Manager, CorpSec Endpoint Engineering
GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. When everyone can contribute, consumers become contributors, significantly accelerating human progress. Our platform unites teams and organizations, breaking down barriers and redefining what's possible in software development. Thanks to products like Duo Enterprise and Duo Agent Platform, customers get AI benefits at every stage of the SDLC.
The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software.
An overview of this role:
We're looking for a Manager of Endpoint Engineering to lead our team in building and scaling world-class endpoint security and management capabilities. You'll drive the technical strategy for protecting and managing devices across our distributed workforce, balancing security rigor with exceptional user experience. This role combines technical leadership, people management, and strategic thinking to advance our endpoint security maturity while enabling our global team to work productively from anywhere.
What you'll do:
- Build, mentor, and grow a high-performing endpoint engineering team of 5 engineers, fostering a culture of automation, infrastructure-as-code, and continuous improvement
- Define and execute the technical roadmap for endpoint security and management across macOS, Windows, and Linux platforms, advancing from manual processes to intelligent automation
- Oversee enterprise-wide deployment and optimization of JAMF (Apple device management), FleetDM (cross-platform visibility), and CrowdStrike (EDR/threat detection)
- Establish infrastructure-as-code practices using Terraform, GitOps workflows, and CI/CD pipelines for endpoint configuration management
- Lead EDR/threat detection strategy, incident response procedures, and automated remediation workflows for endpoint security events
- Drive integration between endpoint platforms and identity systems for seamless device authentication, certificate-based access, and conditional access policies
- Implement automated vulnerability scanning, risk-based patch management, and compliance monitoring across the global device fleet
- Establish SLAs and metrics for device provisioning, incident response, patch compliance, and user satisfaction
- Partner cross-functionally with Identity, SIRT, IT, and executive leadership to drive strategic initiatives and ensure seamless operations across time zones
What you'll bring:
- 3+ years managing technical teams, with demonstrated success building and scaling engineering organizations in remote or distributed environments
- 5+ years experience in endpoint security, device management, or IT infrastructure
- Deep expertise with Apple device management (JAMF or similar MDM platforms) and cross-platform endpoint management for macOS, Windows, and Linux
- Experience with EDR/XDR platforms (CrowdStrike, SentinelOne, or similar) and threat detection workflows
- Proficiency with infrastructure-as-code tools (Terraform, Ansible) and GitOps practices
- Strong understanding of endpoint security principles including vulnerability management, patch deployment, compliance frameworks, and zero-trust architecture
- Experience with security automation, orchestration, and incident response procedures
- Comfortable working in a transparent, remote-first culture with asynchronous collaboration across time zones
Preferred skills:
- Experience managing endpoint security for a remote-first or fully distributed organization with 2000+ employees
- Background in security engineering with progression from individual contributor to management
- Experience with SaaS security, browser security, or modern web-based application controls
- Familiarity with compliance requirements (SOC 2, ISO 27001, FedRAMP) as they relate to endpoint management
- Contributions to open-source endpoint management or security projects
- Understanding of DevSecOps and how to use GitLab
United States Salary Range: $140,000 - $250,000 USD