Canonical

Computers + 1 more

Software Engineer - Secure Container Images

Job details

Contract Type

Description
Location: This is a globally remote role
This role entails
  • Build and maintain a growing portfolio of high-quality, hardened container images
  • Design and operate automated CI/CD pipelines that build, test, scan, sign, publish, promote, and retire images across environments and architectures
  • Write tooling and tests to assess security compliance and cloud-native compatibility
  • Work closely with the community and partners to share container expertise and keep our portfolio current with new features, patches, and applications
  • Collaborate with our product security, platform, infrastructure, and customer-facing teams
  • Contribute technical input to the team's decision-making
  • Set the standard for quality, defining image standards that span security, compatibility, performance, size, and developer experience
  • Grow our knowledge base and write about the work we do
  • Work in a collaborative, agile, and globally distributed environment
  • Mentor colleagues and contribute to hiring
  • Work from home with global travel of up to 15% for internal and external events
What we are looking for in you
  • Proficiency in Bash and Python
  • Experience working with CI/CD systems (e.g. GitHub Actions, Jenkins)
  • Experience building container images
  • Command of at least one container management or orchestration tool (e.g. Docker, Podman, or Kubernetes)
  • Hands-on experience with Linux systems, package management, build systems, release engineering, or artifact pipelines
  • Clear communication and end-to-end ownership, spanning design, review, documentation, operation, and cross-team collaboration
  • A commitment to sharing knowledge and helping those around you grow
  • A genuine appetite for learning and for working outside your comfort zone
  • A Bachelor's degree or equivalent in Computer Science, a STEM field, or a similar discipline
  • An exceptional academic track record from both high school and university
  • Business level written and spoken English.
  • Sincere personal motivation aligned with our mission.
  • International travel 2-4 times a year for company events up to two weeks long.
  • 0-7 years relevant experience.
Nice-to-have skills
  • A security-oriented maintenance mindset: you can investigate dependency and vulnerability findings, assess their impact, and deliver a safe fix
  • An understanding of software supply chain security, with some experience generating and consuming artifacts such as SBOMs, signatures, provenance, or CVE reports
  • Familiarity with GitOps principles and workflows
  • Familiarity with additional languages such as Go or Rust
  • Hands-on experience building minimal and distroless container images
  • Knowledge of the OCI specifications
  • Familiarity with security or compliance frameworks such as CIS, NIST, FedRAMP, or DISA STIG
  • Evidence of contributions to open source projects
  • A passion for embedding security across all stages of the engineering lifecycle (DevSecOps), and an interest in using AI or agentic development responsibly and safely
  • Relevant Linux, container, or cloud-native certifications (such as CKS or DCA) are welcome

If your experience is close but does not match every requirement, we encourage you to apply. We value transferable experience from Linux packaging, release engineering, build systems, platform engineering, and open-source maintenance.


Start hiring with Fuzu

Recruit better talent faster - on your own or with our support.

Explore recruitment platform

Don’t miss your chance to work at Canonical. Enter your email to start your application now