View All Jobs 116080

Senior Software Engineer (sustaining) - Remote Eligible

Automate CVE triage and remediation to improve container security resilience
India
Senior
5 days ago
Chainguard

Chainguard

A cybersecurity firm specializing in securing software supply chains through solutions like signing, verification, and container security.

Senior Software Engineer (Sustaining)

Ready to build the future instead of patching the past? Join the Chainguard Sustaining Team and shake up the world of open source with us!

Why Chainguard

We're the Safe Source for Open Source™—your backstage pass to where security, speed, and innovation come together. Every day, our team takes on the challenge of delivering minimal, zero-CVE container images and software artifacts that are always fresh, always resilient, and genuinely fun to work on. Picture this: your code becomes part of the backbone for global enterprises, powering the cloud-native era and freeing developers everywhere to swap “urgent patch needed” for “let’s deploy and chill.” Sound good? Keep reading.

The Mission: Make Containers Boringly Secure (And Gloriously Efficient!)

We don't just patch vulnerabilities. We build software that makes them extinct. As a key player on our sustaining engineering team, you will:

  • Own the queue: Triage, chase down, and smash CVE's, then dial up automation so those issues don't come back.
  • Play in our tech sandbox: Get hands-on with melange, apko, Wolfi OS, and the Chainguard Images catalog—our open-source foundation that strips out bloat (and bugs) from containers.
  • Code, create, and launch: Build new Linux packages (APKs) and container images, and watch your handiwork shine in real-world cloud applications.
  • Collaborate and celebrate: Sync early and often with project managers and teammates around the world. Shout out wins. Beat blockers. Keep momentum high.
  • Spread the knowledge: Mentor engineers globally, leave your mark on the community, and become someone's “you should talk to them.”
  • Level up quality: Bring your passion for testing and automation so we can ship with confidence—and maybe brag a little, too.

What Makes You Chainguardian Material?

  • Veteran skills: 4+ years writing code in DevOps or software development—bonus points for serious Linux packaging experience (APK, DEB, RPM), debugging mastery, and the stamina to run solo when it counts.
  • Containers are your jam: You don't just build and debug images—you think in them.
  • Kubernetes flair: Deploy with plain manifests, Helm, or Kustomize. You're the one people call when everything “just stopped working.”
  • Terraform whiz: You create modules like LEGO—reusable, logical, and awesome.
  • Real programming chops: Fluent in at least one language (your Go, Python, C, or C++ memes always impress).
  • Crystal-clear communicator: English is no barrier. You know when to ask, when to inform, and when to celebrate.
  • Not another cloud admin: We're all about DevOps tools for build and test, not wrangling infrastructure.

Bonus Moves That Wow Us

  • You're a familiar face in the open-source crowd or a rising community leader.
  • You have hands-on experience with vulnerability management and remediation.
  • You geek out over distroless containers and supply chain security.

Dig Deeper Into Our World

Curious about the real work? Explore Chainguard Academy for hands-on tutorials, debug strategies, and deep dives into supply chain security—plus stories from dev teams who discovered they can spend less time patching and more time building.

Hungry for Impact? Let's Chat!

If “secure by default” excites you (instead of putting you to sleep) and you want to swap daily patches for daily progress… we're ready for you. Step up, apply, and help us build the software supply chain everyone else wishes they had.

Chainguard: Because your talent shouldn't be wasted fighting yesterday's bugs—let's build a safer, shinier tomorrow.

+ Show Original Job Post
























Senior Software Engineer (sustaining) - Remote Eligible
India
Engineering
About Chainguard
A cybersecurity firm specializing in securing software supply chains through solutions like signing, verification, and container security.