Principal Security Researcher
New
G
GitLabDevSecOps
Remote, Canada; Remote, Israel; Remote, United Kingdom; Remote, United StatesFull-TimePrincipal
Salary$203,200 — $275,000 USD
Apply NowOpens the employer's application page
Job Details
- Experience
- 10+ years
- Required Skills
- PythonRubyTypeScriptGoRust
Requirements
- 10+ years of experience in security research, penetration testing, or offensive security roles.
- Strong ability in discovering and exploiting vulnerabilities in large codebases and complex systems.
- Proficiency in two or more of Ruby, Go, Python, TypeScript, or Rust.
- Ability to read and analyze code across multiple languages.
- Strong knowledge of AI frameworks.
- Strong understanding of AI attack vectors including prompt injection, agent manipulation, and workflow exploitation.
- Strong analytical and problem-solving skills with creative thinking.
- Ability to articulate complex technical findings clearly in written communication.
Responsibilities
- Conduct and lead security research projects across multiple functional areas.
- Identify novel, systemic, and chained vulnerabilities in GitLab.
- Validate security vulnerabilities through hands-on testing and proof-of-concept exploits.
- Assess emerging industry vulnerability classes and drive remediation of the class.
- Lead security research into GitLab's AI and agentic surfaces and define security requirements.
- Build and direct tooling and automation for scalable security research.
- Research the security posture of open source tools and dependencies.
- Lead the integration of security research results into engineering and business functions.
- Teach, mentor, and advise domain experts and individual contributors.
View Full Description & ApplyYou'll be redirected to the employer's site