About the job
At GitLab, we are an open-core software company revolutionizing the landscape of software development with our comprehensive AI-powered DevSecOps Platform, utilized by over 100,000 organizations globally. Our mission is to empower individuals to contribute to and co-create the software that shapes our world. By fostering a culture where every voice matters, we accelerate innovation and progress. Our platform fosters collaboration across teams and organizations, dismantling barriers and reshaping the possibilities in software development. With innovative products like Duo Enterprise and Duo Agent Platform, we provide AI-driven benefits throughout the software development lifecycle.
Our team embodies the same principles that are embedded in our products, embracing AI as a vital productivity enhancer. Every team member is encouraged to integrate AI into their daily tasks to boost efficiency, inspire innovation, and create meaningful impact. GitLab is a place where careers flourish, innovation thrives, and diverse perspectives are valued. Our high-performance culture, rooted in our values and continuous knowledge sharing, empowers our team members to achieve their full potential while collaborating with industry experts to tackle complex challenges. Join us in co-creating the future as we develop technology that transforms software development.
Staff Product Designer, Security and Compliance
We are looking for a Staff Product Designer to spearhead design for intricate initiatives, mentor fellow designers, and enhance the quality of our Security experience.
About the Role
In the role of Staff Product Designer for Security & Compliance, you will lead the design of sophisticated security experiences that assist organizations in safeguarding their software supply chain, managing vulnerabilities, and fulfilling compliance mandates. This position bridges the gap between complex technical security concepts and user-centered design, transforming intricate workflows into intuitive, usable experiences for developers and security teams.
Your initial focus will be on Software Supply Chain Security (including provenance and attestation, signing and verification, dependency firewall, SBOM, and malicious package detection). Over time, your responsibilities will extend across the broader Security & Compliance portfolio, which encompasses application security scanners, policy enforcement, and more.

