Senior Security Engineer - IAM
An overview of this role
The Identity Engineering team is on a mission to transform how our workforce ecosystem securely accesses the tools they need to do their best work, advancing from foundational controls to sophisticated, automated governance. As our new Senior Identity Security Engineer, you'll be a technical leader and strategic thinker who thrives in ambiguous situations. You're passionate about designing elegant solutions to complex identity challenges, whether that's architecting enterprise-scale conditional access policies or building observability for non-human identities. You'll serve as a DRI (Designated Responsible Individual) for critical systems, write technical proposals that influence our roadmap, and mentor teammates while driving cross-functional initiatives.
This isn't about maintaining the status quo- it's about architecting the future of identity security for a rapidly scaling company operating in regulated environments.
What you’ll do
Design comprehensive identity solutions that scale with our business growth, from AI agent governance frameworks to privileged access workflows that eliminate standing access through just-in-time provisioning
Drive cross-functional initiatives with Security, IT, Engineering, and Business teams to extract requirements from ambiguous business needs and translate them into actionable technical specifications
Refactor our authentication framework to implement advanced conditional access controls—device trust, location-based policies, risk-based step-up authentication, and behavioral analytics across our entire SaaS ecosystem
Support critical identity platforms and drive their strategic evolution through technical proposals and design documents that influence our multi-year roadmap
Lead the consolidation of fragmented automations into maintainable, resilient workflows that can handle the complexity of enterprise-scale identity management
Pioneer non-human identity governance by designing comprehensive monitoring and management solutions for service accounts, API keys, certificates, and emerging AI agent identities
Mentor intermediate engineers on both technical implementation and strategic thinking, helping them develop expertise in modern identity security practices
What you’ll bring
5+ years of IAM experience designing and implementing enterprise-scale solutions
Expert-level Okta expertise including advanced authentication policies, lifecycle workflows, and API automation
Strong automation experience using Python or iPaaS tools (Tines, Okta Workflows)
Experience with IGA platforms like Lumos, ConductorOne or similar IGA tools
Strategic communication skills for writing technical proposals and leading cross-functional initiatives
Experience in regulated environments with knowledge of compliance frameworks (FedRAMP, SOC2, SOX)
Collaborative mindset with experience mentoring teammates and driving technical initiatives
Nice to have Qualifications:
Passion for emerging identity challenges including AI agent governance, non-human identity management, zero-trust architecture, and behavioral analytics
How GitLab will support you
All remote, asynchronous work environment
Home office support
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
The base salary range for this role’s listed level is currently for residents of listed locations only. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, and alignment with market data. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.
California/Colorado/Hawaii/New Jersey/New York/Washington/DC/Illinois/Minnesota pay range
$124,300—$188,700 USD
About the job
Apply for this position
Senior Security Engineer - IAM
An overview of this role
The Identity Engineering team is on a mission to transform how our workforce ecosystem securely accesses the tools they need to do their best work, advancing from foundational controls to sophisticated, automated governance. As our new Senior Identity Security Engineer, you'll be a technical leader and strategic thinker who thrives in ambiguous situations. You're passionate about designing elegant solutions to complex identity challenges, whether that's architecting enterprise-scale conditional access policies or building observability for non-human identities. You'll serve as a DRI (Designated Responsible Individual) for critical systems, write technical proposals that influence our roadmap, and mentor teammates while driving cross-functional initiatives.
This isn't about maintaining the status quo- it's about architecting the future of identity security for a rapidly scaling company operating in regulated environments.
What you’ll do
Design comprehensive identity solutions that scale with our business growth, from AI agent governance frameworks to privileged access workflows that eliminate standing access through just-in-time provisioning
Drive cross-functional initiatives with Security, IT, Engineering, and Business teams to extract requirements from ambiguous business needs and translate them into actionable technical specifications
Refactor our authentication framework to implement advanced conditional access controls—device trust, location-based policies, risk-based step-up authentication, and behavioral analytics across our entire SaaS ecosystem
Support critical identity platforms and drive their strategic evolution through technical proposals and design documents that influence our multi-year roadmap
Lead the consolidation of fragmented automations into maintainable, resilient workflows that can handle the complexity of enterprise-scale identity management
Pioneer non-human identity governance by designing comprehensive monitoring and management solutions for service accounts, API keys, certificates, and emerging AI agent identities
Mentor intermediate engineers on both technical implementation and strategic thinking, helping them develop expertise in modern identity security practices
What you’ll bring
5+ years of IAM experience designing and implementing enterprise-scale solutions
Expert-level Okta expertise including advanced authentication policies, lifecycle workflows, and API automation
Strong automation experience using Python or iPaaS tools (Tines, Okta Workflows)
Experience with IGA platforms like Lumos, ConductorOne or similar IGA tools
Strategic communication skills for writing technical proposals and leading cross-functional initiatives
Experience in regulated environments with knowledge of compliance frameworks (FedRAMP, SOC2, SOX)
Collaborative mindset with experience mentoring teammates and driving technical initiatives
Nice to have Qualifications:
Passion for emerging identity challenges including AI agent governance, non-human identity management, zero-trust architecture, and behavioral analytics
How GitLab will support you
All remote, asynchronous work environment
Home office support
Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application.
The base salary range for this role’s listed level is currently for residents of listed locations only. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, and alignment with market data. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.
California/Colorado/Hawaii/New Jersey/New York/Washington/DC/Illinois/Minnesota pay range
$124,300—$188,700 USD