Senior Product Security Engineer

🕒 vor 3 Tagen

🇺🇸 Vereinigte Staaten – Remote

💵 $157.000 - $184.000 / Jahr

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Chainguard

Chainguard

51 - 200 Mitarbeiter

Gegründet 2021

🔐 Sicherheit

☁️ SaaS

🔒 Cybersecurity

Security • SaaS • Cybersecurity

Chainguard ist ein Unternehmen, das sich auf die Erstellung sicherer Container-Images spezialisiert, um Softwaresicherheit und Compliance zu erhöhen. Zum Portfolio gehören Low-to-Zero-CVE-Container-Images, die täglich aktualisiert werden, um Sicherheits- und Compliance-Standards einzuhalten, darunter: • FedRAMP • NIST 800-53 • PCI-DSS • SOC 2 • CIS Benchmarks Chainguard konzentriert sich darauf, Schwachstellen zu reduzieren, Compliance zu automatisieren und Entwicklungs-Workflows zu unterstützen – ohne Abstriche bei Innovation und Produktivität. Das Unternehmen bedient ein breites Branchenspektrum, einschließlich stark regulierter Sektoren, und stellt gehärtete Image-Lösungen bereit, um Risiken in der Software-Lieferkette zu mindern und die Anwendungssicherheit zu erhöhen.

Beschreibung

• Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production. • Systematically, consistently and automatically capture the risk exposure of Chainguards products. • Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign). • Proactively identify emerging customer security needs, and build solutions to meet these. • Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS. • Harden container images, Kubernetes cluster configurations, and cloud IAM postures — minimising attack surface across our product stack. • Define and drive adoption of baseline security standards: pod security standards, network policies, workload identity, secrets management. • Evaluate and operationalise CNAPP / CSPM tooling to maintain continuous visibility into cloud-native risk.

🎯 Anforderungen

• 5+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout. • Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code. • Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers). • Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub). • Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar). • Fluency with container security: image scanning, distroless/minimal base images, runtime security. • Experience with software supply chain security tooling and frameworks (Sigstore, SLSA, SBOM generation). • Solid understanding of OWASP, NIST, and cloud security frameworks and how to apply them pragmatically.

🏖️ Vorteile

• Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs. • Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!). • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck. • ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset. • 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 3 Tagen

Palo Alto Networks

10.000+ Mitarbeiter

🔒 Cybersecurity

🏢 Unternehmen

Network Security Lab Architect at Palo Alto Networks managing cloud security initiatives. Design lab environments leveraging AI, while collaborating with global technical teams.

🇺🇸 Vereinigte Staaten – Remote

💵 $186.000 - $255.000 / Jahr

💰 €1.000.000 Seed Round - Morta Security im 2013-02

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 3 Tagen

eSimplicity

51 - 200

⚕️ Krankenversicherung

📡 Telekommunikation

🤖 Künstliche Intelligenz

Senior Security Engineer at eSimplicity implementing security measures in federal cloud platforms. Collaborating with cross-functional teams to ensure compliance and enhance security protocols in the cloud.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 3 Tagen

ZBeta, Inc.

51 - 200

🔐 Sicherheit

🏢 Unternehmen

Project Manager managing security design and installation projects throughout North America at ZBeta. Overseeing multiple projects, ensuring compliance with client requirements and standards.

🇺🇸 Vereinigte Staaten – Remote

💵 $100.000 - $115.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 3 Tagen

Vaultes

51 - 200

Cybersecurity Assessor conducting security control assessments for commercial and government customers. Collaborating on all aspects of cybersecurity with client-facing responsibilities.

🇺🇸 Vereinigte Staaten – Remote

💵 $90.000 - $115.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 3 Tagen

Aqua Finance, Inc.

201 - 500

👥 B2C

💸 Finanzen

🛍️ eCommerce

Information Security Manager overseeing daily security operations and managing Security Analysts in a flexible environment. Collaborating with multiple stakeholders to strengthen security posture.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich