
Principal Product Security Researcher
ChainguardChainguard is the trusted source for open source. By delivering hardened, secure, and production-ready builds of all the open source software engineers and AI agents rely on, Chainguard helps organizations build faster, stay compliant, and eliminate risk.
Our customers include Fortune 500 enterprises and global industry leaders, including Anduril, Canva, Fortinet, Hewlett Packard Enterprise, OpenAI, Snap Inc., and Snowflake.
Chainguard is venture-backed by leading investors, including Amplify, IVP, Kleiner Perkins, Lightspeed Venture Partners, Mantis VC, Redpoint Ventures, Sequoia Capital, and Spark Capital.
Imagine a world where we’re not just reacting to the latest security headline, but quietly shaping the future threat landscape so our customers sleep better at night (and so do we).
As a Principal Product Security Researcher at Chainguard, you’ll lead our product security research function end-to-end: mapping emerging threats, turning insight into strategy, and helping Chainguard stay several moves ahead of attackers across our entire product portfolio.
The role, in a nutshell
Chainguard prioritizes our customers’ security above all else, which means preparing not just for the attacks of today, but for those of tomorrow as well. In this Principal-level role, you’ll:
- Own the product security research agenda for Chainguard scanning the broader ecosystem, identifying emerging attack patterns, and translating them into clear risks and opportunities for Chainguard and our customers.
- Shape security direction across products and platforms, partnering closely with Product, Engineering, and Security leadership to embed your findings into roadmaps, architecture decisions, and long-term plans.
- Operate as someone who sees the whole ecosystem, spots issues early, and helps others navigate with confidence (and just enough healthy paranoia).
If you enjoy turning ambiguous, fast-moving threat intel into concrete, multi-quarter plans that change how a company operates, this is your playground.
What you’ll do:
- Research emerging threats & trends in software supply chain and product security, and analyze their impact on Chainguard’s products and customers.
- Design creative mitigations across people, process, and technology not just proof-of-concept demos, but pragmatic defenses that actually get adopted.
- Lead large-scale, multi-quarter initiatives that materially reduce risk or improve our security maturity across multiple product lines and platforms.
- Partner with executive and senior engineering leadership to drive org-level security strategy, influence key roadmap decisions, and secure buy-in for big, complex changes.
- Identify systematic weaknesses (in systems, structures, and sometimes habits) and develop plans that fix root causes in ways that persist long
Opens the company's application page
Listed via
Jobicy
jobicy.com
Similar roles
Australian English Speakers - Test Voice Modes of AI Models
Productive Playhouse
VP Clinical Oncology Solutions, Access Experience Team
Precision Medicine Group
Sr. Bamboo Bridge Strategy Director
Bamboo Health
(Senior) SAP IS-U Consultant (m/w/d) Marktkommunikation
Natuvion
Design & Tech
Related reads from TCHNX

How Passive Data Collection is Reshaping UX Research
As users grow weary of surveys and interviews, researchers are turning to ambient behavioural signals from keystroke dynamics to micro-interactions to understand product experience without asking a single question.

Why Gen Z is Rejecting Performative Productivity
After a decade of glorifying the grind, a cultural shift is underway. Young professionals are abandoning side hustles not out of laziness, but as an act of resistance against late capitalism's demand for constant monetization.

The Inference Economy: Why AI’s Biggest Cost Shift Is Happening After Training
A major shift in AI economics is reshaping the industry. As training frontier models becomes more expensive and inference becomes dramatically cheaper, companies are being forced to rethink how they build, deploy, price, and monetise intelligent systems.