Resume and JobRESUME AND JOB
GitLab logo

Manager, Product Security Incident Response (PSIRT)

GitLab

Manager, Product Security Incident Response (PSIRT)

GitLab logo

GitLab

full-time

Posted: December 18, 2025

Number of Vacancies: 1

Job Description

About this Role

Lead GitLab's Product Security Incident Response Team (PSIRT) to safeguard innovative products and services against emerging threats.

Empower teams by owning vulnerability analysis, validation, and coordinated responses at the heart of DevSecOps excellence.

Join a mission-driven company enabling everyone to co-create software that accelerates human progress worldwide.

Drive the strategy for prioritizing and remediating security vulnerabilities with precision and speed.

Collaborate at the intersection of product security, engineering, and research to deliver actionable insights.

Shape GitLab's Coordinated Vulnerability Disclosure program, partnering with researchers for transparent handling.

Influence security practices across a cutting-edge AI-powered platform used by millions.

Thrive in a high-performance culture where AI boosts productivity and every voice drives innovation.

Mentor a distributed team while solving complex challenges with industry-leading collaborators.

Co-create the future of secure software development in an inclusive environment that values your expertise.

Locations

  • Canada, Remote, EMEA, Remote, US (Remote)

Salary

Salary details available upon request

Estimated Salary Rangemedium confidence

120,000 - 200,000 USD / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Vulnerability triage and analysis.intermediate
  • Application and code security assessment.intermediate
  • Root cause analysis for vulnerabilities.intermediate
  • Cross-functional stakeholder management.intermediate
  • Security engineering coaching and mentoring.intermediate
  • Technical documentation and communication.intermediate
  • Automation and tooling development.intermediate
  • Coordinated vulnerability disclosure.intermediate
  • Post-incident review processes.intermediate
  • Secure development practices.intermediate

Required Qualifications

  • Demonstrated experience leading vulnerability triage, remediation, and disclosure processes in software security. (experience)
  • Strong understanding of application and code security for detecting, prioritizing, and remediating defects. (experience)
  • Experience driving down vulnerability volume through root cause analysis and prevention strategies. (experience)
  • Track record leading cross-functional initiatives with product, engineering, and security teams. (experience)
  • Experience coaching, mentoring, or managing security engineers with focus on growth and inclusion. (experience)
  • Ability to quickly learn new technical concepts and product areas. (experience)
  • Flexible, inclusive communication skills to influence across organizational levels. (experience)
  • Proven skills in managing stakeholder expectations and navigating security tradeoffs. (experience)
  • Experience with secure development practices, automation, and developer education. (experience)
  • Background in bug bounty or security response team operations. (experience)

Preferred Qualifications

  • Experience in a product security incident response team (PSIRT). (experience)
  • Familiarity with AI-powered DevSecOps platforms. (experience)
  • Skills in vulnerability research and external researcher partnerships. (experience)
  • Expertise in security release planning and cross-functional coordination. (experience)
  • Knowledge of post-incident review processes for systemic improvements. (experience)
  • Ability to champion scalable PSIRT practices organization-wide. (experience)
  • Experience with distributed team leadership. (experience)
  • Proficiency in translating security concepts for non-technical audiences. (experience)
  • Background in automation tooling for vulnerability workflows. (experience)
  • Participation in open-core software security initiatives. (experience)

Responsibilities

  • Drive strategy and execution for analyzing, validating, prioritizing, and remediating product vulnerabilities.
  • Partner with Security and Engineering leaders on remediation approaches and timely delivery.
  • Oversee processes for validating vulnerability fixes with technical rigor and documentation.
  • Lead planning and execution of security releases with cross-functional alignment.
  • Sponsor automation and tooling to streamline triage and response workflows.
  • Own and improve the vulnerability response lifecycle and disclosure activities.
  • Conduct post-incident reviews to drive systemic prevention.
  • Review and guide high-quality communication on vulnerability impact and remediation.
  • Manage Coordinated Vulnerability Disclosure program with stakeholders.
  • Collaborate with engineers and product teams to mitigate security issues.

Benefits

  • general: Comprehensive benefits supporting health, finances, and well-being.
  • general: Flexible Paid Time Off.
  • general: Team Member Resource Groups for inclusion and belonging.
  • general: Equity Compensation and Employee Stock Purchase Plan.
  • general: Growth and Development Fund for career advancement.
  • general: Generous Parental Leave.
  • general: Home office support and equipment.
  • general: Bonuses and incentive pay opportunities.
  • general: Continuous learning through knowledge exchange.
  • general: Inclusive culture with psychological safety and collaboration.

Target Your Resume for "Manager, Product Security Incident Response (PSIRT)" , GitLab

Get personalized recommendations to optimize your resume specifically for Manager, Product Security Incident Response (PSIRT). Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Manager, Product Security Incident Response (PSIRT)" , GitLab

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Product SecurityTechnologySoftware

Related Jobs You May Like

No related jobs found at the moment.

