
Staff Corporate Security Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States, +1 more country.
• Oversee the security architecture for GitLab's endpoint fleet and associated infrastructure, focusing primarily on macOS.
• Create and maintain automation for secure deployment, configuration, and lifecycle management of endpoints.
• Administer endpoint and SaaS security configurations utilizing Terraform, version control, merge requests, CI pipelines, and automated rollouts.
• Establish and uphold security baselines across macOS, iOS, Windows, and Linux endpoints.
• Devise patching and software distribution strategies that align with security, compliance, and operational needs.
• Collaborate with Information Technology, Security Operations, and Detection and Response teams to enhance endpoint telemetry, detection mechanisms, and response models.
• Propel process enhancements that minimize manual labor and risk through automation, policy-driven controls, and verifiable change management.
• Guide engineers within Corporate Security and Information Technology.
• Act as a senior escalation point for intricate endpoint security challenges.
• Fortify endpoint security architecture, broaden automation efforts, and enhance the reliability and auditability of implemented controls.
• Proven experience in designing and implementing endpoint, systems, or corporate security solutions in settings that demand scalable and robust controls.
• Extensive knowledge of endpoint management platforms such as Jamf Pro or FleetDM, particularly in architecting and securing macOS environments.
• Strong practical skills with Terraform and Infrastructure-as-Code methodologies, covering module design, state management, and pipeline-based deployment.
• Familiarity with GitOps workflows that utilize Git repositories, merge requests, code reviews, and automated pipelines.
• Proficient in scripting or programming for automation and security tools, including bash, Python, PowerShell, or Go.
• Understanding of cloud identity providers and directories, such as Okta, Google Workspace, and LDAP.
• Excellent communication skills, with the ability to collaborate across distributed teams and work independently in a fully remote environment.
• Willingness to embrace transferable experience from related security, systems, or platform engineering roles.
• Team members are encouraged to integrate AI into their daily tasks.
• Comprehensive benefits to support your health, finances, and overall well-being.
• Flexible Paid Time Off.
• Inclusion in Team Member Resource Groups.
• Equity Compensation & Employee Stock Purchase Plan.
• Growth and Development Fund.
• Parental Leave.
New Monday
Lincoln Financial
Optiv
Pax8
Get handpicked remote jobs straight to your inbox weekly.