# Staff Security Researcher at GitLab

- Company: GitLab
- What the company does: The intelligent orchestration platform for DevSecOps, enabling teams and agents to ship trusted software at enterprise scale. Backed by General Catalyst and Khosla.
- Company website: https://about.gitlab.com/
- Type: Startups
- Level: Senior
- Location: Remote, Canada; Remote, Israel; Remote, United Kingdom; Remote, United States
- Work setup: Remote
- Posted: 2026-09-05
- Apply by: 2026-10-20
- Apply: https://job-boards.greenhouse.io/gitlab/jobs/8782153002
- Page: https://www.1752.vc/careers/jobs/gitlab-staff-security-researcher/

## About the role

We are seeking a Staff Security Research Engineer to join our Application Security Team to conduct cutting-edge security research on GitLab's AI-powered DevSecOps capabilities. As GitLab transforms software development through intelligent collaboration between developers and specialized AI agents, we need security researchers who can proactively identify and validate vulnerabilities before they impact our platform or customers.

## What they're looking for

- Conduct security research in two or more specialty areas
- Identify novel, systemic, and chained vulnerabilities in GitLab, where individual weaknesses combine for outsized impact
- Validate security vulnerabilities through hands-on testing, developing proof-of-concept exploits that demonstrate real-world attack scenarios
- Assess emerging industry vulnerability classes against the GitLab codebase in your areas of expertise, and drive remediation of the class rather than the instance
- Conduct security research into GitLab's AI and agentic surfaces, and participate in defining the security requirements that engineering teams build against
- Build the tooling and automation that scales security research, including agent-assisted vulnerability discovery across our codebase

Tags: Product Security
