Making the software supply chain secure by default.
Staff Product Security Engineer
Location
United States
Posted
23 days ago
Salary
$17K - $231K / year
Seniority
Lead
Job Description
Staff Product Security Engineer
Chainguard
• Build & Harden Secure Pipelines • Design, build, and maintain secure CI/CD pipelines with security gates that catch issues before they reach production. • Systematically, consistently and automatically capture the risk exposure of Chainguards products. • Implement and enforce software supply chain security controls: signed artifacts, SBOMs, provenance attestation (SLSA, Sigstore / Cosign). • Proactively identify emerging customer security needs, and build solutions to meet these. • Cloud-Native Product Hardening • Lead security architecture reviews and threat models for Kubernetes-based workloads running on GCP and AWS. • Harden container images, Kubernetes cluster configurations, and cloud IAM postures — minimising attack surface across our product stack. • Define and drive adoption of baseline security standards: pod security standards, network policies, workload identity, secrets management. • Evaluate and operationalise CNAPP / CSPM tooling to maintain continuous visibility into cloud-native risk.
Job Requirements
- 7+ years in software engineering, security engineering, or a combined role with meaningful hands-on security responsibility throughout.
- Strong proficiency in Go or Python, with the ability to write, review, and debug production-quality code.
- Deep, hands-on experience with Kubernetes in production (cluster hardening, RBAC, network policies, admission controllers).
- Practical expertise with GCP and/or AWS: IAM, workload identity, secrets management, security services (e.g., GCP Security Command Center, AWS Security Hub).
- Proven track record designing and securing CI/CD pipelines (GitHub Actions, Cloud Build, Tekton, or similar).
- Fluency with container security: image scanning, distroless/minimal base images, runtime security.
- Experience with software supply chain security tooling and frameworks (Sigstore, SLSA, SBOM generation).
- Solid understanding of OWASP, NIST, and cloud security frameworks and how to apply them pragmatically.
Benefits
- Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs.
- Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!).
- 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck.
- ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset.
- 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate a culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you. About the Role: The Falcon Complete Security Advisor works within a team of advisors focused on overall health and security posture of all Falcon Complete customers. The ideal candidate will demonstrate a combination of technical, security, and customer management skills aimed at guiding customers towards a successful and secure experience with Falcon Complete. Under the direction of leadership, this role will execute daily tasks to ensure Falcon Complete can achieve its mission to stop breaches. What You'll Do: - Assess customer’s Falcon environment and ensure alignment with Falcon Complete standards. - Provide Falcon Complete customers with recommendations that align to improved security. - Create and recommend remediation for components of CrowdStrike products that may lead to improved security posture. - Contact customers directly upon identification of misalignment with Falcon Complete standards. - Document, update, and resolve all customer related issues in accordance with established procedures and SLAs. - Develop and provide customers with service reports and stats as requested. - Partner with internal teams to ensure customer satisfaction. - Liaise with support team to help troubleshoot and coordinate efforts to resolve technical issues. What You'll Need: - 3+ years in Cybersecurity focused role. - Customer empathy and ability to guide customers towards desired outcome. - Excellent customer-facing communication skills including verbal and written. - Partner with CrowdStrike teams to troubleshoot and resolve customer issues. - Adept in Windows, Linux, and MAC operating systems. - Experience or demonstrated knowledge of threat detection and incident response. - Bachelor's degree in Technology and/or Cybersecurity or relevant experience. - Cybersecurity certifications from reputable organizations such as SANS, ISC2 or equivalent. - US Citizenship or Green Card Holder Bonus Points: - Incident Management and CSIRT operation - Change Management - Malicious Code: Detection and Response - Audit, Logging, and Monitoring Controls (SIEM, UEBA, MDR/XDR). - Intrusion Detection and Response - Experience working with complex, sophisticated clients - Strong analytical capabilities and a desire to learn new things - Able to work across multiple teams to resolve customer issues and requests - Demonstrated experience as a security advisor or consultant - Knowledge of the following frameworks: ISO 27001/2, NIST Cyber Security Framework, CIS Critical Security, PCI DSS, Cloud Controls Matrix and MITRE Att&ck a plus. #LI-RC2 #LI-Remote This role may require the candidate to periodically undergo and pass alcohol and/or drug test(s) during the course of employment.Benefits of Working at CrowdStrike: - Market leader in compensation and equity awards - Comprehensive physical and mental wellness programs - Competitive vacation and holidays for recharge - Paid parental and adoption leaves - Professional development opportunities for all employees regardless of level or role - Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections - Vibrant office culture with world class amenities - Great Place to Work Certified™ across the globe CrowdStrike is proud to be an equal opportunity employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. We support veterans and individuals with disabilities through our affirmative action program. CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance. Find out more about your rights as an applicant. CrowdStrike participates in the E-Verify program. Notice of E-Verify Participation Right to Work CrowdStrike, Inc. is committed to fair and equitable compensation practices. Placement within the pay range is dependent on a variety of factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location. The base salary range for this position for all U.S. candidates is $100,000 - $155,000 per year, with eligibility for bonuses, equity grants and a comprehensive benefits package that includes health insurance, 401k and paid time off.For detailed information about the U.S. benefits package, please click here. Expected Close Date of Job Posting is:07-06-2026
• Assess customer’s Falcon environment and ensure alignment with Falcon Complete standards. • Provide Falcon Complete customers with recommendations that align to improved security. • Create and recommend remediation for components of CrowdStrike products that may lead to improved security posture. • Contact customers directly upon identification of misalignment with Falcon Complete standards. • Document, update, and resolve all customer related issues in accordance with established procedures and SLAs. • Develop and provide customers with service reports and stats as requested. • Partner with internal teams to ensure customer satisfaction. • Liaise with support team to help troubleshoot and coordinate efforts to resolve technical issues.
• Provide leadership for engineering and operations teams responsible for enterprise load balancing, traffic management and gateway services, and edge integrations • Own the strategy, roadmap, and operational performance of Secure Edge platforms enabling resilient, hardened connectivity • Ensure high availability, performance, and resiliency of services governing enterprise traffic and user access across on-premises and cloud environments • Drive modernization initiatives, including on-premises standardization, optimization of cloud-delivered global traffic services, and integration of native cloud gateways • Establish and maintain consistent policies, standards, and architectural patterns across corporate and subsidiary environments • Oversee operational metrics, service health monitoring, incident response, and continuous improvement efforts • Manage budgets and resource allocation across associates, contractors, and supporting services • Develop and mentor senior technical leaders while building and sustaining high-performing engineering teams
Information Security Officer
R&C Request GmbHR&C Request GmbH Matching people since the last decade. Now with a new vision for 2025.
• Aufbau des Risikomanagements nach DORA-Vorgaben • Gestaltung von Sicherheitsrichtlinien für SaaS-Lösungen • Operative Umsetzung von IT-Sicherheitskonzepten im Team • Koordination externer Audits und Schnittstelle zur Geschäftsführung



