Senior Corporate Security Engineer, Mac Os

GitLab GitLab · Enterprise · Canada +1 · Remote · Corporate Security

This role is for a Senior Corporate Security Engineer focused on securing endpoints, particularly macOS, within a remote environment. It involves designing and supporting automation for secure endpoint deployment, configuration, and lifecycle management using Infrastructure-as-Code, Terraform, and GitOps workflows. The role emphasizes improving endpoint security architecture, expanding automation, and enhancing the reliability and auditability of control deployment.

What you'd actually do

  1. Lead the security architecture of GitLab's endpoint fleet and related infrastructure, with a primary focus on macOS.
  2. Design and support automation for secure endpoint deployment, configuration, and lifecycle management using code-based workflows.
  3. Manage endpoint and SaaS security configuration through Terraform, version control, merge requests, continuous integration pipelines, and automated rollouts.
  4. Define and enforce security baselines across macOS, iOS, Windows, and Linux endpoints.
  5. Develop patching and software distribution approaches that align with security, compliance, and operational requirements.

Skills

Required

  • Experience designing and delivering endpoint, systems, or corporate security solutions
  • Deep knowledge of endpoint management platforms such as Jamf Pro or FleetDM
  • Strong hands-on ability with Terraform and Infrastructure-as-Code practices
  • Experience working with GitOps workflows
  • Strong proficiency in scripting or programming for automation and security tooling, such as bash, Python, PowerShell, or Go
  • Familiarity with cloud identity providers and directories, including platforms such as Okta, Google Workspace, LDAP
  • Ability to communicate clearly, collaborate across distributed teams, and work independently

Nice to have

  • Openness to bringing transferable experience from adjacent security, systems, or platform engineering backgrounds

What the JD emphasized

  • strong emphasis on macOS
  • strong hands-on ability with Terraform
  • Strong proficiency in scripting or programming for automation and security tooling