💼Jobs 📝Blog 🧮Salary Calc 🌍Cost of Living 📋Tax Guide
👤Sign In Post a Job — from $99
Gitlab

Senior Manager, Security Compliance

EngineeringFull-TimeSenior
Location
USA Only
Job Type
Full-Time
Experience
Senior
Apply Now

Job Description

ABOUT THE ROLE As a Senior Manager, Security Compliance at GitLab, you will lead and mature our security compliance function to meet the needs of customers, auditors, and regulators across a growing set of security and compliance requirements. Reporting to the VP of Security Assurance, you will bring deep expertise in security frameworks, risk-based thinking, and team leadership to guide our certification strategy and strengthen how we manage compliance across the business. WHAT YOU'LL DO As a Senior Manager, Security Compliance, you will be responsible for leading and mentoring a team focused on security compliance, providing direction, support, and clear priorities while building a high-performing function. Your key responsibilities will include: * Overseeing and expanding GitLab's certification portfolio across frameworks such as ISO 27001/17/18, ISO 42001, Service Organization Control 2 (SOC 2), Payment Card Industry (PCI), TiSAX, Cyber Essentials, and Federal Risk and Authorization Management Program (FedRAMP) * Partnering with cross-functional stakeholders in IT, Security, Legal, Product, and Engineering to integrate governance, risk, and compliance requirements into business processes and technical systems * Driving automation within the function by using scripting, coding, and AI-enabled approaches to improve governance, risk, and compliance workflows * Monitoring regulatory changes, emerging frameworks, and industry trends, and using those insights to help shape the team's roadmap and prepare the business for new requirements * Managing relationships with third-party auditors, assessors, and consultants during activities such as external audits, certification reviews, and penetration tests * Strengthening the team's security metrics and reporting practices, including preparing and facilitating regular business reviews and giving leadership clear visibility into progress and risk * Serving as a subject matter expert and thought partner by delivering guidance, training, and security-focused content for internal teams, customers, and senior stakeholders WHAT YOU'LL NEED To be successful in this role, you will need to bring extensive experience in security compliance, audit, or related governance, risk, and compliance work, including experience supporting external audits. You will also need to have deep knowledge of security and compliance frameworks such as SOC 2, ISO 27001, FedRAMP, and National Institute of Standards and Technology (NIST), with public sector or FedRAMP experience preferred. WHY REMOTE As a remote employee, you will have the flexibility to work from anywhere and be part of a global team that values collaboration, innovation, and continuous learning. You will have the opportunity to work with a diverse group of professionals who are passionate about security compliance and making a positive impact on the world. BENEFITS GitLab offers a comprehensive benefits package, including: * Competitive salary and bonus structure * Flexible working hours and remote work options * Comprehensive health insurance and wellness programs * Professional development opportunities and education stipend * Access to cutting-edge technology and tools * Collaborative and inclusive work environment * Opportunity to work on high-impact projects and make a meaningful contribution to the company's mission.