Software Engineering Manager, Application Security Testing: Composition Analysis & Dynamic Analysis jobs in United States
cer-icon
Apply on Employer Site
company-logo

GitLab ยท 4 months ago

Software Engineering Manager, Application Security Testing: Composition Analysis & Dynamic Analysis

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. The Engineering Manager for Composition Analysis and Dynamic Analysis specializes in leading teams focused on application security scanning technologies and is responsible for managing multiple security-focused engineering groups.

Cloud SecurityDeveloper ToolsDevOpsOpen SourceSaaS
check
Comp. & Benefits

Responsibilities

Manage engineers across both the Composition Analysis and Dynamic Analysis groups
Drive key initiatives including:
Auto-remediation of vulnerable software packages
Scanning of unmanaged dependencies in C/C++
Static reachability analysis with function-level granularity
Snippet detection for open source dependencies
Improve the DAST crawler for efficiency, stability, and consistent web application traversal
Balance priorities across multiple security-focused engineering teams
Author project plans for epics across both groups, ensuring alignment and avoiding duplication of effort
Run agile project management processes for multiple teams
Provide guidance on security product architecture
Coordinate between Composition Analysis and Dynamic Analysis teams to ensure consistent and complementary approaches to application security

Qualification

Application SecuritySoftware Composition AnalysisDynamic Analysis Security TestingContainerization TechnologiesVulnerability ManagementDevSecOps PracticesAgile Project ManagementOpen Source Security ToolingWeb Application Security TestingTeam Management

Required

In-depth understanding of application security concepts, particularly in software composition analysis techniques to evaluate the security risks associated with application dependencies and dynamic analysis security testing (DAST) tools
Understanding of the challenges in developing and maintaining security scanning tools
Experience managing multiple technical teams simultaneously
Familiarity with containerization technologies and dependency management systems
Knowledge of web application security testing techniques and tools
Experience with open source security tooling (such as OWASP ZAP, Trivy, or similar)
Experience in DevSecOps practices and implementation
Experience in vulnerability management and remediation

Benefits

Benefits to support your health, finances, and well-being
All remote, asynchronous work environment
Flexible Paid Time Off
Team Member Resource Groups
Equity Compensation & Employee Stock Purchase Plan
Growth and Development Fund
Parental leave
Home office support

Company

GitLab is a web-based Git repository manager that offers a variety of features for software development teams.

Funding

Current Stage
Public Company
Total Funding
$413.5M
Key Investors
ICONIQ GrowthGoogle VenturesAugust Capital
2021-10-14IPO
2019-09-17Series Eยท $268M
2018-09-19Series Dยท $100M

Leadership Team

leader-logo
Bill Staples
Chief Executive Officer
linkedin
leader-logo
Sytse Sijbrandij
Co-Founder and Executive Chair
linkedin
Company data provided by crunchbase