or apply directly on Chainguard's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 55 days Chainguard's roles stay open a median of 51 days
- Reposted
- No
- Salary listed
- No 5% of Chainguard's roles list one
- Ghost-job risk at Chainguard
- high 53 stale, 1 reposted of 83 open
- Hiring momentum
- 137 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-28
Measured from postings appearing on and disappearing from Chainguard's own greenhouse board since 2026-08-03. Full hiring picture for Chainguard.
About this role
As a Senior Product Security Engineer at Chainguard, you will be responsible for designing, building, and maintaining secure CI/CD pipelines while ensuring software supply chain security. You will also lead security architecture reviews for Kubernetes workloads on GCP and AWS, hardening container images and cloud configurations. The role emphasizes proactive identification of security needs and the implementation of security standards across the product stack.
- benefits
- 3/5
- freshness
- 1/5
- career value
- 5/5
- role clarity
- 5/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Chainguard as an employer.
What you need
- 5+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout
- Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code
- Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers)
- Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub)
- Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar)
- Fluency with container security: image scanning, distroless/minimal base images, runtime security
Nice to have
- Familiarity with Chainguard Images or other minimal/hardened container base image ecosystems
- Experience with policy-as-code tools (OPA, Kyverno, Conftest)
- Contributions to open source security projects
- Background in security research or offensive security (bug bounty, CTF, penetration testing)
What you get
- Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs
- Our Approach to Equity: Receive stock options upon hire and promotion, with participation in secondary offerings and 10 years to exercise options
- 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents
- ∞ Flexible Time Off: Take the time you need to recharge and reset
- 18 Weeks Paid Parental Leave: 18 weeks for birthing parents and 12 weeks for non-birthing parents, with flexible usage
Worth weighing
- No salary listed
- The role requires a strong technical background with a focus on security, which may not appeal to those looking for a broader product management role
- Candidates should be comfortable with a remote-first culture and flexible work arrangements
Summarised from Chainguard's posting. Read the full original.
Listed by Chainguard on their greenhouse job board, last confirmed open on 2026-09-28. PitchMeAI is not the employer.
More roles at Chainguard
- Senior Product Security EngineerUnited States - Remote
- Senior Product Security EngineerUnited Kingdom - Remote
- Staff Software Engineer (Repositories)United Kingdom - Remote
- Staff Software Engineer (Repositories)Canada - Remote
- Staff Software Engineer (Repositories)United States - Remote
- Staff Vulnerability Management EngineerCanada - Remote
- Partner Sales EngineerFrance - Remote; Germany - Remote
- Senior Customer Success Manager - GermanyGermany - Remote