Senior Product Security Engineer

🕒 il y a 1 mois

🇺🇸 États-Unis – Télétravail

💵 $157 000 - $184 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Chainguard

Chainguard

51 - 200 employés

Fondée en 2021

🔐 Sécurité

☁️ SaaS

🔒 Cybersecurity

Security • SaaS • Cybersecurity

Chainguard est une entreprise spécialisée dans la création d’images de conteneur sécurisées afin de renforcer la sécurité logicielle et la conformité. Ses produits incluent des images de conteneur à faible, voire zéro, CVE, mises à jour quotidiennement pour respecter des référentiels de sécurité et de conformité tels que FedRAMP, NIST 800-53, PCI-DSS, SOC 2 et les CIS Benchmarks. Chainguard se concentre sur la réduction des vulnérabilités, l’automatisation de la conformité et le support des workflows de développement, sans compromettre l’innovation ni la productivité. L’entreprise sert un large éventail d’industries, y compris des secteurs fortement réglementés, en fournissant des images durcies qui atténuent les risques de la chaîne d’approvisionnement logicielle et renforcent la sécurité des applications.

Description

• Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production. • Systematically, consistently and automatically capture the risk exposure of Chainguards products. • Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign). • Proactively identify emerging customer security needs, and build solutions to meet these. • Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS. • Harden container images, Kubernetes cluster configurations, and cloud IAM postures — minimising attack surface across our product stack. • Define and drive adoption of baseline security standards: pod security standards, network policies, workload identity, secrets management. • Evaluate and operationalise CNAPP / CSPM tooling to maintain continuous visibility into cloud-native risk.

🎯 Exigences

• 5+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout. • Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code. • Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers). • Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub). • Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar). • Fluency with container security: image scanning, distroless/minimal base images, runtime security. • Experience with software supply chain security tooling and frameworks (Sigstore, SLSA, SBOM generation). • Solid understanding of OWASP, NIST, and cloud security frameworks and how to apply them pragmatically.

🏖️ Avantages

• Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs. • Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!). • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck. • ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset. • 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

Bitwarden

51 - 200

🔒 Cybersecurity

☁️ SaaS

🏢 Entreprise

IT Security Administrator responsible for managing security and IT-related requests. Bitwarden empowers users worldwide with identity security solutions.

🇺🇸 États-Unis – Télétravail

💵 $115 000 - $145 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Common Securitization Solutions

201 - 500

💸 Finance

💳 Fintech

🏠 Immobilier

Lead Security Engineer focusing on Vulnerability and Configuration Management at U.S. FinTech. Conducting assessments, providing mentoring, and ensuring compliance within infrastructure.

🗣️🇺🇸🇬🇧 Anglais requis

AWS

Cloud

Cyber Security

TCP/IP

🕒 il y a 1 mois

CrowdStrike

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🤖 Intelligence artificielle

Security Engineer assessing, designing, and implementing software supply chain security at CrowdStrike. Collaborating on security controls while managing cross-cutting initiatives.

🇺🇸 États-Unis – Télétravail

💵 $120 000 - $180 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

SimSpace

201 - 500

💼 Conseil

🎖️ Défense

🔒 Cybersecurity

Senior Network Security Engineer at SimSpace responsible for designing and maintaining network security infrastructure. Leading operational support and incident response efforts across corporate offices and data centers.

🇺🇸 États-Unis – Télétravail

💵 $135 000 - $205 000 / an

🔥 Financement dans la dernière année

💰 €39 000 000 Venture Round - SimSpace en 2025-10

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

DNS

Firewalls

Switching

TCP/IP

VMware

🕒 il y a 1 mois

GuidePoint Security

201 - 500

💼 Conseil

🏥 Santé

📦 Logistique

Strategic Security Advisor at GuidePoint Security developing consultative relationships with cybersecurity clients. Leveraging expertise to address security challenges and drive business outcomes in New York City.

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security