A live role

Senior Security Risk Engineer

from GitLab · read the original and apply on their site

Remote, Canada; Remote, United States

Our take: The real work here is turning technical security and vendor findings into quantified business risk, driving remediation to closure across teams, and building the automation that removes the manual toil.

If you like turning messy technical findings into clear risk statements leaders can actually act on, and you would rather build the script that kills the manual step than fill out the same spreadsheet again, this role fits you. You will own risk identification, quantification, and remediation across the business, partnering with engineering, legal, product, and IT, and you will help pioneer how AI reshapes the whole GRC workflow. It is remote, high-trust work with real visibility to leadership.

Needs

  • managing risk
  • translating findings
  • automating toil
  • cross-team work
  • governance and compliance

Rewards

  • risk visible to leaders
  • learning ai fast
  • clearer risk picture
  • remote working

Demands

  • tight deadlines
  • comfort with ambiguity
  • escalating stalled items
  • closing things out
  • a fast pace

Grows

  • risk methodology
  • ai governance
  • building automation
  • program direction

Values

  • rigour
  • reducing risk
  • building trust
  • transparency

Drains

  • sla tracking
  • quarterly reporting
  • manual grc workflows

Would you love this work?

See how what you love doing lines up with this role - it takes about ten minutes to find out.

Find what I'd love to do next