Senior Software Engineer (Ruby), Security Platform: Authorization

Related skills

grpc rust ruby ruby on rails graphql

๐Ÿ“‹ Description

  • Design and ship authorization changes in GitLab's Ruby on Rails monolith, where a single request
  • Own a workstream end to end. Problem definition through feature-flagged rollout, dual-run
  • Build and extend fine-grained permissions for tokens and roles, and keep the permission catalog
  • Extend and harden authorization enforcement across GraphQL and the REST API.
  • Refactor long-lived policy code so both the monolith and our new authorization engine can evaluate
  • Improve the reliability, performance, and security posture of existing authorization systems

๐ŸŽฏ Requirements

  • Significant experience building and operating production Ruby on Rails applications.
  • Experience designing or implementing authorization systems, including role-based access control and
  • A security mindset. You treat a permission bug as a security bug, and you reason about blast radius
  • Comfort making careful changes to large, long-lived codebases. Incremental refactors
  • Working knowledge of GraphQL and API authorization patterns.
  • Attention to performance at scale. You understand why one uncached check matters when it runs

๐ŸŽ Benefits

  • Benefits to support your health, finances, and well-being
  • Flexible Paid Time Off
  • Team Member Resource Groups
  • Equity Compensation & Employee Stock Purchase Plan
  • Growth and Development Fund
  • Parental Leave
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to Engineering Jobs. Just set your preferences and Job Copilot will do the rest โ€” finding, filtering, and applying while you focus on what matters.

Related Engineering Jobs

See more Engineering jobs โ†’