Chainguard

Senior Product Security Engineer

Chainguard · Canada - Remote

Posted about 2 months ago

or apply directly on Chainguard's site. We never take the application ourselves.

Is this posting real?

This role has been open
55 days
Chainguard's roles stay open a median of 51 days
Reposted
No
Salary listed
No
5% of Chainguard's roles list one
Ghost-job risk at Chainguard
high
53 stale, 1 reposted of 83 open
Hiring momentum
137 roles opened in the last 90 days
↑ up vs. the prior 90 days
Last confirmed on the employer's board
2026-09-28

Measured from postings appearing on and disappearing from Chainguard's own greenhouse board since 2026-08-03. Full hiring picture for Chainguard.

About this role

As a Senior Product Security Engineer at Chainguard, you will be responsible for designing, building, and maintaining secure CI/CD pipelines while ensuring software supply chain security. You will also lead security architecture reviews for Kubernetes workloads on GCP and AWS, hardening container images and cloud configurations. The role emphasizes proactive identification of security needs and the implementation of security standards across the product stack.

Our read on this posting2.8out of 5
benefits
3/5
freshness
1/5
career value
5/5
role clarity
5/5
pay transparency
0/5

Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Chainguard as an employer.

What you need

  • 5+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout
  • Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code
  • Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers)
  • Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub)
  • Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar)
  • Fluency with container security: image scanning, distroless/minimal base images, runtime security

Nice to have

  • Familiarity with Chainguard Images or other minimal/hardened container base image ecosystems
  • Experience with policy-as-code tools (OPA, Kyverno, Conftest)
  • Contributions to open source security projects
  • Background in security research or offensive security (bug bounty, CTF, penetration testing)

What you get

  • Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs
  • Our Approach to Equity: Receive stock options upon hire and promotion, with participation in secondary offerings and 10 years to exercise options
  • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents
  • ∞ Flexible Time Off: Take the time you need to recharge and reset
  • 18 Weeks Paid Parental Leave: 18 weeks for birthing parents and 12 weeks for non-birthing parents, with flexible usage

Worth weighing

  • No salary listed
  • The role requires a strong technical background with a focus on security, which may not appeal to those looking for a broader product management role
  • Candidates should be comfortable with a remote-first culture and flexible work arrangements

Summarised from Chainguard's posting. Read the full original.

Listed by Chainguard on their greenhouse job board, last confirmed open on 2026-09-28. PitchMeAI is not the employer.

More roles at Chainguard

All 83 open roles at Chainguard →