<div class="content-intro"><p>Chainguard is the trusted source for open source.
By delivering hardened, secure, and production-ready builds of all the open source software engineers and AI agents rely on, Chainguard helps organizations build faster, stay compliant, and eliminate risk.
<br><br>Our customers include Fortune 500 enterprises and global industry leaders, including Anduril, Canva, Fortinet, Hewlett Packard Enterprise, OpenAI, Snap Inc.
, and Snowflake.
<br><br>Chainguard is venture-backed by leading investors, including Amplify, IVP, Kleiner Perkins, Lightspeed Venture Partners, Mantis VC, Redpoint Ventures, Sequoia Capital, and Spark Capital.
</p></div><h2><strong>Staff Product Security Engineer</strong></h2> <table> <tbody> <tr> <td> <p><strong>The role in a nutshell:</strong></p> <p>You are a deeply technical engineer who gets restless when pipelines aren't locked down.
This is an individual-contributor Staff role
That means technical leadership, cross-team influence, and owning hard problems.
</p> <p> <strong>What you’ll do:</strong></p> <p><strong>Build & Harden Secure Pipelines</strong></p> <ul> <li>Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production.
</li> <li>Systematically, consistently and automatically capture the risk exposure of Chainguards products.
</li> <li>Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign).
</li> <li>Proactively identify emerging customer security needs, and build solutions to meet these.
</li> </ul> <p><strong>Cloud-Native Product Hardening</strong></p> <ul> <li>Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS.
</li> <li>Harden container images, Kubernet.