Senior Security Logging Engineer

GitLab · USA

Company

GitLab

Location

USA

Type

Full Time

Job Description

An Overview of This Role

The Security Team is responsible for the internal security of GitLab GitLab.com services and actively contribute to the security of the open source and enterprise editions of the GitLab product.Β  Security Engineers engage with partner teams across GitLab to solve common goals and encourage good security practices.

Security Operations Engineers are the firefighters of the GitLab Security Team. As a Security Engineer in Operations focusing on security log engineering your daily duties will include log analysis log collection and filtering tooling and automation development as well as contributing to strategic improvements to the GitLab products and GitLab.com services. Successful Security Engineers thrive in high-stress environments and can think like both an attacker and defender have the ability to engage with and mentor more junior Security Engineers and can help come up with proactive and preventative security measures to keep GitLab and its user’s data safe.

What you'll do

  • Be part of the architectural direction administration maintenance documentation and oversight of the Security information and event management (SIEM) solution.

  • Create and maintain integrations and solutions for the log collection aggregation indexing search alerting.

  • Build and maintain Fluentd based log filtering pipelines.

  • Manage implementation enhancement and adoption of the solutions built by the team into operations.

  • Utilize log ingestion platform for security analytics and identification of tactics techniques and patterns of attackers.

  • Collect and review security logs from systems including Cloud Providers GitLab OS G-Suite OKTA IDS etc.

  • Ensure compliance with internal policies standards and regulatory requirements.

  • Contribute to the creation of runbooks.

  • Perform log analysis and review in support of Security Operations.

  • Build security tools that enable the GitLab Security Team to operate at speed and scale.

What you'll bring

  • Valid proof of US citizenship and residency.

  • At least 5 years of technical experience in information security with a focus on security log analysis incident response SOC or security engineering.

  • Experience with one or more programming languages (ideally Ruby or Python).

  • Experience with Devo and Splunk SIEM Technologies.

  • Experience with log analysis systems.

  • Engineer not an analyst mindset.

  • In-depth knowledge of Linux tools/architecture and logging systems.

  • Experience with Google Cloud Platform (GCP) AWS and/or Azure.

  • Experience deploying and maintaining log filtering technologies such as Fluentd or Cribl.

About the team

Security Operations is a globally distributed team of engineers split across 3 core regions; AMER APAC and EMEA and is at the forefront of security events that impact both GitLab.com and GitLab. We are both reactive and proactive leading security investigations incident response support and response resolution through to cyber threat analysis and detection and response engineering. Even though we’re a global team we work together in a cross-regional manner and have automation and processes to facilitate collaboration when resolving incidents handovers and general collaboration for project work as well.

How GitLab will support you

Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role please apply and allow our recruiters to assess your application.

#LI-JM1

Apply Now

Date Posted

08/12/2024

Views

7

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Engineering Manager - Software Supply Chain Security: Auth Infrastructure - GitLab

Views in the last 30 days - 0

This job description highlights a leadership role in developing secure scalable authentication infrastructure for GitLab It emphasizes technical exper...

View Details

Staff Salesforce Engineer - CRM Systems - GitLab

Views in the last 30 days - 0

This job description outlines a Staff Salesforce Developer role focusing on designing building and scaling enterprisegrade solutions across Salesforce...

View Details

Software Engineer III | Platform - ExtraHop

Views in the last 30 days - 0

This job posting seeks a Software Engineer III to develop features lead junior team members and contribute to secure cloud and appliance solutions The...

View Details

DevOps Engineer - Guidehouse

Views in the last 30 days - 0

This job posting seeks a skilled DevOps Engineer to support development QA and operations across applications emphasizing automation cloudnative infra...

View Details

Senior Marketer - Usage Automation - HubSpot

Views in the last 30 days - 0

This job posting outlines a Senior Marketer role at HubSpot focusing on customer experience through datadriven automation Responsibilities include des...

View Details

Growth Product Lead - Loyalty - Trafilea

Views in the last 30 days - 0

Trafilea promotes itself as a transformative consumer tech platform with AIdriven growth solutions highlighting achievements like 1B revenue and globa...

View Details