Chainguard · 1 day ago
Staff Software Engineer (Libraries)
Chainguard is the secure foundation for software development and deployment, focusing on providing guarded open source software. The Staff Engineer on Chainguard’s Libraries team will drive the technical strategy and implementation for JavaScript ecosystem infrastructure, ensuring secure and reliable build systems for npm packages and related tooling.
Cloud SecurityDeveloper ToolsEnterprise SoftwareOpen SourceSecurity
Responsibilities
Own technical direction and architecture for JS (npm) ecosystem infrastructure, supporting high-quality and secure build, test, and distribution automation for libraries
Design, implement, and optimize systems for automated artifact creation, update, validation, vulnerability scanning, remediation, and SBOM and provenance generation for npm packages
Build and maintain internal developer tools: bundler plugins, CLI utilities, code generators, and meta-tooling that improve the workflows for library and package maintenance
Develop and debug integrations for modern JS build systems and package managers
Solve complex dependency resolution issues, manage monorepo orchestration, and drive improvements in infrastructure automation
Collaborate with product and engineering leadership to set technical direction, drive roadmap execution, and establish process excellence for scalable package maintenance
Mentor, review, and enable other engineers by sharing systems knowledge, debugging strategies, and "meta" tooling insights
Partner with internal teams (Delivery, Sustaining, Platform, Security) to ensure our JavaScript ecosystem services meet critical SLAs and SLOs
Qualification
Required
8+ years building and maintaining infrastructure for JavaScript/TypeScript package ecosystems (npm) or large-scale open-source projects in a similar domain
Proven record in building, shipping, and maintaining developer tools – e.g., bundler plugins, CLI tools, code generators, or custom automation pipelines for JS packages
Deep familiarity with modern JS build tooling: esbuild, Rollup, Webpack, Vite, Bun, SWC, Turbopack, Babel, PostCSS, Rome/Biome, Deno, and the associated tradeoffs between ESM/CJS/modules
Hands-on experience orchestrating large monorepos (Lerna, Nx, Turborepo or custom setups) and solving infra-scale dependency or module resolution problems in production
Comfortable working with build system code written in Go (our infra is Go-based), plus solid experience in JavaScript/TypeScript. Other language ecosystems are a strong plus
Demonstrated ability to debug and resolve critical infrastructure and package-building failures at scale
Experience with cloud-native technologies and infrastructure, including containerization (e.g., Docker, Kubernetes), cloud services (e.g., GCP, AWS), infrastructure as code practices (e.g., Terraform)
Excellent cross-team communication skills: can collaborate with product, engineering, ops, and security teams; proactively document, mentor, and share lessons learned
Preferred
Active contributor to the open source JavaScript ecosystem tooling community
Experience at building and distributing software at scale
Benefits
Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs.
Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options (yes, you read that correctly: 10 years!).
100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents. Nothing comes out of your paycheck.
∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset.
18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child's first year.
Company
Chainguard
Chainguard is a cloud-native development platform that provides low-to-zero CVE container images for building and running applications.
H1B Sponsorship
Chainguard has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2024 (1)
2023 (2)
Funding
Current Stage
Late StageTotal Funding
$892MKey Investors
General CatalystSpark CapitalSequoia Capital
2025-10-23Debt Financing· $280M
2025-04-23Series D· $356M
2024-07-25Series C· $140M
Recent News
The New Stack
2026-01-23
2026-01-12
Company data provided by crunchbase