wagey.ggwagey.ggv1.0-e93b95d-4-May
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs/Senior Researcher Role/GitLab - Intermediate Vulnerability Researcher, AST: Vulnerability Research
GitLab

GitLab - Intermediate Vulnerability Researcher, AST: Vulnerability Research

Remote - USA$98k - $98k+ Equity1mo ago
RemoteMidNALogisticsSenior ResearcherReporting

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Requirements

• Experience developing or improving vulnerability detection capabilities in web security or a closely related area. • Knowledge of the vulnerability management process and how research connects to product outcomes. • Understanding of software composition analysis and software supply chain ecosystems. • Experience with source code analysis, static application security testing, dynamic application security testing, and benchmarking the efficacy of security tools. • Knowledge of compilers and compiler design as it relates to code analysis and detection techniques. • Experience building automated web security testing or analysis tools. • Ability to contribute in a product development environment and work effectively with cross-functional partners. • Interest in security and open source, with openness to candidates who bring transferable experience from adjacent research, application security, or detection-focused roles. • The Vulnerability Research team at GitLab works closely with GitLab Security, Development, and Product to build, tune, and improve the efficacy of the security capabilities integrated into GitLab. We focus on practical research that strengthens detection quality, supports advisory content, and helps translate emerging vulnerability knowledge into product improvements across a distributed, asynchronous environment. • The base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary rate in locations throughout the US. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, alignment with market data, and geographic location. The base salary range does not include any bonuses, equity, or benefits. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary.

Responsibilities

• Carry out vulnerability research and develop proof of concepts that inform GitLab security products and internal security efforts. • Curate advisory databases for dependency scanning by reviewing, editing, and adding advisories while reducing repetitive manual work through automation. • Build benchmarks that test the efficacy of scanning and detection products across supported security categories. • Measure product efficacy over time and use findings to improve the quality and reliability of detection results. • Assess security product output and perform root cause analysis to identify gaps, false positives, false negatives, and opportunities for improvement. • Write detailed technical reports that document research findings, methods, and recommendations clearly. • Respond to internal and external questions related to vulnerabilities, advisories, and detection behavior. • Collaborate with Security, Development, and Product teams to apply research insights to GitLab's integrated security capabilities.

Benefits

• $98,000—$210,000 USD • How GitLab will support you • Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application. • Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process. • Country Hiring Guidelines:

Get Started Free

No credit card. Takes 10 seconds.

Privacy·Terms··Contact·FAQ·Wagey on X