GitLab logo

Manager, Product Security Incident Response (PSIRT)

GitLab

Manager, Product Security Incident Response (PSIRT)

GitLab logo

GitLab

full-time

Posted: December 18, 2025

Number of Vacancies: 1

Job Description

About this Role

Lead GitLab's Product Security Incident Response Team (PSIRT) to safeguard innovative products and services against emerging threats.

Empower teams by owning vulnerability analysis, validation, and coordinated responses at the heart of DevSecOps excellence.

Join a mission-driven company enabling everyone to co-create software that accelerates human progress worldwide.

Drive the strategy for prioritizing and remediating security vulnerabilities with precision and speed.

Collaborate at the intersection of product security, engineering, and research to deliver actionable insights.

Shape GitLab's Coordinated Vulnerability Disclosure program, partnering with researchers for transparent handling.

Influence security practices across a cutting-edge AI-powered platform used by millions.

Thrive in a high-performance culture where AI boosts productivity and every voice drives innovation.

Mentor a distributed team while solving complex challenges with industry-leading collaborators.

Co-create the future of secure software development in an inclusive environment that values your expertise.

Locations

  • Canada, Remote, EMEA, Remote, US (Remote)

Salary

Salary details available upon request

Estimated Salary Rangemedium confidence

120,000 - 200,000 USD / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Vulnerability triage and analysis.intermediate
  • Application and code security assessment.intermediate
  • Root cause analysis for vulnerabilities.intermediate
  • Cross-functional stakeholder management.intermediate
  • Security engineering coaching and mentoring.intermediate
  • Technical documentation and communication.intermediate
  • Automation and tooling development.intermediate
  • Coordinated vulnerability disclosure.intermediate
  • Post-incident review processes.intermediate
  • Secure development practices.intermediate

Required Qualifications

  • Demonstrated experience leading vulnerability triage, remediation, and disclosure processes in software security. (experience)
  • Strong understanding of application and code security for detecting, prioritizing, and remediating defects. (experience)
  • Experience driving down vulnerability volume through root cause analysis and prevention strategies. (experience)
  • Track record leading cross-functional initiatives with product, engineering, and security teams. (experience)
  • Experience coaching, mentoring, or managing security engineers with focus on growth and inclusion. (experience)
  • Ability to quickly learn new technical concepts and product areas. (experience)
  • Flexible, inclusive communication skills to influence across organizational levels. (experience)
  • Proven skills in managing stakeholder expectations and navigating security tradeoffs. (experience)
  • Experience with secure development practices, automation, and developer education. (experience)
  • Background in bug bounty or security response team operations. (experience)

Preferred Qualifications

  • Experience in a product security incident response team (PSIRT). (experience)
  • Familiarity with AI-powered DevSecOps platforms. (experience)
  • Skills in vulnerability research and external researcher partnerships. (experience)
  • Expertise in security release planning and cross-functional coordination. (experience)
  • Knowledge of post-incident review processes for systemic improvements. (experience)
  • Ability to champion scalable PSIRT practices organization-wide. (experience)
  • Experience with distributed team leadership. (experience)
  • Proficiency in translating security concepts for non-technical audiences. (experience)
  • Background in automation tooling for vulnerability workflows. (experience)
  • Participation in open-core software security initiatives. (experience)

Responsibilities

  • Drive strategy and execution for analyzing, validating, prioritizing, and remediating product vulnerabilities.
  • Partner with Security and Engineering leaders on remediation approaches and timely delivery.
  • Oversee processes for validating vulnerability fixes with technical rigor and documentation.
  • Lead planning and execution of security releases with cross-functional alignment.
  • Sponsor automation and tooling to streamline triage and response workflows.
  • Own and improve the vulnerability response lifecycle and disclosure activities.
  • Conduct post-incident reviews to drive systemic prevention.
  • Review and guide high-quality communication on vulnerability impact and remediation.
  • Manage Coordinated Vulnerability Disclosure program with stakeholders.
  • Collaborate with engineers and product teams to mitigate security issues.

Benefits

  • general: Comprehensive benefits supporting health, finances, and well-being.
  • general: Flexible Paid Time Off.
  • general: Team Member Resource Groups for inclusion and belonging.
  • general: Equity Compensation and Employee Stock Purchase Plan.
  • general: Growth and Development Fund for career advancement.
  • general: Generous Parental Leave.
  • general: Home office support and equipment.
  • general: Bonuses and incentive pay opportunities.
  • general: Continuous learning through knowledge exchange.
  • general: Inclusive culture with psychological safety and collaboration.

Target Your Resume for "Manager, Product Security Incident Response (PSIRT)" , GitLab

Get personalized recommendations to optimize your resume specifically for Manager, Product Security Incident Response (PSIRT). Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Manager, Product Security Incident Response (PSIRT)" , GitLab

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Product SecurityTechnologySoftware

Related Jobs You May Like

No related jobs found at the moment.