Senior Product Security Engineer

🕒 il y a 2 mois

🇬🇧 Royaume-Uni – Télétravail

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

👻 Score fantôme 44%

infoinfo

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Chainguard

Chainguard

51 - 200 employés

Fondée en 2021

🔐 Sécurité

☁️ SaaS

🔒 Cybersecurity

Security • SaaS • Cybersecurity

Chainguard est une entreprise spécialisée dans la création d’images de conteneur sécurisées afin de renforcer la sécurité logicielle et la conformité. Ses produits incluent des images de conteneur à faible, voire zéro, CVE, mises à jour quotidiennement pour respecter des référentiels de sécurité et de conformité tels que FedRAMP, NIST 800-53, PCI-DSS, SOC 2 et les CIS Benchmarks. Chainguard se concentre sur la réduction des vulnérabilités, l’automatisation de la conformité et le support des workflows de développement, sans compromettre l’innovation ni la productivité. L’entreprise sert un large éventail d’industries, y compris des secteurs fortement réglementés, en fournissant des images durcies qui atténuent les risques de la chaîne d’approvisionnement logicielle et renforcent la sécurité des applications.

Description

• Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production. • Systematically, consistently and automatically capture the risk exposure of Chainguards products. • Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign). • Proactively identify emerging customer security needs, and build solutions to meet these. • Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS. • Harden container images, Kubernetes cluster configurations, and cloud IAM postures — minimise attack surface across our product stack. • Define and drive adoption of baseline security standards: pod security standards, network policies, workload identity, secrets management. • Evaluate and operationalise CNAPP / CSPM tooling to maintain continuous visibility into cloud-native risk.

🎯 Exigences

• 7+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout. • Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code. • Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers). • Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub). • Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar). • Fluency with container security: image scanning, distroless/minimal base images, runtime security. • Experience with software supply chain security tooling and frameworks (Sigstore, SLSA, SBOM generation). • Solid understanding of OWASP, NIST, and cloud security frameworks and how to apply them pragmatically.

🏖️ Avantages

• Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs. • Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!). • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck. • ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset. • 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.

Postuler Maintenant

Emplois Similaires

🕒 il y a 2 mois

Cloud Software Group

10 000+ employés

Lead Product Specialist working with Cloud Software Group to deliver customer value through cloud solutions. Collaborating with technical teams to support and onboard clients in various cloud environments.

🇬🇧 Royaume-Uni – Télétravail

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 3 mois

Avanade

10 000+ employés

💼 Conseil

📦 Logistique

📣 Marketing

Digital Identity Architect transforming complex Digital Identity solutions at Avanade for clients. Involved in client delivery, pre-sales activities, and leveraging Microsoft Digital Identity capabilities.

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

🕒 il y a 3 mois

ElevenLabs

1 - 10

🤖 Intelligence artificielle

📱 Médias

🇬🇧 Royaume-Uni – Télétravail

💰 €19 000 000 Series A en 2023-06

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 3 mois

Project Eleven

1 - 10

💼 Conseil

🏥 Santé

₿ Crypto

Senior Security Engineer managing end-to-end security for product at Project Eleven, a quantum computing startup. Responsible for compliance, cryptographic protocols, and incident response.

🇬🇧 Royaume-Uni – Télétravail

💰 €6 000 000 Seed en 2025-07

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 3 mois

Gartner

10 000+ employés

📣 Marketing

📦 Logistique

🏥 Santé

Senior Director Analyst guiding leaders of AI cybersecurity at Gartner, delivering actionable insights for technology transformation.

🗣️🇺🇸🇬🇧 Anglais requis