Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
GitLab

Senior Security Detection Engineer

GitLab

. Identify MITRE ATT&CK/top threat actor detection gaps and write behavioral detections to close them .

Posted 10/7/2026full-timeRemote • United StatesSenior💰 $139,200 - $190,000 per yearWebsite

Tech Stack

Tools & technologies
AWSCloudDACGoogle Cloud PlatformKubernetesSplunkTerraform

About the role

Key responsibilities & impact
  • Identify MITRE ATT&CK/top threat actor detection gaps and write behavioral detections to close them
  • Serve as a detection subject matter expert with deep knowledge of GitLab’s detection methodology, DaC framework, detection types, and quality thresholds
  • Orchestrate agents across the detection lifecycle as a detection architect, ensuring detection quality and consistency
  • Use SIEM/data lake platforms such as Splunk or Elastic to write and troubleshoot threat detections
  • Collaborate with peer GitLab teams to identify and close security observability improvement opportunities
  • Collaborate with incident response, red team, and threat intelligence teams to improve GitLab’s detection program and coverage
  • Use, maintain, and build DaC, AI, and process-efficiency automations for the signals engineering program
  • Detect suspicious and malicious events for GitLab, its customers, and SaaS operating environments

Requirements

What you’ll need
  • SOC, incident response or detection engineering expertise
  • SIEM/security data lake detection and query expertise
  • Proven ability to proactively detect potentially malicious patterns and collaborate with incident response to complete incident RCAs and identify and implement new detection opportunities
  • Strong Cloud (AWS/GCP) and some PaaS (Kubernetes/Terraform) experience
  • Experience orchestrating teams of agents to write detections; experience building full end-to-end agentic detection pipelines is a bonus
  • Passion for deep-dive threat hunting and cross-functional purple teaming and turning results into detections
  • Experience with mature detection capabilities such as Detections as Code, Signal vs. detection development, risk-based alerting, and behavior analytics
  • Must be a United States Citizen
  • Understanding of the GitLab application is required; experience detecting and hunting attacks against GitLab or maintaining GitLab is a bonus

Benefits

Comp & perks
  • Benefits to support your health, finances, and well-being
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental Leave