Intermediate Fullstack Engineer, GitLab

SSCS: Pipeline Security, Ruby

Salary not provided

+ Equity Compensation & Employee Stock Purchase Plan

Docker
JavaScript
Vue.js
Git
Ruby on Rails
Golang
Mid and Senior level
Remote from US
GitLab

One DevOps platform

Be an early applicant

GitLab

One DevOps platform

1001+ employees

B2BSaaSDevOps

Be an early applicant

Salary not provided

+ Equity Compensation & Employee Stock Purchase Plan

Docker
JavaScript
Vue.js
Git
Ruby on Rails
Golang
Mid and Senior level
Remote from US

1001+ employees

B2BSaaSDevOps

Company mission

To make it so that everyone can contribute. When everyone can contribute, users become contributors and we greatly increase the rate of innovation.

Role

Who you are

  • 3+ years of fullstack development experience
  • Strong proficiency in Ruby on Rails and JavaScript frontend frameworks
  • Excellent problem-solving and debugging skills
  • Strong communication skills and ability to explain complex security concepts

Desirable

  • Understanding of CI/CD concepts and pipeline security
  • Experience with secrets management and security best practices
  • Strong knowledge of web application security principles
  • Experience with Git and GitLab/GitHub workflows
  • Experience with Golang development
  • Experience with container security and Docker
  • Familiarity with SLSA framework and software supply chain security
  • Experience with HashiCorp Vault or similar secrets management systems

What the job involves

  • As an Intermediate Fullstack Engineer on the Pipeline Security team, you'll be at the forefront of making CI pipelines more secure and trustworthy for GitLab users worldwide. You'll work on critical security features that directly impact how thousands of organizations handle sensitive information in their development workflows
  • Our team is currently focused on two major initiatives: developing GitLab's native secrets management system for CI pipelines and implementing SLSA L3 compliance features to enhance software supply chain security
  • Working with both Ruby on Rails and Vue.js, you'll help shape the security architecture of GitLab's CI/CD infrastructure. This role offers a unique opportunity to combine deep backend development expertise with security engineering, directly contributing to making GitLab's pipelines more secure for everyone
  • Security Implementation: Contribute to the development of GitLab's native secrets management system for CI pipelines, ensuring secure handling of sensitive information
  • Code Review: Review code contributions with a security-first mindset, ensuring all new features meet our high security standards
  • Secure Development: Write secure, maintainable code primarily in Ruby on Rails and Vue.js
  • Technical Collaboration: Apply security best practices and participate in code reviews with a security-focused mindset
  • Cross-team Collaboration: Work closely with security experts and other engineering teams to ensure best practices in secure software development
  • Documentation: Write and maintain technical documentation for security features, focusing on both implementation details and security considerations
  • Problem Solving: Debug and resolve complex security-related issues in production environments
  • Security Architecture: Participate in design discussions and technical reviews with a focus on security implications
  • The Pipeline Security team is responsible for making CI pipelines more secure and trustworthy for users. We're currently focused on two major initiatives that will significantly improve GitLab's security posture: developing a native secrets management system and implementing SLSA L3 compliance features. Our work directly impacts the security of thousands of organizations' software supply chains

Share this job

View 101 more jobs at GitLab

Insights

Top investors

15% employee growth in 12 months

Company

Company benefits

  • We offer benefits to manage your health, wealth, and well-being regardless of location
  • Flexibility in schedule to be there for life’s important moments
  • Equity compensation & Employee Stock Purchase Plan offered
  • Generous Paid Time Off

Funding (last 2 of 8 rounds)

Sep 2019

$268m

SERIES E

Dec 2018

$20m

SERIES D

Total funding: $434.3m

Our take

GitLab is an open-source collaboration platform for developers. It enables teams to build code quickly from anywhere without compromising on security or quality. GitLab already has an estimated 30M+ users from all over the world.

According to a 2021 GitLab report, 60% of developers can release code 2x faster with DevOps platforms that bring teams together and accelerate processes. It stands out by catering to programmers of all experiences. Gitlab's version control system helps streamline the process of creating, maintaining, and deploying code, whoever you are.

GitLab was in the right place to capitalize on the recent trend toward rapid digital transformation and remote working. This trend is expected to continue to grow, and with it, GitLab's popularity. With its successful 2021 IPO and the patronage of major brands such as Nasdaq and Jaguar Land Rover, GitLab is expected to solidify its position as the go-to platform for development teams.

Kirsty headshot

Kirsty

Company Specialist at Welcome to the Jungle