Chainguard

Senior Product Security Engineer

Chainguard · United States - Remote

Posted about 2 months ago

or apply directly on Chainguard's site. We never take the application ourselves.

Is this posting real?

This role has been open
55 days
Chainguard's roles stay open a median of 51 days
Reposted
No
Salary listed
No
5% of Chainguard's roles list one
Ghost-job risk at Chainguard
high
53 stale, 1 reposted of 83 open
Hiring momentum
137 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-09-28

Measured from postings appearing on and disappearing from Chainguard's own greenhouse board since 2026-08-03. Full hiring picture for Chainguard.

About this role

As a Senior Product Security Engineer at Chainguard, you will design, build, and maintain secure CI/CD pipelines, ensuring that security is integrated throughout the software development lifecycle. Your role will involve hardening cloud-native products, conducting security architecture reviews, and proactively addressing customer security needs. You will work closely with Kubernetes and cloud platforms like GCP and AWS to minimize attack surfaces and enforce security standards.

Our read on this posting2.8out of 5
benefits
3/5
freshness
1/5
career value
5/5
role clarity
5/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Chainguard as an employer.

What you need

  • 5+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout
  • Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code
  • Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers)
  • Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services
  • Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar)
  • Fluency with container security: image scanning, distroless/minimal base images, runtime security

Nice to have

  • Familiarity with Chainguard Images or other minimal/hardened container base image ecosystems
  • Experience with policy-as-code tools (OPA, Kyverno, Conftest)
  • Contributions to open source security projects
  • Background in security research or offensive security (bug bounty, CTF, penetration testing)

What you get

  • Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs
  • Our Approach to Equity: Receive stock options upon hire and promotion, with the option to participate in secondary offerings and 10 years to exercise your options
  • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents
  • ∞ Flexible Time Off: Take the time you need to recharge and reset
  • 18 Weeks Paid Parental Leave: 18 weeks for birthing parents and 12 weeks for non-birthing parents, with flexible usage options

Worth weighing

  • No salary listed, but a base salary range is provided
  • The role emphasizes a proactive approach to security, which may require a strong commitment to continuous learning and adaptation
  • The company values transparency and collaboration, which may influence team dynamics and decision-making processes

Summarised from Chainguard's posting. Read the full original.

Listed by Chainguard on their greenhouse job board, last confirmed open on 2026-09-28. PitchMeAI is not the employer.

More roles at Chainguard

All 83 open roles at Chainguard →