Назад
9 дней назад

Software Engineer - Secure Container Images (Containers)

Формат работы
remote (только Europe)
Тип работы
fulltime
Грейд
junior/middle
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Software Engineer - Secure Container Images (Containers): Building hardened, production-ready Ubuntu-based container images and automated pipelines for packaging, testing, scanning, signing, publishing, and maintaining artifacts at scale with an accent on security, compatibility, performance, and developer experience. Focus on integrating open-source software across architectures, assessing supply-chain compliance, and operating reliable CI/CD workflows for continuously maintained images.

Location: Home-based in the EMEA region; international travel 2–4 times a year for company events, with global travel of up to 15%.

Company

Canonical develops Ubuntu and open-source platforms used across public cloud, data science, AI, engineering, and IoT.

What you will do

  • Build and maintain hardened Ubuntu-based container images.
  • Design and operate CI/CD pipelines that build, test, scan, sign, publish, promote, and retire images across environments and architectures.
  • Develop tooling and tests for security compliance and cloud-native compatibility.
  • Integrate and maintain software from upstream open-source projects, keeping images current with patches, features, and applications.
  • Define standards for image security, compatibility, performance, size, and developer experience.
  • Collaborate with security, platform, infrastructure, customer-facing, community, and partner teams; mentor colleagues and contribute to hiring.

Requirements

  • Proficiency in Bash and Python.
  • Experience with CI/CD systems such as GitHub Actions or Jenkins and with building container images.
  • Command of at least one container management or orchestration tool, such as Docker, Podman, or Kubernetes.
  • Hands-on experience with Linux systems, package management, build systems, release engineering, or artifact pipelines.
  • Bachelor’s degree or equivalent in Computer Science, STEM, or a related discipline, plus an exceptional academic record.
  • Business-level written and spoken English; 0–7 years of relevant experience.

Nice to have

  • Experience investigating dependency and vulnerability findings and delivering safe fixes.
  • Knowledge of software supply-chain security, including SBOMs, signatures, provenance, and CVE reports.
  • Familiarity with GitOps, Go or Rust, minimal or distroless images, OCI specifications, and DevSecOps.
  • Knowledge of CIS, NIST, FedRAMP, or DISA STIG frameworks.
  • Open-source contributions or relevant Linux, container, or cloud-native certifications.

Culture & Benefits

  • Distributed, home-based work environment with twice-yearly in-person team sprints.
  • USD 2,000 annual learning and development budget.
  • Annual performance bonus and bi-annual compensation reviews.
  • 40 days of annual leave, including public holidays and company holiday periods.
  • Maternity and paternity leave, team assistance, wellness support, recognition rewards, and travel benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →