Software Engineer, Supply Chain Security

Docker, Inc
Summary
Join Docker's Supply Chain Security group and contribute to creating a secure container ecosystem. This role focuses on building and maintaining secure container images, working with open-source software, BuildKit, GitHub Actions, and Docker Scout. You will interact with customers, shape tooling, and improve the developer experience. The ideal candidate has experience building container images with BuildKit, understands low-level container image primitives, and is familiar with Linux distributions and continuous integration systems. This is a fast-paced, customer-first environment requiring attention to detail and a passion for secure software development. The position offers opportunities for professional growth and collaboration with experts in container images and supply chain security.
Requirements
- Experience building container images with BuildKit
- Understanding of low-level container image primitives, i.e., manifests, indices, digests, attestations, etc
- Familiarity with Linux distributions and compiling software from source
- Experience with continuous integration systems, particularly GitHub Actions
- Knowledge of software security tooling like Docker Scout
Responsibilities
- Creating and supporting secure container images and related metadata like SBOMs and vulnerabilities
- Maintaining and enhancing SLSA Build Level 3 compliant build system leveraging BuiltKit and GitHub Actions
- Collectively own the security posture and developer experience of using secure container images
Benefits
- Freedom & flexibility; fit your work around your life
- Designated quarterly Whaleness Days
- Home office setup; we want you comfortable while you work
- 16 weeks of paid Parental leave
- Technology stipend equivalent to $100 net/month
- PTO plan that encourages you to take time to do the things you enjoy
- Quarterly, company-wide hackathons
- Training stipend for conferences, courses and classes
- Equity; we are a growing start-up and want all employees to have a share in the success of the company
- Docker Swag
- Medical benefits, retirement and holidays vary by country