Staff Supply Chain & Build-System Security Engineer
Tasks
- Build and review SBOMs and AIBOM artifacts
- Build dependency graphs and reachability analyses
- Enforce OIDC and trusted publisher migration
- Harden GitHub Actions and enforce pinned dependencies
- Harden runner deployment and identity scoping
- Identify blast radius
- Investigate malicious package incidents
- Lead customer software supply chain risk engagements
- Prioritize findings by exploitability
- Recommend CI CD pipeline hardening
- Reverse engineer obfuscated install scripts
- Triage supply chain findings from code scanning pipeline
- Validate true positives and eliminate noise
Perks/Benefits
- N/A
Skills/Tech-stack
AIBOM | Artifact signing | Build provenance | CI/CD | Dependency Pinning | Dependency graphs | Git | GitHub Actions | Go Modules | In-toto | JavaScript | Malware triage | Maven Central | Npm | NuGet | OIDC | PyPI | Python | Reachability analysis | Reverse Engineering | Runner Isolation | Rust | SBOM | SBOM Artifact Signing | SBOM Build Provenance | SLSA | Secrets management | Sigstore | Software Supply Chain | Software supply chain security | Static Analysis | Supply chain security | Trusted Publisher
Education
N/A
Related jobs
-
Product Security Engineer USD 135K-170KAccess Control | Application Security | CI/CD | Cloud Security | Continuous DeliveryMid-level Full TimeBoston7h ago
-
API Security | AWS Secrets | AWS Secrets Manager | Access Management | Application Security401k matching | Employer Matching 401k Contributions | Life and disability coverage | Medical/Dental/Vision insurance | Parental leaveSenior-level Full TimeAustin - TX R10h ago
-
Senior-level Full TimeOregon, United States12h ago
-
Ansible | CI/CD | CIS Benchmarks | Ceph | Config mapsSenior-level Full TimeManassas, VA, United States14h ago
-
Senior-level Full TimeColumbus, GA, United States14h ago
-
Senior PKI Engineer USD 124K-179KActive Directory Certificate Services | Ansible | Bash | Certificate Authority | Certificate Lifecycle ManagementHybrid onsite/remote work | Secret clearance required | TS clearance requiredSenior-level Full TimeFAIRFAX, VA, United States14h ago
-
Software Engineer - Full Stack Developer USD 135K-206KAWS | Accumulo | Agile | Ansible | Ansible AutomationActive Top Secret clearance required | On-site workMid-level Full TimeSan Antonio, TX15h ago
-
Ansible | Authentication | CentOS | Enterprise Linux | JBossSenior-level Full TimeAnnapolis Junction, MD16h ago
-
Adversarial Machine Learning | Anomaly Detection | Cloud Security | Machine Learning | PythonSecurity clearance premiumsMid-level Full TimeNaples, United States17h ago
-
Senior Cloud Software Engineer USD 135K-195KAPI Design | AWS | Alerting | Artifact governance | AzureSecurity clearance supportSenior-level Full TimeDayton, OH17h ago
-
Senior-level Full TimeDayton, OH17h ago
-
RRC - Database Administrator IV USD 96KAPI Integration | Autosys | Bash | Batch scheduling | CI/CDCareer development | Flexible work schedules | Health insurance | Paid time off | Retirement plan 401kMid-level Full TimeTexas-Austin18h ago
-
Senior-level Full TimeUSA-FL-Tampa, USA-FL-Fort Walton Beach18h ago
-
Mid-level Full TimeHuntsville, Alabama, United States18h ago
-
Security Engineer III, Cyber Threat Hunter USD 107K-188KAmazon Web Services | Analytic Rules | Cloud Security | Cloud security monitoring | Detection and ResponseSenior-level Full TimeArlington/Rosslyn, Virginia, United States; Baltimore, Maryland, …18h ago
-
Staff Software Engineer, Agentic AI, Trust and Safety USD 207K-301KAgentic AI | Anti-abuse | Anti-abuse systems | Architecture ownership | Artificial IntelligenceSenior-level Full TimeKirkland, WA, USA19h ago
-
AI/ML | AI/ML Infrastructure | Agent Orchestration | Automated Debugging | C++Senior-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA20h ago
-
AWS | Automation | Azure | Cloud Security | Cortex XSOAR401k program | Car discounts | Cruise discounts | Dental benefits | Employee assistance programSenior-level Full TimeFort Worth, TX, US23h ago
-
Staff Security Engineer (DevSecOps) USD 150K-220KAWS | Azure | CI/CD | Cloud Security | Cloud platform401k match | Educational reimbursement | Flexible work schedule | Paid Holidays | Paid parental leaveSenior-level Full TimeBethesda, MD R1d ago
-
Application Security Engineer USD 210K-300KAPI Security Top 10 | AWS | Advanced Security | Application Security | AuthenticationSenior-level Full TimeMiami, FL1d ago
-
Application Security Engineer USD 195K-244KAI Agents | API Security Top 10 | AWS IAM | Advanced Security | Application SecuritySenior-level Full TimeSeattle, WA1d ago
-
BEV | Bayesian Methods | CUDA | Machine Learning | Metrics OptimizationSenior-level Full TimeFoster City, CA1d ago
-
Principal Software Engineer, Cryptography USD 254K-336KAppArmor | Architecture Review | C++ | Certificate Systems | Cryptographic agilitySenior-level Full TimeBoston, Massachusetts, United States; Costa Mesa, …1d ago
-
DevOps Engineer USD 129K-171KAir-gapped | Air-gapped networks | Ansible | Argo CD | Automated testingMid-level Full TimeReston, Virginia, United States1d ago
-
Dev Infra Software Engineer, Air Defense USD 166K-220KAWS | C++ | CI/CD | Distributed Systems | DockerMid-level Full TimeIrvine, California, United States1d ago