Manager, Engineering, Secure Build and SCS Services (East Coast Preferred)

Engineering Manager · Manager · Full Time · Remote

Canada · RemoteUSD 175k – 283k3d ago
Apply for this role

Opens Docker's application page

Role

What you'll do.

Lead Docker's critical secure software supply chain portfolio as Engineering Manager for Secure Build and SCS Services. This two-team leadership role combines responsibility for Docker Build Cloud infrastructure, trusted build capabilities, and supply-chain security services used by millions of developers. You'll guide teams across distributed systems, backend architecture, container technology, and production operations while shaping product strategy for Scout and Docker Hardened Images in a remote-first organization.

Responsibilities

  • Lead Two-Team Portfolio: Own delivery, team health, growth, performance and operational excellence across Secure Build and SCS Services teams. Turn two distinct roadmaps into a coherent portfolio plan with explicit priorities and capacity allocation, ensuring neither team becomes a permanent second priority through deliberate leadership coverage and attention management.
  • Drive Product Strategy and Roadmap Development: Partner with Product leadership to shape strategy and roadmaps for Docker Build Cloud, Docker Scout, Docker Hardened Images and the backend services connecting them. Collaborate with Staff and senior engineers to set technical direction while maintaining clear decision ownership with engineering leaders, balancing new product work with inherited systems and operational responsibilities.
  • Manage Technical Architecture and Interfaces: Own interfaces between teams including trust boundaries, service contracts, data quality standards, versioning protocols, operational ownership and customer-facing failure modes. Ensure each team's technical direction supports product, security, reliability and customer priorities through active participation in design reviews and architectural decisions across distributed systems, event-driven architectures and cloud infrastructure.
  • Lead Production Operations and Reliability: Oversee production infrastructure operations, on-call rotations, incident response procedures and observability frameworks. Drive reliability improvements informed by recurring operational pain, balance engineering capacity between new features and technical debt reduction, and establish sustainable SLOs that reflect customer impact and team bandwidth.
  • Develop Engineering Talent and Performance: Own engineer growth, performance management and difficult conversations directly. Hire and retain strong engineering talent at your technical seniority level or above, build succession depth within both teams, mentor senior engineers and drive career development through coaching, clear feedback and opportunities to lead broader technical initiatives.
  • Cross-Functional Stakeholder Alignment: Coordinate with Product, Design, Security, Docker Hardened Images Content, Registry, Hub, sales, support, commercial and legal teams. Shield both teams from organizational churn while maintaining visibility into strategic priorities, customer needs and regulatory requirements. Communicate decisions, progress and technical risks clearly across US and European time zones in a remote-first environment.
  • Establish Engineering Practices and Governance: Create sustainable operating cadences, leadership structures and decision-making processes that prevent dependency on constant managerial presence. Lead disciplined use of AI-assisted engineering tools while establishing clear mechanisms for code review, incident response, technical decision-making and capacity planning across polyglot technical domains.

Qualifications

What we look for.

Technical

  • Distributed Backend Systems Architecture

    Strong judgment in designing and evaluating distributed systems, including API design patterns, event-driven architectures, data consistency models and horizontal scaling approaches. Ability to reason about trade-offs in microservices, service mesh patterns and inter-service communication protocols.

  • Cloud-Native Infrastructure and Operations

    Hands-on understanding of cloud infrastructure, container orchestration, Kubernetes concepts and cloud-native database systems. Experience with production operations including monitoring, alerting, logging, observability tooling and incident management in scaled environments.

  • CI/CD and Build System Internals

    Working knowledge of CI/CD pipeline architecture, build system design, artifact workflows and containerization technologies. Understanding of Docker Build infrastructure, Docker Hub Automated Builds and comparable container build platforms. Familiarity with BuildKit, Buildx or equivalent build orchestration systems.

  • Software Supply Chain Security

    Current understanding of supply-chain security concepts including SLSA framework, provenance tracking, software bill of materials (SBOMs), vulnerability scanning workflows and artifact signing. Ability to reason about trust boundaries, attack vectors at build time and evidence requirements for secure artifact verification.

Education

  • Bachelor's Degree in Computer Science or Engineering

    Bachelor's degree in Computer Science, Engineering, or a related field. Equivalent practical experience in software engineering and team leadership can substitute for formal degree requirements.

Experience

  • Multi-Team Engineering Leadership

    5+ years actively managing high-performing engineering teams with meaningful responsibility across more than one team or distinct technical domain. Demonstrated ability to lead teams with separate roadmaps, production responsibilities and technical expertise areas simultaneously.

  • Backend and Infrastructure Engineering

    8+ years of professional hands-on software engineering experience in backend systems, infrastructure platforms, developer tooling or core platform development. Direct experience building and maintaining production systems at scale with operational responsibility.

