Enable job alerts via email!

Intermediate Fullstack Engineer, SSCS: Pipeline Security (Ruby)

GitLab

Canada

Remote

CAD 80,000 - 100,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading company as an Intermediate Fullstack Engineer focusing on enhancing CI pipeline security. You'll develop GitLab's secrets management system and ensure compliance with security standards, collaborating with experts in a remote, inclusive environment.

Benefits

Comprehensive benefits
Growth opportunities

Qualifications

  • 3+ years of fullstack development experience.
  • Proficiency in Ruby on Rails and JavaScript frameworks.

Responsibilities

  • Developing and securing GitLab's native secrets management system.
  • Reviewing code with a security-first approach.
  • Writing secure code in Ruby on Rails and Vue.js.

Skills

Problem Solving
Communication

Tools

Ruby on Rails
JavaScript
Git
Docker
Golang
HashiCorp Vault

Job description

Intermediate Fullstack Engineer, SSCS: Pipeline Security (Ruby)

Join us as an Intermediate Fullstack Engineer, SSCS: Pipeline Security (Ruby) at GitLab.

Role Overview: As part of the Pipeline Security team, you will enhance the security and trustworthiness of CI pipelines for GitLab users worldwide. Your work will focus on developing GitLab's native secrets management system for CI pipelines and implementing SLSA L3 compliance features to strengthen software supply chain security.

Responsibilities include:

  • Developing and securing GitLab's native secrets management system
  • Reviewing code with a security-first approach
  • Writing secure code in Ruby on Rails and Vue.js
  • Collaborating with security experts and engineering teams
  • Documenting security features and considerations
  • Debugging security-related issues
  • Participating in security architecture discussions

Minimum qualifications:

  • 3+ years of fullstack development experience
  • Proficiency in Ruby on Rails and JavaScript frameworks
  • Strong problem-solving and debugging skills
  • Excellent communication skills

Preferred skills:

  • Understanding of CI/CD and pipeline security
  • Experience with secrets management and web security principles
  • Knowledge of Git/GitLab workflows, Golang, Docker, SLSA, HashiCorp Vault

Team and Culture: Join a remote, inclusive team committed to security, innovation, and continuous learning, supported by comprehensive benefits and growth opportunities.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.