Docker

Staff Supply Chain Security Engineer, Docker Hardened Images

Docker3 weeks ago
Location

Canada

Workplace

Remote

Type

Full Time

Salary

USD 166,500 – 269,500

Level

Staff

Role

Staff Supply Chain Security Engineer

Posted

May 27, 2026

Full TimeRemoteStaff

The role

Summary

Docker is seeking a Staff Supply Chain Security Engineer to drive technical direction for their Hardened Images (DHI) catalogue. The role focuses on creating security-hardened container images and Helm charts, working at the intersection of container security, Kubernetes ecosystems, and supply chain integrity for enterprise-grade deployments.

What you'll do

Technical Direction: Define conventions and architectural decisions for Docker Hardened Images catalogue
Image Maintenance: Author and maintain image definition files tracking upstream OSS releases
Security Strategy: Lead CVE triage and supply chain security posture across the catalogue
Test Infrastructure: Design and implement Go-based integration test frameworks for Kubernetes environments
Upstream Engagement: Represent Docker Hardened Images in upstream OSS communities
Mentorship: Review peers' work, provide technical guidance, and help engineers tackle complex challenges

What we look for

Technical

Container EcosystemComprehensive understanding of container and Kubernetes technologies
Security HardeningExpertise in implementing security best practices for container images
Test InfrastructureAbility to design and implement integration test frameworks

Education

Computer ScienceBachelor's degree in Computer Science, Engineering, or related field, or equivalent practical experience

Experience

Backend Engineering8+ years of production-grade backend engineering experience
Technical LeadershipDemonstrated ability to influence technical direction without direct management authority

Skills

Required skills

Container SecurityDeep expertise in container security principles, non-root configurations, and supply chain security
KubernetesAdvanced understanding of Kubernetes ecosystems and deployment strategies
YAMLMastery in designing and implementing YAML-based configurations
GoAbility to write integration test infrastructure and review Go code

Nice to have

Package MaintenanceExperience maintaining packages for Linux distributions or package managers
Helm ChartsExperience authoring or contributing to Helm chart development
Supply Chain ToolingPractical experience with Sigstore, SBOM, and SLSA implementations

Compensation & benefits

Salary

USD 166,500 – 269,500 (annual)

Stock options

Available

Benefits

Remote Work

Flexible, remote-first work culture

Home Office Setup

Stipend for home office equipment

Parental Leave

16 weeks of paid parental leave after 6 months of employment

Technology Stipend

$100 monthly technology allowance

Training

Stipend for conferences, courses, and professional development

Equity

Stock options in a growing startup

Whaleness Days

Quarterly wellness days and end-of-year break


Interview process

  1. 1
    Initial Screening Review of resume and initial qualification check
  2. 2
    Technical Phone Screen Detailed discussion of container security and Kubernetes expertise
  3. 3
    Technical Interview Deep dive into technical skills, problem-solving, and system design
  4. 4
    Systems Design Challenge Evaluate approach to complex container security and packaging challenges
  5. 5
    Final Leadership Interview Assessment of technical leadership and strategic thinking capabilities

Apply for this position

You'll be redirected to the company's application page