Manager, Customer Trust & Security Governance
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
measured and communicated internally. You will work across Security, Sales, Legal, Product, Procurement, and other business partners, and you will help strengthen confidence in GitLab’s AI-powered DevSecOps platform through practical guidance, clear standards, and thoughtful execution. What you’ll do - Lead the customer trust function for contract reviews, security questionnaires, requests for proposals, and related customer and vendor security inquiries. - Set direction, priorities, and operating practices that help the team respond effectively while reducing friction in the sales cycle. - Partner with Legal, Sales, Product, and Procurement to review and negotiate security-related terms in revenue and vendor agreements. - Manage escalations for complex security questionnaires, risk assessments, and contract issues, and guide teams toward practical solutions. - Develop and improve security templates, playbooks, fallback positions, and training materials that support faster, more
Requirements
consistent negotiations. - Build and maintain GitLab’s library of security policies and collaborate with security subject matter experts to mature security standards. - Drive the security metrics and reporting program, including preparation and facilitation for quarterly business reviews. - Oversee an engaging security awareness program and use automation and AI tooling to improve workflows, documentation, and team effectiveness. What you’ll bring - Extensive experience leading security governance or customer-facing security programs in a complex, cross-functional environment. - Knowledge of security and compliance frameworks such as SOC2, ISO27001, FedRAMP, GDPR, and NIST. - Ability to review and negotiate security and privacy terms in contracts, with a practical approach to balancing risk and business needs. - Understanding of cloud security, software-as-a-service security models, and DevSecOps practices. - Skill in translating technical security concepts into clear guidance for customers, executives, and internal partners. - Experience building or improving security policies, standards, metrics, reporting, or awareness programs. - Comfort working asynchronously with teams across Security, Sales, Legal, Product, and Engineering, and collaborating through written communication. - Openness to using automation and AI to improve scale and consistency, and to applying transferable experience from adjacent security, governance, or trust roles. About the team The team is responsible for helping GitLab demonstrate and operationalize trust through customer-facing security support, internal governance, measurable security outcomes, and security awareness. It works across regions in an asynchronous way and partners closely with Security, Sales, Legal, Product, Procurement, and Engineering to make security clear, practical, and scalable. This team supports both business velocity and sound governance by improving how GitLab responds to customer requirements
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on es.trabajo.orgGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Stop Googling Git Commands. Start Actually Learning Git.
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
What is Agentic Programming and Why Should Developers Care?
The Top 10 GitHub Alternatives (2025)