Staff Product Security Engineer
ChainguardAlso available on
Job Description
📋 Description Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before Systematically, consistently and automatically capture the risk exposure of Chainguards products. Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance Proactively identify emerging customer security needs, and build solutions to meet these. Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP Harden container images, Kubernetes cluster configurations, and cloud IAM postures — minimising 🎯 Requirements 7+ years in software engineering, security engineering, or a combined role with meaningful hands-on Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or Fluency with container security: image scanning, distroless/minimal base images, runtime security. 🎁 Benefits Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual Equity: Receive stock options upon hire and promotion. Plus, participate in secondary offerings Health Insurance: 100% covered health, vision and dental premiums for you and dependents. ∞ Flexible Time Off: Take the time you need to recharge and reset. 18 Weeks Paid Parental Leave: 18 weeks for birthing parents and 12 weeks for non-birthing parents.