Senior Manager, Security Incident Response Team
Listed on 2026-03-03
-
IT/Tech
Cybersecurity, IT Support
Git Lab is the intelligent orchestration platform for Dev Sec Ops . Git Lab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100
* trust Git Lab to ship better, more secure software faster.
The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. Git Lab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems.
Co-create the future with us as we build technology that transforms how the world develops software.
* Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on Git Lab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of Git Lab.
An overview of this roleWe’re looking for a senior manager to lead the Git Lab security incident response team (SIRT) in the Americas region. Git Lab SIRT manages and investigates cybersecurity incidents for all Git Lab operating environments and operates in a tierless SOC model. Git Lab SIRT is responsible for threat hunting, alert triage, security investigations, deep dive DFIR, large scale incident response, among other responsibilities.
This person should have a technical background, be comfortable leading a team that owns the full incident lifecycle from alert triage to incident retrospective actions, be skilled in leading large complex incidents, and training others to do the same.
We are looking for a person who makes good business decisions under pressure and someone who is always looking for opportunities to “shift left” and improve defenses, leveraging AI and automation where possible to optimize workflows. In this role you will develop incident responders and maintain a culture of high performance - leading incident response and defending Git Lab infrastructure and products such as , Git Lab Dedicated, and Git Lab Dedicated for Government (FedRAMP).
This role requires availability during US West Coast business hours. Candidates based on the West Coast are preferred, though candidates in other time zones who are comfortable working these hours are also welcome to apply. This role may require some after hours and weekend time to support SIRT engineers during high severity incidents.
Find out more about the Security Operations Department here:
- Security Incident Response Team
- Trust and Safety Team
- Security Logging Team
- Red Team
- Signals Engineering Team
- Serve as trusted advisor as part of the security division’s leadership team, actively shaping the program direction.
- Build and mature incident response runbooks, procedures, and capabilities.
- Provide leadership to multiple security operations team shifts that will sometimes require you to work on nights or weekends.
- Develop a culture of incident response excellence through a focus on investigation depth and accuracy.
- Lead cross-functional collaboration between peer Sec Ops teams, security departments, and extended support teams such as Legal, Customer Support, and Infrastructure.
- Foster a defense first mindset through actionable incident retrospective mitigations to close defense gaps, making Git Lab a hard target for attackers.
- Lead a team of expert security engineers with experience in security automation, deep dive forensics and incident response, AI detection and response capabilities, and Git Lab the product.
- Support response readiness and expertise about new Git Lab corporate and product capabilities and features.
- Drive insights from the alerts, investigations, and incidents handled by SIRT to…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).