SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
GitLab is seeking a Senior Software Engineer to join the Vulnerability Management team within GitLab Security. You will own significant components of the data layer that powers GitLab's vulnerability and dependency management capabilities, working across security report ingestion, storage, indexing, querying, and third-party system integrations.
In this role, you'll design and develop backend systems using Ruby on Rails and PostgreSQL, with opportunities to contribute to newer services in Go or Rust. You'll take ownership of deliverables from technical design through delivery, working iteratively within GitLab's monthly release cycle. A key focus will be developing deep PostgreSQL expertise—optimizing queries, designing schemas, and managing the growing data requirements of vulnerability management systems.
You'll collaborate directly with product, design, frontend, and engineering partners on technical decisions within your scope. You'll contribute to technical plans and design discussions, support other engineers through code reviews and pairing, and help establish modular service patterns as GitLab Security evolves beyond its monolithic architecture.
The role emphasizes a security mindset when designing systems, including how to identify and handle malicious or vulnerable software packages. You'll apply AI tools to improve delivery while maintaining sound engineering judgment.
You bring professional backend engineering experience delivering production features at scale, with clear ownership of outcomes. You have hands-on PostgreSQL expertise including query profiling, optimization, indexing, and schema design. You're comfortable working in Ruby on Rails day-to-day and interested in working across multiple languages and services. You can guide peers through complex work or independently carry out delivery plans, collaborate effectively with diverse partners, and communicate technical tradeoffs clearly. Experience with security tooling, vulnerability management products, or large monoliths is valued.