Перейти к основному содержимому
Chainguard
Chainguard

Principal Software Engineer (Libraries Platform)

УдалённоUnited Kingdom только
Опубликовано
Роль
Бэкенд
Опыт
Принципал
Зарплата не указана
Проверьте доступность

Доступно для: GB only. Укажите, откуда вы работаете, чтобы проверить доступность.

Коротко по делу

Principal engineer, 12+ yrs, building infrastructure for language ecosystems or developer platforms (build systems, package registries, CI/CD). Must have onboarded a new language ecosystem — .NET (NuGet), Go modules, or Rust (Cargo) — into an existing platform. Strong Go required, plus CI/CD, Kubernetes, Terraform. Remote, UK-based.

Ключевые навыки

Go

Обязательные навыки

CI/CDDocker / OCI containersKubernetesTerraformGitHub Actions/Argo/Tekton.NET (NuGet)/Go (modules)/Rust (Cargo)Go modulesCargo (Rust)

Желательные навыки

Software supply chain security background: SLSA, SBOMs, sigstore, provenance, attestations, secure-by-default packagingExperience with Linux distributions, packaging, and reproducible build systems (Alpine, Wolfi, Debian, Bazel, CMake, Ninja)Familiarity with AI/ML packaging and infra (PyTorch, TensorFlow) in cloud/Kubernetes environmentsExperience leading a platform through a step-change in automation maturity (e.g., remediation went from days to minutes)

Чем предстоит заниматься

  • Own the technical strategy for multi-ecosystem scaling — define architecture that lets the Libraries Platform onboard new language ecosystems (.NET, Go, Rust) without re-deriving core services per ecosystem: generalize package indexing, build orchestration, and metadata services to be ecosystem-agnostic where possible
  • Drive end-to-end remediation automation — lead redesign of CVE remediation workflows to close the loop from detection to verified, released fix with minimal manual intervention: rebuild triggering, SBOM and provenance regeneration, policy verification, and rollout across supported ecosystems
  • Push the frontier on novel patch generation — set direction for agentic/AI-driven systems that synthesize security fixes when no upstream patch exists, and design the guardrails (automated validation, regression testing, provenance, human checkpoints) that make machine-generated patches safe to ship
  • Set platform-wide technical direction spanning the package index, build/packaging pipelines, registry mirrors, and orchestration tooling at scale
  • Make foundational build vs. buy and sequencing calls for bringing .NET, Go, and Rust online, identifying what is novel per ecosystem and what can reuse existing platform primitives
  • Partner at the org level with Ecosystem teams (Java, JavaScript, Python/AI/ML, new-language leads), Platform, Delivery, Sustaining, and Security to align the platform roadmap with business risk and commitments
  • Raise the technical bar across the org: mentor Staff and Senior Engineers, drive design reviews for the biggest architectural bets, write the docs and RFCs that let other teams build correctly without you in the room
  • Own reliability and scalability at the platform level: define SLOs for the expanded remediation pipeline, lead incident response and postmortems for the most consequential failures
  • Get hands-on when it matters: dig into toolchain, compiler, and dependency-resolution problems specific to new ecosystems (e.g., NuGet, Go modules, Cargo) when they threaten pipeline reliability or timeline

Что требуется

  • 12+ years designing, building, and operating infrastructure for language ecosystems or developer platforms (build systems, package registries, or CI/CD serving widely-used libraries or services), with demonstrated Principal-level scope: setting technical direction across multiple teams
  • Direct experience standing up or significantly extending platform support for a language ecosystem — having onboarded a new toolchain/packaging model into an existing platform, ideally including .NET (NuGet), Go (modules), or Rust (Cargo)
  • Strong proficiency in Go, with judgment on when a new ecosystem's idioms should bend the platform and when the platform should hold its ground
  • Track record of automating away manual remediation steps, including judgment calls about where automation is safe and where a human checkpoint still matters
  • Deep background in CI/CD, agentic pipelines, cloud-native infrastructure, and IaC: containers (Docker/OCI, Kubernetes), Terraform, and pipeline tooling (GitHub Actions, Argo, Tekton, or equivalents), run at scale across heterogeneous ecosystems
  • Demonstrated ability to diagnose and resolve deep toolchain, compiler, and packaging failures across multiple ecosystems, and to turn one-off fixes into systemic prevention
  • Excellent written communication in a remote, distributed environment — Principal-level influence happens mostly through docs, RFCs, and review
  • A Principal ownership mindset: sets direction other engineers build against, comfortable making ecosystem-generalization calls with incomplete information, shapes roadmap and engineering culture

Преимущества

  • Flexible & Remote-First Culture: work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs
  • Stock options upon hire and promotion; can participate in secondary offerings and have 10 years to exercise options
  • 100% covered health, vision and dental insurance premiums for you and your dependents
  • Unlimited flexible time off
  • 18 weeks paid parental leave for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout the child's first year

Chainguard provides trusted open source artifacts for every layer of your modern software stack—containers, language libraries, and VM images.

Cyber Security (Open Source Software Delivery)Стартапchainguard.dev/
Зарплата не указана