HHiring Reality
← GitLab

Senior Security Compliance Engineer, Public Sector

GitLab
Location
Remote, United States
Posted
16 days ago
Department
Security Assurance
What they actually want (must-haves)
  • Valid proof of US citizenship and residency
  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or equivalent experience
  • Minimum of 5 years of experience in GRC, cybersecurity, or a related field
  • Proven experience achieving and maintaining security certifications such as FedRAMP, CMMC, SOC 2, IRAP, ISO 27001
  • Strong understanding of regulatory and compliance requirements for the public sector
  • Familiarity with implementing compliance-as-code or policy-as-code
Nice to have
  • Familiarity with cloud hyperscalers services (e.g. AWS, GCP)
  • Relevant certifications such as CISSP, CISM, CISA
What the job really is

As a Senior Security Compliance Engineer at GitLab, you will support the Public Sector Compliance team by developing and managing Governance, Risk, and Compliance (GRC) strategies to meet regulatory standards like FedRAMP and ISO 27001. Your role will involve collaborating with cross-functional teams, leading security assessments, and automating compliance processes. You will also provide training on GRC topics and act as a subject matter expert to enhance customer trust and compliance posture.

Benefits
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental Leave
Things to weigh
  • No specific mention of remote work flexibility beyond the United States
  • Salary range provided but does not include bonuses or equity
  • Vague description of the team dynamics and collaboration processes
Job score3/5
Benefits3/5
Freshness4/5
Career value4/5
Role clarity4/5
Pay transparency0/5

Applying to GitLab?

See how your résumé matches this role — and tailor it from what actually gets interviews.