Docker logo

Docker

Senior Principal Software Engineer, Docker and Ecosystem

Work from home

Remote role where the employee must remain based in a particular country.

United States only

Employer listed it 9 months ago · Added today

Been open since 9 months ago. Long-running listings are sometimes left up after the role is filled.

Salary

$219,000–$352,000

Location

United States only

Timezone

Not stated

Contract

Full-time

Experience

Lead

Category

Software

Stated by the employer in the job description

Remote flexibility

Work from home

This is a remote role, but the employee must be based in United States. It is work from home rather than work from anywhere.

What the employer says

  • Source listing states candidate location: "Seattle, WA, Remote"

What Nomaders makes of it

  • Residency required in United States
  • Payroll and tax are likely handled in that country only

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

About Docker

Docker has been one of the most loved brands in developer tooling, trusted by more than 20 million monthly users and over 20 billion container image pulls. From solo founders to the world's largest companies, developers rely on Docker to build, share, and run their applications across our suite of products including Docker Desktop, Docker Hub, and Docker Scout. We are a globally distributed, remote-first team building the tools that define how software gets built and delivered. As AI agents redefine software development, Docker is at the center of that shift, providing the sandboxed environments, verified images, and secure infrastructure that make autonomous workflows trustworthy by default.

_______________________________________________________________________

Docker is seeking a Senior Principal Engineer to serve as the technical visionary and architect for how software gets built, verified, and trusted.

Every day, millions of developers pull images, install dependencies, and ship builds to production. Each of those steps is a place where something can go wrong, or be made to go wrong. Compromised base images, malicious packages, tampered build steps, unsigned artifacts moving through pipelines nobody is watching. The industry calls this the software supply chain, and it has become one of the most consequential unsolved problems in software engineering.

Docker sits at the exact center of it. We are the layer where builds happen. That gives us a rare opportunity, and a real obligation, to make secure software delivery the default rather than an afterthought bolted on at the end.

This role sits in Docker and Ecosystems, the group that owns Docker’s most well known products and our emerging content and SDLC business. You will own the technical strategy for secure software delivery across all of it, defining what verifiable, tamper-resistant software delivery looks like at Docker's scale, then driving the architecture that makes it real for every developer and every enterprise customer using our products.

This is one of the highest-leverage individual contributor roles at the company. You will set multi-year technical direction, make architectural decisions that shape Docker's product portfolio, and work directly with the SVP of Engineering and executive team on strategy. You will not manage people. You will change what the industry considers table stakes.

Responsibilities

Technical Vision and Strategy

Own the multi-year technical vision for Docker's build security and software supply chain capabilities, spanning Docker Desktop, Docker Hub, Docker Hardened Images, Docker Verified Publishing, and the platforms that monetize them

Define what "trusted by default" means architecturally for a product used by 20 million developers, then sequence the work to get there

Translate Docker's commercial strategy into platform capabilities, partnering with the SVP of Engineering to turn organizational strategy into technical roadmaps that span teams and years

Establish the architectural principles and security standards that guide technical decisions across engineering, and set the bar other teams build against

Identify the investments with maximum leverage: capabilities built once that raise the security floor across every Docker product

Anticipate where supply chain threats and regulatory requirements are heading, and make sure our architecture is positioned before the market demands it

Build Security Architecture

Architect the systems that detect and prevent threats introduced during the software build process, including compromised dependencies, malicious build steps, tampered artifacts, and untrusted base images

Design provenance and attestation infrastructure so that any artifact produced through Docker carries verifiable evidence of how, where, and from what it was built

Define Docker's approach to artifact signing, verification, and policy enforcement across the developer inner loop and CI/CD pipelines

Architect SBOM generation, dependency analysis, and vulnerability intelligence capabilities that give developers and security teams a truthful picture of what is actually in their software

Align Docker's architecture with emerging supply chain security frameworks and standards, and help shape them where we can

Design for a hard constraint: security controls that slow developers down get turned off. Everything here has to be fast enough and quiet enough that developers keep it on

SDLC and Developer Workflow Integration

Requirements

  • ·Domain Expertise
  • ·12+ years of software engineering experience, with deep expertise in build security, software supply chain security, SDLC tooling or equivalent experience
  • ·Demonstrated understanding of the threat model around the software build process: how compromise gets introduced through dependencies, build environments, artifacts, and pipelines, and what actually mitigates it
  • ·Working knowledge of supply chain security frameworks and standards, and their practical architectural implications
  • ·Expert-level understanding of API design, service architecture, and system integration patterns at scale

Benefits

  • ·Remote-first by design – Work from your home, with offices in Seattle and Paris for connection and collaboration.
  • ·Flexibility that fits your life – We trust you to manage your schedule while delivering great work.
  • ·Time to recharge – Generous PTO, designated quarterly Whaleness Days, and a designated end-of-year Whaleness break.
  • ·Home office support – Set up your workspace for comfort and success.
  • ·Technology stipend – Equivalent to US$100 net per month to help support your work.

How to apply

  1. 1Check the flexibility label above, work from home, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Docker, mentioning your remote working experience.
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 12h ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

$219,000–$352,000 · You'll be taken to the employer's careers page.