SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
GitLab's Corporate Security Identity Team is seeking a Staff Security Engineer to lead the transformation of workforce identity and access management. This is a senior technical leadership role focused on designing and implementing enterprise-scale identity solutions, with particular emphasis on emerging AI agent governance and non-human identity management.
Key responsibilities include: architecting comprehensive identity and AI access solutions that scale with business growth; migrating low-code automation (iPaaS) to engineered Python services on GCP Cloud Run with proper testing, CI/CD, and observability; codifying identity platforms (Okta, Lumos, NHI) from click-ops to infrastructure-as-code using Terraform/OpenTofu/Pulumi; re-architecting identity and access across GCP and AWS organizations with secure-by-default guardrails and least-privilege principles; leading identity and access engineering for enterprise AI platforms including Claude and adjacent tools; pioneering non-human identity governance for service accounts, API keys, certificates, and AI agents; driving cross-functional initiatives with Security, IT, Engineering, and the Office of the CIO; and mentoring senior and intermediate engineers on modern identity and AI security practices.
Required qualifications: extensive enterprise-scale IAM design and implementation experience at Staff or senior IC level; expert-level Okta expertise including Identity Engine, advanced authentication policies, lifecycle workflows, and API automation; strong infrastructure-as-code practice with Terraform/OpenTofu/Pulumi, including SaaS platform provider experience and click-ops migration track record; proficiency writing and shipping production Python code as a software engineer with modular, tested design; experience with GCP and AWS identity services; familiarity with non-human identity governance and AI security patterns; and ability to translate ambiguous business requirements into actionable technical specifications.
The role is part of GitLab's broader mission to build the intelligent orchestration platform for DevSecOps, where AI is embraced as a core productivity multiplier and all team members are expected to incorporate AI into daily workflows.