×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Assurance Engineer

Job in Northern, Floyd County, Kentucky, USA
Listing for: Jackalope Digital LLC
Full Time position
Listed on 2026-09-12
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Specialist
Salary/Wage Range or Industry Benchmark: 139200 - 196000 USD Yearly USD 139200.00 196000.00 YEAR
Job Description & How to Apply Below

Git Lab is the intelligent orchestration platform for Dev Sec Ops . Git Lab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100
* trust Git Lab to ship better, more secure software faster.

The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. Git Lab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems.

Co-create the future with us as we build technology that transforms how the world develops software.

* Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on Git Lab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of Git Lab.

An overview of this role

Git Lab’s Security Assurance organization is responsible for how Git Lab designs, tests, and evidences the controls that protect the business. This role operates the technology compliance program across the systems that run the company, and is deliberately framework- and department-agnostic: the same control discipline applies wherever a system is material to financial reporting, security commitments, customer contracts, or regulatory obligations.

In scope are IT-owned corporate applications and identity infrastructure, Corporate Security tooling, Engineering-owned applications that support business operations (usage-based billing, subscription and entitlement tracking, metering, provisioning), and third‑party SaaS where Git Lab retains control responsibility.

SOX ITGC is one driver of this work, not the whole of it. You will design a control once and satisfy multiple assurance consumers from the same evidence. You will also support corporate security policy work in partnership with the Security Governance team, and help set standards for the governed use of AI across the corporate and business‑systems estate.

Some examples of our projects:

  • Building a control set for an Engineering‑owned billing or subscription system that satisfies SOX ITGC, SOC 2, and customer contractual commitments from a single body of evidence.
  • Setting the standard for how AI tools, agents, and integrations are used in corporate and business systems — what acceptable use looks like, what evidence is required, and when a use case needs Legal, Privacy, or Internal Audit review.
  • Automating recurring evidence collection so access reviews and change‑management testing stop being a manual quarterly scramble.
What you’ll do
  • Design, document, and maintain IT General Controls and security controls across the in‑scope estate, and test them for design and operating effectiveness against regulatory, contractual, and corporate policy requirements.
  • Map shared controls once and test them to serve multiple obligations at the same time — SOX, SOC 2, ISO 27001, ISO 42001, NIST CSF, PCI‑DSS, privacy regulations, and customer contractual commitments.
  • Serve as the compliance point of contact and liaison for the IT, Corporate Security, Engineering, and Finance teams that own in‑scope systems, so a single assessment serves Security Governance, Security Risk, Internal Audit, the…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary