Job Closed

This listing is no longer active.

Chainguard logo
Chainguard

Making the software supply chain secure by default.

Security Engineer, Governance and Trust

Security EngineerSecurity EngineerFull TimeRemoteJuniorTeam 51-200Since 2021H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

66 days ago

Salary

0

Seniority

Junior

Job Description

Security Engineer, Governance and Trust

Chainguard

• Design and wire up repositories in Git/GitHub for controls, assets, and risk scenarios so they’re versioned, reviewable, and automation-friendly. • Build ingest & ETL pipelines into a trust data lake (e.g., BigQuery) to pull in signals from systems across Chainguard. • Automate control evidence collection. • Productionize a Python risk engine, turning a working prototype into something reliable, observable, and maintainable. • Use Python, Bash, and SQL to wrangle data, stitch systems together, and eliminate repetitive work. • Partner with engineering teams to make governance and trust part of the platform. • Lean on and extend AI tooling (including orchestration frameworks like LangChain or LangGraph) to speed up analysis, data work, and automation. • Contribute to a remote-first, low-ego team culture where feedback flows freely and we optimize for outcomes, not theatrics.

Job Requirements

  • 1–3 years of experience in a relevant area: data engineering, analytics, security engineering, SRE, or similar hands-on technical role.
  • Comfortable with Git/GitHub and modern software workflows (branches, PRs, code review, CI, etc.).
  • Practical experience with:
  • Python for scripting and small tools.
  • Bash or similar shell scripting.
  • SQL for querying and joining data (nothing exotic—solid fundamentals go a long way).
  • Some exposure to data wrangling and ETL concepts (pipelines, schemas, making messy data usable).
  • A critical, analytical mindset: you care about the “why,” not just the “what,” and you’re comfortable zooming from big picture into the weeds.
  • Genuine curiosity and learning mindset: you like picking up new tools and patterns, especially around security, risk, and data.
  • Strong collaboration and communication skills in a remote setting: clear writing, proactive updates, low ego.
  • Comfort using AI tools (ChatGPT, Claude, etc.) day-to-day, and excitement about orchestrating them into real workflows over time.
  • Nice-to-haves (not hard requirements): Experience with BigQuery or another columnar data warehouse.
  • Familiarity with statistics and probability, especially applied to risk or uncertainty.
  • Prior work in a remote-first company.

Benefits

  • Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs.
  • Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!).
  • 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck.
  • ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset.
  • 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.

Related Categories

Related Job Pages

More Security Engineer Jobs

ReadySecGo logo

Working Student in IT Security, Compliance & Business Building

ReadySecGo

InfoSec Simplified & Compliance without Complexity for regulated tech providers #ISO27001 #SOC2 #BSI C5 #NIS-2

Part TimeRemoteTeam 1-10Since 2025H1B No Sponsor

• Security & Venture Building: Pilot and scale new service components and business models. • Create and structure content (website, pitch decks, templates, trainings, security concepts). • Research tools, methods and commercial aspects in IT security, SaaS & GRC (Governance, Risk & Compliance). • Contribute to client projects, sales materials and product development. • Identify ideas, take ownership and implement them visibly.

Germany
€18 / hour
Job Closed
World Wide Technology Healthcare Solutions logo

Director - Microsoft Security Solution Architect

World Wide Technology Healthcare Solutions

Founded in 1990, World Wide Technology (WWT) is a global systems integrator with $13.4 billion in annual revenue that provides digital strategy, innovative technology and supply chain solutions to large public and private organizations.

Full TimeRemoteSince 1990H1B No Sponsor

Role Description As a Director, Security Solution Architect, focused on Microsoft Security within the Global Security Solutions group, you will provide leadership in shaping and delivering comprehensive Microsoft Security solutions. You will help identify, develop, and close new business opportunities by leveraging competitive intelligence, defining business requirements, building cost and pricing estimates, and architecting solutions across business and technology services within the Microsoft ecosystem. - Collaborate and Consult – Guide clients through adoption and optimization of Microsoft Security capabilities, serving as a trusted advisor to executives and technical stakeholders. - Maximize Account Engagement – Partner with WWT account teams and sales organizations to qualify and close opportunities. - Shape Solutions across multiple Consulting areas and Industries – Create and iterate on solutions that leverage the best of WWT and meet our client's business objectives. - Build Program Models – Develop cost estimates and financial models. - Create Compelling Proposals – Shape, scope, and solution complex client opportunities by translating business, regulatory, and operational requirements into actionable architectures and roadmaps. - Deliver High-Quality Contracts – Draft and deliver high-quality statements of work that clearly articulate the definition and delivery of the project while minimizing delivery and contractual risk to WWT. Qualifications - Minimum 8-10 years of experience at a management consulting firm, or in a complex service role within a major technology firm, or a consultative sales role for a complex solution/product company. - Proven ability to translate complex business, compliance, and regulatory requirements into practical, scalable security architectures. - Strong background in pre-sales or solutioning, including shaping opportunities, developing proposals, and constructing cost and pricing models. - Demonstrated success engaging with senior client stakeholders, including CISO, CIO, and risk leaders, with the ability to articulate business value clearly and non-technically. - Experience leading multidisciplinary teams through the full lifecycle of solution development, from strategy through delivery. - Strong understanding of modern identity, data protection, governance, and cloud security concepts across enterprise environments. - Expert proficiency in financial modeling, budgeting, and associated metrics. - High proficiency at collaborating, managing conflicting interests, and dealing with ambiguity. - Proven ability to successfully support multiple projects and project teams simultaneously. - Strong communication skills: able to create compelling presentations to support concepts and solutions, write effective emails, and persuasively discuss strategy with senior executives. - Strong leadership qualities: able to have "presence" in senior exec client settings; capable of gaining the trust of customers; able to lead WWT team within the account. - Assertive, collaborative, and self-starter with emotional intelligence as well as the capacity to learn and synthesize new information to provide customers and the WWT account team with valuable insights. Requirements - Proven experience architecting and delivering enterprise security solutions using Microsoft Purview & Microsoft Entra (Azure AD). - Strong understanding of Zero Trust security principles, conditional access, identity governance, and threat detection/response using Microsoft Sentinel. - Ability to define and implement security policies and compliance controls across global enterprise environments. - Preferred: Microsoft security certifications such as SC-100, SC-200, or MS-500 (or equivalent hands-on experience). Benefits - Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program. - Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement. - Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement. - Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program.

United States
$225K - $235K / year
CrowdSec logo

Sales Account Executive – Cybersecurity

CrowdSec

CrowdSec is a CTI tool leveraging crowdsourced data to identify and block malevolent IPs in real time worldwide.

Full TimeRemoteTeam 11-50H1B No Sponsor

• Work with the Sales team to help them scale and create new opportunities • Interact with potential leads and convert them to customers • Collaborate with BDRs, presales, Marketing, and Support teams to ensure a pleasant customer journey

France
Peraton Corporation logo

Information System Security Officer (ISSO)

Peraton Corporation

Peraton Corporation, a national security company headquartered in Herndon, Virginia, supplies solutions for mission-critical programs and systems. Founded in 2017, Peraton's missio

Responsibilities Peraton is seeking an Information Systems Security Officer (ISSO) to join our team. The Information System Security Officer (ISSO) is part of the PERATON DHS’ Security team and plays a Cybersecurity operational compliance role within the Citizen Security and Public Services Sector (CS&PS). The position is responsible for performing as a named ISSO for a Government System and assisting other ISSOs with end-to-end Governance Risk and Compliance (GRC) functions that entails security control implementation, continuous monitoring, and federal Assessment and Authorization (A&A) activities. Day to Day Work Responsibilities: - Works closely under the supervision of Cybersecurity Manager and with other security personnel within Peraton CS&PS Sector to ensure operational security measures are implemented. - Assesses and mitigates system security risks; determines and analyzes security requirements for implementation and testing. - Reviews and continuously monitors implemented security controls. - Creates and maintains security checklists, templates, and other tools to aid in the A&A process. - Performs security control assessment using Agency guidelines/NIST guidance and as per continuous monitoring requirements. - Performs risk analyses to determine and recommend essential safeguards. - Proactively reviews Vulnerability Scans (Nessus, ACAS, We-App, etc.) and recommends compensating controls. - Prepares supporting materials for the security authorization package in accordance with the client contractual requirements. - Develops core documents such as System Security Plan, Contingency Plan, Incident Response Plan, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, Configuration Management Plan, etc. - Maintains client-specific Plan of Action and Milestones (POA&Ms) and supports remediation activities using Information Assurance (IA) and Risk Management tools such as CSAM, eMASS, etc. - Maintains an inventory of hardware and software for the information system. - Develops, tests and trains on Contingency and Incident Response planning. - Experience working with the National Institute of Standards National Institute of Standards and Technology (NIST) and Federal Information Security Management Act (FISMA) requirements and reporting. - Experience in managing security Assessment and Authorization activities utilizing common control frameworks. - Experience with risk mitigation and selecting or designing appropriate security controls for implementation. - Experience applying cloud security concepts, requirements, design development, implementation, and integration for existing and new technology product offerings. - Experience with performing security risk and compliance activities in FedRAMP cloud-enabled environment (e.g., Microsoft Azure, Amazon AWS) - Experience in coordinating, monitoring and tracking security activities across multiple organizations. - Experience in managing security posture of General Support Systems (GSS) and Major Application system(s), working with engineering/Operation teams to remediate, and communicating system-level risks to the stakeholders. The ISSO operates as a trusted advisor in the organization, working with senior management and helps to understand operational issues and plans the next steps in collaboration with Cybersecurity Manager from an information security viewpoint. The candidate will be able to demonstrate industry expertise and thorough understanding of security governance, risk and compliance domain. This position requires the ability to interact and influence at an organizational level to carry out governance, risk and compliance activities. Qualifications Basic Qualifications: - US Citizenship required - Must be able to be pass US Government Clearance processes – DHS Public Trust with EOD and Secret or higher clearance - Bachelor’s degree in a technical field and 8 years experience or high school diploma/equivalent and 12 years experience - Good understanding of computer network security technologies used in the industry and related security configurations (e.g., DISA STIGs, CIS Benchmarks and settings) - Knowledge of the security countermeasures and overall RMF and NIST compliance guidelines - Must have the ability to influence system stakeholders in the execution of security and compliance requirements - CISSP certification Preferred Qualifications: - Excellent communication skills - Ability to work effectively in diverse, multi-national and virtual environments - Self-motivated and tenacious and demonstrates sound judgment and integrity - Experience of working with Federal Information Processing (FIPS), FISMA, FedRAMP and other Cyber Security related laws, regulations and directives - Experience of presenting at client meetings - Experience of translating contractual security requirements to deliverables Knowledge of Federal Government Security, industry and market trends and CS&PS business and offerings: - Understands federal security and regulations and DHS’ Security Policy and has in-depth knowledge of DHS’ Security Policy 4300a Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure. Target Salary Range $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

United States
$104K - $166K / year
Job Closed