# Senior Software Engineer (Ruby), Security Platform: Authorization at GitLab

- Company: GitLab
- What the company does: The intelligent orchestration platform for DevSecOps, enabling teams and agents to ship trusted software at enterprise scale. Backed by General Catalyst and Khosla.
- Company website: https://about.gitlab.com/
- Type: Startups
- Level: Senior
- Location: Remote, Canada; Remote, Israel; Remote, United Kingdom; Remote, United States
- Work setup: Remote
- Posted: 2026-09-02
- Apply by: 2026-10-17
- Apply: https://job-boards.greenhouse.io/gitlab/jobs/8738225002
- Page: https://www.1752.vc/careers/jobs/gitlab-senior-software-engineer-ruby-security-platform-authorization/

## About the role

As a Senior Software Engineer on GitLab's Authorization team, you will own significant parts of the system that decides what every user, token, and automated agent can access on GitLab.com, Self-Managed, and Dedicated.

## What they're looking for

- Design and ship authorization changes in GitLab's Ruby on Rails monolith, where a single request can trigger hundreds of permission checks
- Own a workstream end to end. Problem definition through feature-flagged rollout, dual-run verification, and cleanup
- Build and extend fine-grained permissions for tokens and roles, and keep the permission catalog coherent as it grows
- Extend and harden authorization enforcement across GraphQL and the REST API
- Refactor long-lived policy code so both the monolith and our new authorization engine can evaluate it, without changing behavior for existing customers
- Improve the reliability, performance, and security posture of existing authorization systems, including paying down permission-model debt

Tags: Sec Engineering
