    ParvanaCape Town, WC, za
    Quick Apply
    Our client is a global investment advisory firm focusing on long-term value creation through investment strategies.They work with a diverse group of institutional partners and pride themselves on t...Show moreLast updated: 10 days ago
    • Promoted
    • New!
    ApplicationPlatform Security Engineer (Specialist)

    ApplicationPlatform Security Engineer (Specialist)

    DLK GroupCape Town, Western Cape, South Africa
    The role of the Specialist Application / Platform Security Engineer is to design and implement security measures for applications and platforms and encompasses many activities including (but not li...Show moreLast updated: 19 hours ago
    Application / Platform Security Engineer (Specialist)

    Application / Platform Security Engineer (Specialist)

    DLK GroupCape Town, WC, za
    Quick Apply
    The role of the Specialist Application / Platform Security Engineer is to design and implement security measures for applications and platforms and encompasses many activities including (but not limi...Show moreLast updated: 17 days ago
    • Promoted
    Senior Security Analyst

    Senior Security Analyst

    Isilumko Staffing (JHB)Cape Town, South Africa
    Senior Security Analyst : Perm : Cape Town.The Senior Security Analyst is the organisation’s principal operational and strategic security expert. This role blends deep technical skills.The position en...Show moreLast updated: 1 day ago
    • Promoted
    Senior Infrastructure Engineer : Security

    Senior Infrastructure Engineer : Security

    ClickcatellWorkFromHome, Western Cape, South Africa
    We are looking for a High-flying Senior Infrastructure Engineer : Security to take accountability for assisting the CISO in planning, organizing, controlling, and managing all platforms and implemen...Show moreLast updated: 30+ days ago
    Specialist Application / Platform Security Engineer

    Specialist Application / Platform Security Engineer

    Sabenza IT & RecruitmentCape Town, WC, za
    Quick Apply
    The Specialist Application / Platform Security Engineer is responsible for designing, implementing, and maintaining robust security measures for applications and platforms. The role involves proactive...Show moreLast updated: 11 days ago