Staff Developer Advocate, GitHub Security Lab
GitHub
- Location
- United States
- Employment
- Full Time
- Work model
- Remote
- Level
- Staff
- Salary
- $121.8k – $323.2k/yr
- H-1B history
- 5 approvals (FY2023)
Skills
About this role
About GitHub GitHub is the world’s leading platform for agentic software development — powered by Copilot to build, scale, and deliver secure software. Over 180 million developers, including more than 90% of the Fortune 100 companies, use GitHub to collaborate, and more than 77,000 organisations have adopted GitHub Copilot. Locations In this role you can work from Remote, United States Overview GitHub is seeking a Staff Developer Advocate to join the GitHub Security Lab. The mission of the Security Lab is to inspire and enable the community to secure the open source software we all depend on. We create a home for security researchers where they can collaborate and share, with the common goal of making security easy for developers. In this role, you will act as a known subject matter expert and trusted ambassador who engages with security researchers, open source maintainers, and enterprise developers and encourages them to get the most out of GitHub Security Lab's security tools and resources — including CodeQL, Dependabot, secret scanning, code scanning, Copilot Autofix, AI-powered vulnerability detection, and the GitHub Advisory Database. You will define the vision and strategy for the Security Lab's developer advocacy program, producing high-quality technical content (blog posts, tutorials, training, videos, CTFs, conference talks), leading community events, and driving social media campaigns. You will grow our community from a dedicated group of security enthusiasts to everyone who cares about software security. You will also help the security community understand and navigate the evolving intersection of AI and security — from securing AI-generated code to leveraging AI for vulnerability discovery. As a Staff-level advocate, you bring cross-team influence and deep technical expertise across multiple areas. You don't just execute — you set direction, establish frameworks that help others produce great security content, and proactively identify highly impactful unaddressed issues, mobilizing resources to resolve them before they affect the community. You mentor and sponsor others within the team, and you use data and business outcomes to inform decisions and influence stakeholders across GitHub.
Responsibilities
Understanding the Security Community Acts as a known subject matter expert of the security research and open source developer communities — their common experiences, goals, industry trends, and key developments — by meeting with community members, attending security and developer conferences, and engaging on social media. Possesses expert knowledge of GitHub's security products and services (CodeQL, code scanning, secret scanning, Dependabot, advisory database) and their potential impact on the broader security ecosystem. Strategically seeks out influencers in the security and open source spaces to understand business drivers and community objectives. Anticipates future changes in the application security landscape, including the impact of AI on security research workflows and the emerging challenges of securing AI-generated code. Building Trusted Relationships Acts as a trusted and influential ambassador between the security community and GitHub's product, engineering, and marketing teams. Builds and maintains a broad, diverse network across security researchers, open source maintainers, and enterprise security teams. Utilizes deep understanding of community needs to share valuable insights, best practices, and technical know-how, maintaining thought leadership within the security community. Internal Advocacy and Impact Collects and seeks out feedback from the security community and stakeholders regarding product usage, user experience, and technical issues. Communicates clearly and effectively to relevant product groups, advocating for and influencing urgent and long-term improvements to GitHub's security features. Proactively builds and manages networks of key stakeholders and leads engagement