  • Talent Development and Difficult Conversations

    Proven track record growing and retaining engineers at or above your own technical seniority level. Experience managing performance issues directly, conducting difficult conversations professionally and building succession depth. Evidence of leading teams you did not originally build.

  • Production Operations Leadership

    Experience leading teams that operate production infrastructure through on-call rotations, incident response procedures and operational excellence initiatives. Demonstrated ability to reduce recurring operational burden through targeted reliability improvements, capacity planning and technical investment.

  • Product Strategy and Roadmap Leadership

    Strong product judgment with evidence of shaping roadmaps collaboratively with Product teams rather than only receiving requirements. Experience prioritizing across competing roadmaps, operational load and stakeholder commitments with transparent capacity allocation and trade-off communication.

Skills

Required

  • Polyglot Backend Development

    Practical experience with multiple backend languages and comfortable learning new technical domains. Experience evaluating tradeoffs between languages and frameworks for different problem spaces.

  • Event-Driven Architecture Design

    Understanding of event streaming platforms, asynchronous processing patterns, event sourcing and eventual consistency models. Ability to evaluate data pipeline architectures and event-driven workflow designs.

  • Remote-First Leadership

    Proven ability to lead, communicate and build trust across distributed teams spanning multiple time zones. Strong written communication, clear async documentation and comfort with remote-first decision-making processes.

  • Technical Leadership Without Ownership

    Ability to participate substantively in design and code review across unfamiliar systems without being the deepest expert. Credible engagement in technical discussions while leaving decision ownership with engineers.

Preferred

  • Go Programming Language

    Nice to have

    Production experience with Go for backend services and systems programming. Evidence of becoming effective in Go-based codebases and understanding concurrency patterns.

  • Clojure or Functional Programming Paradigms

    Nice to have

    Experience with Clojure, Datomic or functional programming approaches. Ability to work effectively across imperative and functional language ecosystems in polyglot organizations.

  • Kafka and Event Streaming

    Nice to have

    Hands-on experience designing and operating Kafka-based event streaming platforms. Understanding of partition strategies, consumer groups, schema management and operational concerns at scale.

  • Distributed Data Systems

    Nice to have

    Experience with Spanner, managed distributed databases or comparable systems combining traditional consistency models with horizontal scalability. Understanding of versioning, multi-region deployment and operational patterns.

  • BuildKit and Container Build Technology

    Nice to have

    Familiarity with BuildKit internals, Buildx multi-platform builds, Docker build caching or comparable advanced build system concepts. Understanding of build security and isolation mechanisms.

  • Software Supply Chain Standards

    Nice to have

    Practical experience with SLSA, in-toto, SBOMs, VEX, Sigstore, cosign, provenance tracking or vulnerability scanning tools. Knowledge of OpenSSF initiatives and supply-chain security best practices.

  • Multi-Tenant Infrastructure Security

    Nice to have

    Experience building or operating multi-tenant systems with untrusted workload execution. Familiarity with sandboxing, microVMs, container security boundaries or network isolation mechanisms.

  • Legacy System Evolution

    Nice to have

    Demonstrated success evolving legacy systems while shipping new product capability. Experience navigating technical constraints and organizational pressures while modernizing inherited infrastructure.

Tech stack

Languages

GoClojure

Frameworks

Docker Build CloudDocker ScoutDocker Hardened Images

Databases

SpannerDatomic

Tools

KafkaBuildKitBuildxGitHub Actions

Other

OCI Image SpecificationSLSA FrameworkSigstore and CosignSoftware Bill of Materials (SBOM)

Compensation

Pay and benefits.

Base·USD 174,900 – 282,700

Equity·Stock options

Benefits

  • Remote-First Work Environment

    Work from home with dedicated offices in Seattle and Paris available for in-person collaboration. Flexible location independence across US and European time zones with company-provided infrastructure and support.

  • Generous Time Off and Wellness

    Comprehensive paid time off, quarterly Whaleness Days for rejuvenation and a designated company-wide end-of-year break. Supports work-life balance and prevents burnout in leadership roles with on-call responsibilities.

  • Home Office Setup and Technology Support

    Home office equipment stipend for workspace optimization plus $100 USD monthly technology stipend to maintain development equipment, software subscriptions and remote collaboration tools.

  • Learning and Professional Development

    Annual stipend for conferences, courses, technical certifications and continued learning. Supports staying current with distributed systems, security practices and leadership best practices.

  • Equity Compensation

    Equity stakes in Docker's long-term growth as a full-time employee. Direct financial participation in company success and platform adoption across millions of developers.

  • Comprehensive Health and Retirement Benefits

    Medical, dental, vision and retirement benefits varying by country. Family coverage, mental health support and financial planning resources included in comprehensive benefits package.

  • Parental Leave

    16 weeks of paid parental leave following six months of employment. Supports family planning and work-life integration for engineering leaders.

  • Equal Opportunity and Diversity Commitment

    Docker actively builds diverse teams reflecting broad backgrounds and perspectives. Commitment to inclusive hiring practices and equitable career development for all team members.

Full posting

Original listing.

About Docker

Docker has been one of the most loved brands in developer tooling, trusted by more than 20 million monthly users and over 20 billion container image pulls. From solo founders to the world's largest companies, developers rely on Docker to build, share, and run their applications across our suite of products including Docker Desktop, Docker Hub, and Docker Scout.

We are a globally distributed, remote-first team building the tools that define how software gets built and delivered. As AI agents redefine software development, Docker is at the center of that shift, providing the sandboxed environments, verified images, and secure infrastructure that make autonomous workflows trustworthy by default.

_______________________________________________________________________

Secure Build builds and operates the infrastructure behind Docker's container builds. The team owns Docker Build Cloud and Docker Hub Automated Builds while developing the next generation of trusted build and CI capabilities. Its direction is to make Docker the trusted place CI runs: isolated execution, brokered access to secrets and networks, and verifiable evidence of what each build or test job did. The work spans Go services, container and build technology, cloud infrastructure, sandboxing and software supply-chain security, alongside the operational responsibility for production systems customers already depend on.

SCS Services builds the backend systems and product capabilities that help developers understand, secure and ship software with confidence. The team powers important parts of Docker Scout and Docker Hardened Images, including the services and workflows that turn supply-chain data into useful developer, customer and agent experiences. Its estate is deliberately polyglot, with Clojure and Go services, event-driven workflows, Kafka, legacy Datomic components and newer Spanner-backed services. It also supports the customer journey around discovering, assessing, subscribing to and managing hardened artefacts.

We are looking for one Engineering Manager to lead both teams. Together they sit at the centre of Docker's secure software supply-chain work: one creates trusted build outcomes, while the other turns build, artifact and dependency data into services and experiences used across Scout and Docker Hardened Images. This is a two-team leadership role with separate roadmaps, production responsibilities and technical domains. The teams should deliver independently, with explicit contracts and joined-up ownership where their services connect.

You will own the health, delivery and growth of both teams and make the trade-offs that keep them effective as a portfolio. You will not be expected to be the deepest expert in every language or domain. You will need enough technical breadth and current engineering judgement to engage credibly in designs, reviews and incidents across both teams, set direction with strong senior engineers, and recognise when the right answer is to create space for their expertise.

The kind of person we're looking for

The successful candidate leads first. They are an experienced engineering manager who can inherit two capable teams, earn trust quickly and help each become a high-performing, value-delivering part of the wider Docker organisation. They are deliberate about where they spend their attention, protect both teams from becoming the second priority, and make portfolio trade-offs visible rather than allowing urgency, proximity or the loudest stakeholder to decide.

They stay close to the technical work without trying to own every technical decision. They can hold a substantive conversation about distributed backend systems, event and data pipelines, build and CI infrastructure, trust boundaries and production operations. They are active in design and review, useful during incidents and willing to get hands-on where that moves the work forward. The balance still tilts strongly to leadership, coaching, delivery and organisational judgement.

They care about security as a product and engineering property, not only as compliance. They understand how modern attacks exploit identity, secrets, dependencies and build systems, and they can reason about the evidence customers need to trust an artefact or workflow. They lead through judgement, clarity and unblocking rather than ceremony for its own sake. Above all, they grow the engineers around them and help both teams ship outcomes developers and enterprises can rely on.

Responsibilities:

  • Lead Secure Build and SCS Services, owning delivery, team health, growth, performance and operational excellence across both.

  • Turn two changing roadmaps into a coherent portfolio plan with explicit priorities, capacity and trade-offs, and create leadership coverage so neither team becomes the permanent second priority.

  • Partner with Product to shape strategy and roadmaps for secure build, Docker Scout, Docker Hardened Images and the services that connect them.

  • Stay close to the technical work through design and code review, incident response and selective hands-on contribution where it adds leverage.

  • Ensure each team's technical direction supports product, security, reliability and customer priorities, setting it collaboratively with Staff and senior engineers while leaving clear decision ownership with them.

  • Own the interfaces between the teams, including trust boundaries, contracts, data quality, versioning, operational ownership and customer-facing failure modes.

  • Balance new product work with inherited systems and on-call, and invest in reliability improvements driven by recurring operational pain.

  • Own engineer growth and performance, handle difficult conversations directly, hire and retain strong people and build succession depth within both teams.

  • Align Product, Design, Security, DHI Content, Registry, Hub, sales, support, commercial and legal partners while shielding the teams from churn.

