Source Job

US Global Unlimited PTO

Lead a team of engineers building Software Supply Chain Security features with a focus on CI job artifact security. Guide the design and implementation of SLSA (Supply-chain Levels for Software Artifacts) compliance within GitLab CI/CD pipelines. Collaborate with Product Managers to define, prioritize, and deliver the roadmap for supply chain security capabilities.

Security CI/CD

20 jobs similar to Engineering Manager, Software Supply Chain Security: Pipeline Security

Jobs ranked by similarity.

$106,500–$202,500/yr
US

Leverage expertise in application security and security engineering. Implement and administer application security tooling. Integrate security tooling with CI/CD pipelines.

AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow.

$180,000–$215,000/yr
US 3w PTO

  • Implement secure software development practices and champion them across the entire development lifecycle.
  • Collaborate with cross-functional teams to define software requirements, system architecture, and hardware/software integration.
  • Conduct vulnerability analyses, security code reviews, and risk assessments to identify and mitigate potential security issues.

This position is posted by Jobgether on behalf of a partner company; they use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly.

$184,000–$252,000/yr
US

  • Lead secure design reviews and threat modeling for AI-driven products.
  • Build and maintain security automation and governance frameworks.
  • Drive software supply chain security and vulnerability reduction.

AlphaSense empowers companies to make smarter decisions by providing market intelligence and search functionality driven by AI. With over 2,000 employees globally and offices in multiple countries, they foster a collaborative and innovative environment.

$200,000–$250,000/yr
US

  • Partner with Product teams to ensure that products are designed, built, and operated securely.
  • Conduct threat modeling activities with Product teams to ensure product threats are understood, documented, and mitigated.
  • Review and analyze product source code to identify security vulnerabilities and providing recommendations for secure implementation.

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. Affirm is a remote-first company and offers competitive benefits anchored to their core value of people come first.

Australia EMEA Japan New Zealand Unlimited PTO

As a Senior Security Engineer, you will lead cross-team infrastructure security initiatives that strengthen GitLab's SaaS Platforms and Self-Managed offerings. You'll design and own the implementation of security solutions while collaborating with various stakeholders across GitLab. Your technical leadership and hands-on execution will drive pragmatic security capabilities that empower critical software factories globally to operate securely at scale.

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform , used by more than 100,000 organizations.

US

  • Implement and maintain security measures to protect the organization's information assets and infrastructure.
  • Support product and development teams on application security challenges, including threat modeling and architecture reviews.
  • Support security incident response, perform root cause analysis, and drive remediation strategies.

insightsoftware is a global provider of comprehensive solutions for the Office of the CFO, transforming how teams operate and empowering leaders.

US

Design and build security controls across the stack. Drive deployment of security enhancements and policy changes across multi-region infrastructure. Automate detection, prevention, and response with guardrails and paved paths.

1mind is a platform that deploys multimodal Superhumans for revenue teams, combining a face, a voice, and a GTM brain equipped with deep knowledge.

Global

  • Define, implement, and document new security features.
  • Analyze, fix, and test vulnerabilities in open source software.
  • Audit and analyze source code for vulnerabilities.

Canonical is a pioneering tech firm at the forefront of the global move to open source and publishes Ubuntu.

$101,188–$156,070/yr
US

Analyzes and defines security requirements for computer systems. Designs, develops, engineers, and implements solutions that meet security requirements. Leads the strategic design, implementation, and continuous improvement of enterprise-wide DevSecOps practices, tools, and pipelines.

9th Way Insignia is a service-disabled, veteran-owned small business bringing transformative technology to our government customers so they can achieve their missions.

$110,000–$120,000/yr
US

Automate secure cloud-native build and deployment pipelines for AI-powered applications. Implement automated security compliance checks. Enhance the scalability and resilience of distributed systems.

We are a technology solutions firm headquartered in Bellevue, Washington, with a strong presence across the United States.

Americas EMEA Unlimited PTO

Focus on delivering and supporting GitLab for self-managed customers. Build and maintain the infrastructure, tooling, and automation that power our deployment options. Improve installation and upgrade experiences.

