or apply directly on GitLab's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 13 days GitLab's roles stay open a median of 41 days
- Reposted
- No
- Salary listed
- No 0% of GitLab's roles list one
- Ghost-job risk at GitLab
- low 0 stale, 9 reposted of 238 open
- Hiring momentum
- 338 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from GitLab's own greenhouse board since 2026-08-03. Full hiring picture for GitLab.
About this role
As a Senior Security Assurance Engineer at GitLab, you will design, document, and maintain IT General Controls and security controls across various systems, ensuring compliance with regulatory and corporate policy requirements. You will collaborate with multiple teams to streamline compliance processes, automate evidence collection, and set standards for AI governance. Your role will also involve assessing system implementations for control readiness and managing SOX ITGC testing and certification requests.
- benefits
- 3/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 5/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of GitLab as an employer.
What you need
- 5+ years in IT compliance, security compliance, IT audit, information security, or information technology
- BA/BS in a business or technology field or equivalent experience
- Demonstrated experience testing controls and documenting those tests against frameworks such as COSO, COBIT, NIST CSF, ISO 27001, SOC 2, and SOX ITGC
- Experience assessing controls in SaaS and cloud-native application stacks
- Working knowledge of identity and access management — SSO, SCIM, RBAC, privileged access, and joiner/mover/leaver processes
- Familiarity with AI governance concepts
Nice to have
- Relevant certifications such as CISA, CISSP, CRISC, or CISM
- Experience with usage-based or consumption billing platforms
- Experience with compliance automation and continuous control monitoring
- Prior experience in a Security Assurance or GRC function that supported both corporate IT and product engineering
What you get
- Flexible Paid Time Off
- Team Member Resource Groups
- Equity Compensation & Employee Stock Purchase Plan
- Growth and Development Fund
- Parental Leave
Worth weighing
- No specific details on the technology stack used
- The role requires collaboration across multiple teams, which may involve navigating complex organizational dynamics
- The salary range is provided, but it does not include bonuses or equity details
Summarised from GitLab's posting. Read the full original.
Listed by GitLab on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at GitLab
- Senior Backend Engineer, UKRemote, United Kingdom
- Senior Backend Engineer, IndiaBangalore, India
- Senior Backend Engineer, AMERRemote, Canada; Remote, United States
- Ecosystem Sales ManagerRemote, United States
- Staff Site Reliability Engineer - Monitoring and Anomaly Detection (Monetization)Bangalore, India
- Strategic Account Executive - SeattleRemote, United States
- Senior Product Manager, Secret Detection and Vulnerability ResearchRemote, United States
- RPA Engineer, UiPathBangalore, India