  • Lead disciplined use of AI-assisted engineering and communicate decisions, risks and progress clearly across UK and US working hours.

Qualifications

  • Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience

  • 5+ years managing high-performing engineering teams, with meaningful responsibility across more than one team or distinct technical domain.

  • 8+ years of professional, hands-on software engineering experience in backend, infrastructure, platform or developer tooling.

  • Experience leading, growing and retaining engineers at or above your own technical seniority, including teams you did not build and difficult performance conversations.

  • A leader-first operating model, with current enough technical judgement to participate in design and review across unfamiliar systems without needing to be the best engineer in the room.

  • Experience prioritising across competing roadmaps, operational load and stakeholder commitments, with clear mechanisms for allocating attention and capacity.

  • Strong backend and distributed-systems judgement, including APIs, event-driven architectures, data stores, cloud-native infrastructure and production operations.

  • Understanding of CI or build-system internals, containers and artefact workflows, plus a strong interest in software supply-chain security and trust boundaries.

  • Experience leading teams that operate production infrastructure through on-call, incident response, observability, SLOs and the work required to reduce recurring operational load.

  • Strong product judgement and evidence of shaping roadmaps with Product rather than only receiving requirements.

  • Clear written and verbal communication, strong cross-functional influence, customer closeness and comfort leading a remote-first organisation across European and US time zones.

Helpful, but Not Required

  • Experience with Go, Clojure or both, and evidence of becoming effective across a polyglot estate.

  • Experience with Kafka, Spanner, Datomic or comparable event-streaming and distributed-data systems.

  • Experience with OCI, BuildKit, Buildx, GitHub Actions or comparable build and CI platforms.

  • Experience with sandboxing, microVMs, untrusted workload execution or multi-tenant infrastructure.

  • Experience with SLSA, in-toto, SBOMs, VEX, Sigstore, cosign, provenance, signing or vulnerability scanning.

  • Experience evolving legacy systems while shipping new capability for developer tools, security products, regulated customers or software-agent workflows.

What to expect

First 30 days

  • Build relationships with every engineer and the Product partners for both teams before changing structure, process or roadmap.

  • Understand Secure Build's product direction, production estate and on-call load, including Docker Build Cloud and Docker Hub Automated Builds.

  • Understand the SCS Services products, customers, architecture and operational profile, and map the dependencies, trust boundaries and ownership lines between the teams.

First 90 days.

  • Own a coherent portfolio plan with both teams and Product, including explicit capacity for roadmap, reliability and cross-team work.

  • Establish a sustainable operating cadence and leadership coverage that prevents either team depending on your constant presence.

  • Agree ownership and escalation paths for shared services and failures, start one material improvement in each team and make progress and risk visible.

One year Outlook

  • Both teams deliver predictably against a portfolio that connects secure build, Scout and Docker Hardened Images outcomes without collapsing their distinct missions.

  • Secure Build has delivered material trusted-build or secure-CI capability and reduced operational risk in its inherited production systems.

  • SCS Services has delivered material customer outcomes, while both teams have sustainable on-call, clearer ownership and senior engineers leading broader work.

Docker considers visa sponsorship on a case-by-case basis based on business needs.

Compensation & Equity

Canada: CA$244,550 – CA$392,150 + equity

United States: $174,900 – $282,700 + equity

______________________________________________________________________

Posting Information

  • Open vacancy: This posting is for an existing open role.

  • AI in hiring: Docker may use AI-assisted tools during our recruiting process.

  • Interview recordings: Candidates will be invited to opt in to interview recordings to support interviewer calibration and consistent evaluations. Recordings are optional and require explicit consent.

______________________________________________________________________

Perks & Benefits

  • Remote-first by design – Work from your home, with offices in Seattle and Paris for connection and collaboration.

  • Flexibility that fits your life – We trust you to manage your schedule while delivering great work.

  • Time to recharge – Generous PTO, designated quarterly Whaleness Days, and a designated end-of-year Whaleness break.

  • Home office support – Set up your workspace for comfort and success.

  • Technology stipend – Equivalent to US$100 net per month to help support your work.

  • Learning & development – Annual stipend for conferences, courses, certifications, and continued learning.

  • Parental leave – 16 weeks of paid parental leave after six months of employment.

  • Equity for all full-time employees – Share in Docker's long-term success as we continue to grow.

  • Comprehensive benefits – Medical, retirement, and paid holidays vary by country.

  • Docker swag – Because representing the whale never gets old.

Docker is proud to be an equal opportunity employer. We are committed to building a team that reflects a broad range of backgrounds, experiences, and perspectives. We believe diverse teams build better products, make better decisions, and better serve our global community.

#LI-REMOTE

Redirects to Docker's application page.

Other roles

More at Docker.

View all 20 roles