# Principal Security Researcher at GitLab

- Company: GitLab
- What the company does: The intelligent orchestration platform for DevSecOps, enabling teams and agents to ship trusted software at enterprise scale. Backed by General Catalyst and Khosla.
- Company website: https://about.gitlab.com/
- Type: Startups
- Level: Principal and up
- Location: Remote, Canada; Remote, Israel; Remote, United Kingdom; Remote, United States
- Work setup: Remote
- Posted: 2026-09-05
- Apply by: 2026-10-20
- Apply: https://job-boards.greenhouse.io/gitlab/jobs/8731718002
- Page: https://www.1752.vc/careers/jobs/gitlab-principal-security-researcher/

## About the role

We are seeking a Principal Security Researcher to join our Application Security Team to conduct cutting-edge security research on GitLab's AI-powered DevSecOps capabilities. As GitLab transforms software development through intelligent collaboration between developers and specialized AI agents, we need security researchers who can proactively identify and validate vulnerabilities before they impact our platform or customers.

## What they're looking for

- Conduct and lead security research projects across multiple functional areas
- Identify novel, systemic, and chained vulnerabilities in GitLab, where individual weaknesses combine for outsized impact
- Validate security vulnerabilities through hands-on testing, developing proof-of-concept exploits that demonstrate real-world attack scenarios
- Assess emerging industry vulnerability classes against the GitLab codebase, and drive remediation of the class rather than the instance
- Lead security research into GitLab's AI and agentic surfaces, and define the security requirements that engineering teams build against
- Build and direct the tooling and automation that scales security research, including agent-assisted vulnerability discovery across our codebase

Tags: Product Security