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform , used by more than 100,000 organizations.

$221,000–$260,000/yr
US

  • Design and implement scalable infrastructure supporting HIPAA, SOC 2, and ISO 27001 compliance.
  • Create self-service security tools integrating with developer workflows (GitLab CI/CD, Terraform).
  • Lead threat modeling and security architecture reviews for new products and services.

Maven is the world's largest virtual clinic for women and families on a mission to make healthcare work for all of us.

US

  • Design and manage infrastructure-as-code with Terraform and GitOps.
  • Build and maintain secure CI/CD pipelines with integrated security automation.
  • Deploy and operate Kubernetes/K3s clusters in AWS GovCloud (IL5/IL6).

Rackner is a cloud-native software consultancy delivering solutions for startups, enterprises, and the public sector. They enable digital transformation through DevSecOps, AI/ML, and cloud-first innovation, solving high-impact problems and delivering secure, scalable solutions for the Department of Defense and federal health programs.

$205,000–$275,000/yr
US Unlimited PTO

  • Establish and execute a vision and strategy for Product Security, AppSec, and Privacy Engineering across all product lines.
  • Define and enforce Security and Privacy standards and policies within the Software Development Lifecycle (SDLC) and CI/CD pipelines.
  • Drive incident response and vulnerability management processes for all product-related issues.

Flock Safety is the leading safety technology platform, helping communities thrive by taking a proactive approach to crime prevention and security.

$230,000–$255,000/yr
Unlimited PTO 11w maternity 11w paternity

  • Partner with engineering and product teams to design and build secure systems.
  • Lead threat modeling, code reviews, and vulnerability assessments to identify and mitigate risks.
  • Define and evolve secure development practices, including tooling, automation, and developer education.

Uniswap Labs is committed to diversity in our workforce and is proud to be an Equal Opportunity Employer (EEO).

$125,031–$140,657/yr
Americas Europe 5w PTO

In this role, you’ll be at the intersection of security, automation, and distributed systems. You’ll take ownership of hardening complex hybrid environments from bare-metal validators to multi-cloud clusters ensuring our systems are both fast and fortress-strong. You’ll join a distributed, high-performing Blockchain DevOps team that values ownership, transparency, and innovation.

Figment powers the future of Web3 through industry-leading blockchain infrastructure as the leading provider of staking solutions.

US Unlimited PTO

  • Lead development/implementation of cluster & application lifecycles, ensuring security & efficiency.
  • Collaborate with clients, guiding in design/execution of containerized and boundary solutions.
  • Take a leading role in the construction of CI/CD pipelines, driving efficient software updates.

Raft is a customer-obsessed non-traditional small business with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. Their range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem.

US

  • Elevate awareness about Application Security and Software Supply Chain Security, making security engaging and accessible.
  • Deep dive into our supply chain security product suite and emerge as the go-to expert and evangelist.
  • Showcase our solutions in a way that speaks directly to the needs and challenges of our customers.

Endor Labs is building the Application Security platform for the software development revolution. Modern software is complex and dependency-rich, making it increasingly difficult to pinpoint the risks that truly matter. Endor Labs is backed by leading VC firms and secures code whether it was written by humans or AI.

US

  • Design and implement the next generation of our Continuous Integration and Continuous Delivery (CI/CD) pipelines, focusing on security, speed, and reliability.
  • Maintain and optimize the health of our monorepo, ensuring scalable dependency management and fast incremental builds.
  • Work with GCP to architect secure, scalable runtime environments.

Anchorage Digital is building the world’s most advanced digital asset platform for institutions to participate in crypto. As a diverse team of more than 600 members, they are united in one common goal: building the future of finance by providing the foundation upon which value moves safely in the new global economy.

$123,000–$167,000/yr
US Canada

  • Build systems to help engineers write, test, and ship code faster and more safely.
  • Improve the reliability, performance, and observability of CI environment.
  • Design secure, auditable, least privilege execution environments for CI workloads.

At 1Password, we’re building the foundation for a safe, productive digital future by ensuring every identity is authentic and every application sign-in is secure.