Always Never Home

We help candidates land their dream Jobs, Internships, Grants, Scholarships and Graduate programs

Principal Researcher at Chainguard, Remote

  • Entry Level
  • Full Time
  • Remote
  • Remote

Chainguard

Description:

Job Title: Principal ResearcherAt Chainguard, we are on a mission to secure the software supply chain by default. We are choosing to do this the right way, which is the hard way. Some have even called us “the Justice League of security.” Our team is founded by the industry’s leading experts on open source software, security and cloud native development and is backed by Sequoia, Amplify Partners, the Chainsmokers and more. Chainguard’s product portfolio includes Chainguard Enforce, Chainguard Images and Professional Services. Customers range from Fortune 500 companies in banking, fintech, government and infrastructure to startups and SMBs. Join us as we help organizations secure their software supply chain from source to production.

About Us

We live and breathe our company values:

We are customer obsessed – Our true advantage is the strength of our relationships with customers through collaboration, empathy, and responsiveness.  We establish trust as we educate, advocate, and listen to their needs.  Our focus is on delivering solutions to our customers that create value and make their lives better.

We have a bias for intentional action – We’re a start-up and we need to move fast. However we need to move fast through intentional action to make sure we’re able to deliver quickly and efficiently on what is most impactful to our collective success.  We prioritize, plan, try things, and fail fast.  We think about how what we do impacts other teams and communicate our progress – owning the whole solution from start to finish. If we move fast enough, we can make two or three mistakes, learn, and correct them before competitors even make their first decision.

We don’t take ourselves too seriously (but we do serious work) – Though we are solving an important problem which takes focus and a degree of seriousness, we don’t take ourselves too seriously while we do.  We laugh, have fun, embrace uniqueness, and enjoy the journey. Together.

We trust each other and assume good intentions – We hire great team members and trust them to do their work. We’re transparent with data, news, and decisions – positive or negative – to empower team members to make well informed decisions. Showing up for each other fully means we celebrate each other’s accomplishments as well as give compassionate direct feedback when needed.  We always default to assuming good intentions.

The role, in a nutshell:

You will serve within Chainguard Labs, an applied R&D lab at Chainguard, as the research lead on open source software vulnerabilities. Chainguard Images and Wolfi, the distro behind Chainguard Images, offer the promise of containers and packages with few or no known vulnerabilities. To ensure that Chainguard delivers upon this promise and also to build upon it, Chainguard Labs seeks an experienced researcher with expertise related to software vulnerabilities, especially in open source software. While expertise in discovering vulnerabilities in open source software is welcome, other forms of expertise, such as techniques for enriching vulnerability data, performing automated false positive detection or quantitatively analyzing vulnerability trends, are also welcome. This list of vulnerability sub-topics is not meant to be comprehensive. Supervising junior researchers, contractors and interns would also be part of the role. As a member of Chainguard Labs, you are also expected to write and speak about your vulnerability research efforts in order to promote the expertise and reputation of Chainguard. More broadly, you will be expected to play a mentorship role, helping researchers and engineers with less experience related to vulnerabilities, especially research related to vulnerabilities, make informed decisions.

What you’ll do:

  • Design and conduct in-depth research related to open source software vulnerabilities.
  • Collaborate with team members in product and engineering and marketing, serving as a source of expertise related to research on vulnerabilities while designing, conducting, and reporting on these experiments, ensuring that the analysis and findings benefits Chainguard.
  • Communicate research findings through clear and concise written reports, published articles, and blog posts.
  • Engage in public speaking engagements, workshops, and industry conferences to represent Chainguard’s research initiatives.
  • Provide technical guidance and mentorship to junior researchers, contractors, and interns, fostering a collaborative environment.

What we’re looking for:

  • PhD or masters degree in a relevant field with a strong publication record.
  • Proven track record of conceiving and leading complex research and development projects related to open source software software vulnerabilities from conception to completion.
  • Knowledge of software security, especially open source software security.
  • Solid understanding of open source software ecosystems, linux distributions, package management, and software vulnerabilities.
  • Excellent communication skills, both written and verbal, with the ability to present research findings to technical and non-technical audiences.
  • Comfortable with public speaking engagements and interacting with industry experts.
  • Strong collaborative and team-oriented mindset, with the ability to mentor and guide junior researchers.
  • Demonstrated interest in exploring the practical applications of research in real-world products and technologies.
Base Salary Range
$175,000$200,000 USD

A few of the benefits we offer:

  • Equity/stock options
  • Unlimited PTO
  • Remote work with flexible coworking and team meetup opportunities
  • Home office and internet stipend
  • 100% health/dental/vision insurance coverage for you and your family

If your experience is close but doesn’t fulfill all requirements, please apply. Chainguard is on a mission to build the best team. To achieve our goal, we are focused on hiring “Guardians” with unique backgrounds, perspectives, and experiences.

Chainguard is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law.

By submitting your application, you acknowledge that Chainguard will process your personal data in accordance with Chainguard’s Privacy Policy.

To apply for this job please visit boards.greenhouse.io.

Principal Researcher at Chainguard, Remote
Share with someone
Scroll to top

625+ companies hiring right now!

X