Senior Product Security Engineer

Chainguard
United Kingdom
Workplace: RemoteFull timeFunction: CybersecurityExperience: 7+ yearsSkills: ["Communication","Collaboration","Problem-solving"]

Embedded, senior IC role focusing on building and hardening secure CI/CD pipelines, cloud-native security, and threat modeling for Kubernetes workloads on AWS/GCP. You’ll lead security architecture reviews, enforce supply chain controls, and drive baseline security standards across Chainguard’s product stack.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Chainguard
Chainguard
3 months ago

Senior Product Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 16 hours agoStatus: Live

Job Summary

Embedded, senior IC role focusing on building and hardening secure CI/CD pipelines, cloud-native security, and threat modeling for Kubernetes workloads on AWS/GCP. You’ll lead security architecture reviews, enforce supply chain controls, and drive baseline security standards across Chainguard’s product stack.
Location: United Kingdom
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production.
  • •Systematically, consistently and automatically capture the risk exposure of Chainguard’s products.
  • •Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign).
  • •Proactively identify emerging customer security needs, and build solutions to meet these.
  • •Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS.

Pay and Benefits

Equity and Bonus:Equity
Perks:EquityHealth InsuranceRemote WorkParental LeaveCoworking Stipend

Key Requirements

  • •7+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout.
  • •Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code.
  • •Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers).
  • •Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub).
  • •Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar).
Experience:7+ yearsCloudDevopsKubernetesOpen sourceSecurity engineering
Skills:CommunicationCollaborationProblem-solving
Languages:English
Tech Stack:GoPythonKubernetesGCPAWSGitHub ActionsCloud BuildTektonSigstoreCosignSLSASBOMOWASPNISTCI/CDContainer securityRBACPod security standards

Company Brief

Chainguard
Builds software supply chain security solutions for containerized and Kubernetes-native environments, offering tools for secure builds, attestations, vulnerability scanning, and policy enforcement to help organizations deploy trustworthy software at scale.
Industry: Cybersecurity
Company Size: Medium (51 to 250 employees)
Growth: Scaleup
Funding: Series C
Headquarters: Seattle, United States
Founded: 2020
WebsiteLinkedIn