GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity and improve operational efficiency. As an Intermediate Backend Engineer on the Security Platform Management team, you will design and develop enterprise security solutions, build scalable backend services, and maintain robust APIs to enhance GitLab's security offerings.
Responsibilities:
- Design and develop next-generation Security Platform Management capabilities that strengthen GitLab’s enterprise security offering
- Build and optimize scalable backend services and data models in Ruby on Rails with PostgreSQL for large volumes of security data
- Develop and maintain robust REST and GraphQL APIs that power security workflows across the GitLab platform
- Collaborate with Infrastructure, Policies, and Security Insights teams to deliver cross-functional security features end to end
- Implement and refine unified configuration mechanisms for GitLab’s suite of security tools to simplify management at scale
- Work within focused, feature-specific squads to deliver high-impact, well-tested functionality with minimal context switching
- Contribute to technical design decisions, code reviews, and standards that shape the architecture of GitLab’s security platform
Requirements:
- Proficiency in backend development with Ruby on Rails, including building and maintaining production services
- Experience designing and optimizing PostgreSQL schemas and queries for large-scale data
- Experience building and maintaining REST and GraphQL APIs that integrate with complex products or platforms
- Familiarity with Git-based workflows and continuous integration and delivery (CI/CD), ideally using GitLab
- Knowledge of Elasticsearch and NoSQL database technologies, or interest in learning and applying them
- Experience working in collaborative, cross-functional teams with product management and design
- Ability to work autonomously in an all-remote, asynchronous environment while staying aligned with team goals
- Interest in security domains and in building scalable, reliable solutions for enterprise customers, with openness to transferable experience from related areas