Senior Software Engineer (RoR/Go), SSCS: Authentication

GitLab
Canada
Workplace: RemoteFull timeFunction: Software EngineeringSkills: ["Communication","Problem-solving","Collaboration","Code review","Remote work"]

Build and evolve GitLab’s authentication services, working across the Rails monolith and GATE to deliver token issuance, validation, and identity services. Migrate authentication and token management paths into GATE while supporting multiple deployment models. Help design new authentication capabilities like workload identity federation and passkeys/passwordless, strengthen access management security, and address vulnerabilities reported via HackerOne.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GitLab
GitLab
1 month ago

Senior Software Engineer (RoR/Go), SSCS: Authentication

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Build and evolve GitLab’s authentication services, working across the Rails monolith and GATE to deliver token issuance, validation, and identity services. Migrate authentication and token management paths into GATE while supporting multiple deployment models. Help design new authentication capabilities like workload identity federation and passkeys/passwordless, strengthen access management security, and address vulnerabilities reported via HackerOne.
Location: Canada
Workplace: Remote
Employment Type: Full time
Job Function: Software Engineering
Seniority: Sr. Manager level

Key Responsibilities

  • •Contribute to the authentication team’s direction and roadmap for GATE and GitLab authentication services.
  • •Design and implement authentication features across the Rails monolith and GATE, including token issuance, validation, and identity services.
  • •Migrate authentication and token management paths from the monolith into GATE while maintaining reliability across deployment models.
  • •Build new authentication mechanisms, including workload identity federation.
  • •Bolster security posture through robust access management and remediation of HackerOne-reported vulnerabilities.

Pay and Benefits

Perks:Paid LeaveEquity CompensationLearning BudgetParental Leave

Key Requirements

  • •Professional experience with Go and/or Ruby in scaling or mission-critical software-as-a-service products.
  • •Familiarity with authentication/authorization technologies such as OAuth, OpenID Connect (OIDC), SAML, SSO, SCIM, LDAP, JWT, RBAC, and IAM.
  • •Knowledge of token systems, cryptographic signing, and key management.
  • •Experience building or contributing to a service from concept to production, including proposal, discussion, and execution.
  • •Proficiency in written and verbal English to communicate complex problems and solutions in a remote, largely asynchronous environment.
Experience:Software-as-a-serviceDevSecOps
Skills:CommunicationProblem-solvingCollaborationCode reviewRemote work
Languages:English
Tech Stack:GoRubyRailsGATEHackerOneOAuthOpenID Connect (OIDC)Security Assertion Markup Language (SAML)Single sign-on (SSO)System for Cross-domain Identity Management (SCIM)Lightweight Directory Access Protocol (LDAP)JSON Web Token (JWT)Role-based access control (RBAC)Identity and access management (IAM)Workload Identity FederationPasskeys

Company Brief

GitLab
Provides a single application for the complete DevSecOps lifecycle, offering source code management, CI/CD, security, and collaboration tools to help teams deliver software faster and more securely.
Industry: Developer Tools
Company Size: Enterprise (1,001+ employees)
Revenue: USD 250M to 500M
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Francisco, United States
Founded: 2011
WebsiteLinkedIn