About the job
At GitLab, we are at the forefront of innovation as an open-core software company, providing the most comprehensive AI-powered DevSecOps Platform utilized by over 100,000 organizations worldwide. Our mission is to empower everyone to contribute to the software that shapes our world. By fostering a culture of collaboration, we enable consumers to become contributors, accelerating human progress significantly. Our platform unifies teams and organizations, dismantling barriers, and redefining the realms of possibility in software development. Through our products like Duo Enterprise and Duo Agent Platform, our customers harness AI benefits throughout the Software Development Life Cycle (SDLC).
Our team embodies the same principles we instill in our products, embracing AI as a vital productivity enhancer. Every team member is expected to integrate AI into their daily workflows to amplify efficiency, spark innovation, and drive meaningful impact. GitLab is where careers thrive, innovation flourishes, and every voice matters. Our high-performance culture, guided by our values and continuous knowledge exchange, empowers our team members to achieve their full potential while collaborating with industry leaders to tackle complex challenges. Join us in shaping the future as we develop technology that transforms global software development.
Role Overview
As part of our growth strategy, GitLab is expanding its Software Supply Chain Security (SSCS) product line to seize a massive market opportunity projected to be valued at $3-8 billion, with an expected enterprise adoption rate of 85% by 2028. Regulatory mandates such as EO 14028 and the EU Cyber Resilience Act, alongside a surge in supply chain attacks like SolarWinds and Shai-Hulud, underline the urgent demand for innovative security solutions.
In your role as the Staff Product Manager for Software Supply Chain Security (SSCS), you will spearhead the strategy and delivery of a pioneering product line that secures every aspect surrounding the code, extending beyond the code itself. You will oversee a suite of product pillars within the software supply chain, encompassing provenance, attestation, signing and verification, Software Bill of Materials (SBOM), malicious package detection, and a dependency firewall. Reporting to the Security & Compliance product area, you will collaborate closely with engineering, UX, and cross-functional partners to translate complex frameworks such as SLSA into clear, valuable capabilities that address pressing security needs.

