{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/title/software-security-engineer"},"x-facet":{"type":"title","slug":"software-security-engineer","display":"Software Security Engineer","count":1},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_2bb1484f-8f5"},"title":"Software Security Engineer","description":"<p>You will engineer security improvements to the GitLab product as well as building and maintaining the tools we use to detect and prevent abuse on our SaaS platforms. A strong software engineering background with experience in large Ruby/Rails codebases is required.</p>\n<p>As an engineer on the Trust and Safety team, you will predictively identify abuse patterns and trends and build prevention systems to mitigate abusive users. The Trust and Safety team both maintains core abuse prevention platforms as well as cross functionally builds customer safety mechanisms on GitLab, such as the introduction of Compromised Password Detection for GitLab.com.</p>\n<p>This role is an ideal fit for candidates with software engineering backgrounds interested in moving into security engineering. Formal security engineering experience is not a requirement for this role.</p>\n<p>Key Responsibilities:</p>\n<p>Maintain core abuse prevention systems and build new abuse detection rules to identify and prevent evolving abuse patterns such as platform abuse, cryptomining, platform spam and abuse of terms of service</p>\n<p>Maintain and build new capabilities in our in-house abuse platform</p>\n<p>Improve and expand agentic AI capabilities in our abuse mitigation tools</p>\n<p>Collaborate with peers to deliver safety improvements for the GitLab product</p>\n<p>Resolve automation gaps and create efficient, automated processes</p>\n<p>Create and maintain documentation such as runbooks and procedures</p>\n<p>Key Requirements:</p>\n<p>Strong software development skills with experience in Ruby/Rails</p>\n<p>Experience working on distributed applications with large codebases and deployed in cloud environments strongly preferred</p>\n<p>Passion/desire to proactively develop security engineering skills</p>\n<p>Comfortable working in an all remote environment where results and impact matter above hours worked</p>\n<p>Interest in “thinking like a hacker” and defending against attacks with an “automation first” mindset</p>\n<p>Interest in cloud native development (Google Cloud Platform (GCP) and/or AWS)</p>\n<p>Interest in handling trust and safety security incidents (platform abuse, cryptomining, platform spam)</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_2bb1484f-8f5","directApply":true,"hiringOrganization":{"@type":"Organization","name":"GitLab","sameAs":"https://about.gitlab.com/","logo":"https://logos.yubhub.co/about.gitlab.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/gitlab/jobs/8516916002","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":"$103,600-$166,500 USD","x-skills-required":["Ruby","Rails","Distributed applications","Cloud environments","Security engineering","Agentic AI","Automation"],"x-skills-preferred":["Cloud native development","Google Cloud Platform (GCP)","AWS","Trust and safety security incidents"],"datePosted":"2026-04-24T12:14:49.997Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote, Canada; Remote, US"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Ruby, Rails, Distributed applications, Cloud environments, Security engineering, Agentic AI, Automation, Cloud native development, Google Cloud Platform (GCP), AWS, Trust and safety security incidents","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":103600,"maxValue":166500,"unitText":"YEAR"}}}]}