Senior Security Engineer
Senior Security Engineer

Senior Security Engineer

Full-Time 43200 - 72000 ÂŁ / year (est.) No home office possible
Go Premium
D

At a Glance

  • Tasks: Shape security strategy and implement proactive solutions for Docker's innovative products.
  • Company: Join Docker, the leading platform for app development with a remote-first, innovative culture.
  • Benefits: Enjoy flexible work, generous parental leave, and a technology stipend.
  • Why this job: Make a real impact on security in a fast-paced environment trusted by millions.
  • Qualifications: 5+ years in security engineering and strong coding skills in Python or Golang required.
  • Other info: Collaborate with diverse teams and grow your career in a supportive, inclusive environment.

The predicted salary is between 43200 - 72000 ÂŁ per year.

At Docker, we make app development easier so developers can focus on what matters. Our remote‑first team spans the globe, united by a passion for innovation and great developer experiences. With over 20 million monthly users and 20 billion image pulls, Docker is the #1 tool for building, sharing, and running apps—trusted by startups and Fortune 100s alike. We’re growing fast and just getting started. Come join us for a whale of a ride!

As a Senior Security Engineer, you’ll be a trusted advisor to engineering and product teams, ensuring security is built into every Docker product from the ground up. You’ll partner with leadership to shape product security strategy, influence architectural decisions, and drive adoption of security controls across the organization. You’ll apply your expertise in secure architecture, threat modeling, and vulnerability management to identify and mitigate risks early in the development lifecycle. Working across cloud infrastructure (AWS, GCP, Azure), containerized environments, and AI/ML products, you’ll implement proactive security solutions that scale with Docker’s growth. This role offers the opportunity to build and mature security programs at a company whose products are trusted by millions of developers worldwide. You’ll work in a fast‑paced, technically challenging environment where your security expertise directly impacts both Docker’s platform and the broader container ecosystem.

Responsibilities

  • Work with leadership to align security initiatives with business goals, ensuring that security is a core component of product and infrastructure.
  • Take ownership and drive implementation for key programs such as vulnerability management, cloud governance, and product security.
  • Serve as a security subject matter expert for software security and architecture.
  • Partner with engineering to design and implement security architecture and controls across Docker products and platforms.
  • Perform security design reviews and threat modeling of emerging AI products.
  • Integrate security into SDLC through security requirements, design assessments, and automated security testing.
  • Manage Docker’s Vulnerability Disclosure Program (VDP) by validating submissions, and working with engineering to resolve confirmed issues.
  • Design and enforce security configurations in cloud environments (e.g. AWS, GCP, Azure) according to industry best practices.
  • Establish automated monitoring and alerting to detect security anomalies across our environments.
  • Serve on rotating on‑call schedule to respond to security incidents, investigate threats, and coordinate remediation efforts.
  • Educate and collaborate with cross‑functional teams (e.g., engineering, product) to promote security practices.

Qualifications

  • Have at least 5+ years of experience in security engineering roles, with a focus on application and infrastructure security, preferably in a cloud‑native or SaaS environment.
  • Possess 3+ years of hands‑on development experience in Python or Golang.
  • Demonstrate deep expertise in authentication, authorization, including technologies like OAuth, SAML, OIDC, MFA, cryptography applications and Zero Trust principles.
  • Have strong hands‑on experience with securing cloud ecosystems (e.g: AWS, GCP, Azure).
  • Understand AI/ML security risks and mitigations, including prompt injection, data poisoning, model extraction, and adversarial attacks.
  • Have deployed runtime security solutions for threat detection and policy enforcement in Kubernetes, Docker environments.
  • Have a track record of building security programs and automations from scratch, applying risk‑based prioritization.
  • Have an understanding of compliance regulations (e.g, SOC 2, ISO 27xxx, GDPR, CCPA, FIPS) and ability to align security with compliance requirements.
  • Have excellent communication skills, allowing you to explain complex security concepts clearly to technical and non‑technical stakeholders.
  • Understand industry standards, and actively keep up with emerging security technologies and models.
  • Are a team player who drives security change via collaboration and cross‑functional partnerships.

What to expect

First 30 days

  • Meet with security team and key partners across engineering.
  • Gain access to team owned systems, and internal documentation.
  • Complete security awareness training and compliance onboarding.
  • Review application architecture, tech stack and data flow.
  • Review risk registry and annual roadmap.
  • Familiarize oneself with team workflows and processes.
  • Shadow a fellow security engineer during their on‑call/secops rotations.

First 90 days

  • Conduct security review on emerging Docker products.
  • Actively participate in architecture design reviews with the team.
  • Be the Tech Lead for a Security owned project/initiative.
  • Collaborate with Docker developers to validate and resolve discovered vulnerabilities.
  • Enhance incident response capabilities by participating in on‑call rotation and post‑incident activities.
  • Effectively manage submissions to our Vulnerability Disclosure Program (VDP).
  • Create and maintain security documentation and runbooks.

First Year Outlook

  • Execute security roadmap for improving security controls.
  • Strengthen Zero Trust architecture and least privilege access controls.
  • Enhance security monitoring and anomaly detection.
  • Perform security reviews for major product releases.
  • Conduct a penetration test or engage with external researchers.
  • Support audits and ensure compliance with SOC 2, ISO 27xxx.
  • Advocate for "security by design" in all product features.
  • Lead security awareness campaigns and company‑wide security events.

Docker does not offer visa sponsorship for this role.

Perks

  • Freedom & flexibility; fit your work around your life.
  • Designated quarterly Whaleness Days plus end‑of‑year Whaleness break.
  • Home office setup; we want you comfortable while you work.
  • 16 weeks of paid parental leave.
  • Technology stipend equivalent to $100 net/month.
  • PTO plan that encourages you to take time to do the things you enjoy.
  • Training stipend for conferences, courses and classes.
  • Equity; we are a growing start‑up and want all employees to have a share in the success of the company.
  • Docker Swag.
  • Medical benefits, retirement and holidays vary by country.
  • Remote‑first culture, with offices in Seattle and Paris.

Docker embraces diversity and equal opportunity. We are committed to building a team that represents a variety of backgrounds, perspectives, and skills. The more inclusive we are, the better our company will be.

Senior Security Engineer employer: Docker

Docker is an exceptional employer that champions a remote-first culture, offering employees the freedom and flexibility to balance work with life. With a strong focus on innovation and professional growth, Docker provides generous benefits such as a technology stipend, 16 weeks of paid parental leave, and opportunities for continuous learning through training stipends. Joining Docker means being part of a diverse team dedicated to shaping the future of app development while enjoying a supportive environment that values every employee's contributions.
D

Contact Detail:

Docker Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Security Engineer

✨Tip Number 1

Network like a pro! Reach out to current or former Docker employees on LinkedIn. Ask them about their experiences and any tips they might have for landing a role at Docker. Personal connections can make a huge difference!

✨Tip Number 2

Prepare for the interview by brushing up on your technical skills. Since this is a Senior Security Engineer role, be ready to discuss secure architecture, threat modelling, and vulnerability management. Practice explaining complex concepts in simple terms—this will impress both technical and non-technical interviewers.

✨Tip Number 3

Show your passion for security! During interviews, share examples of how you've implemented security solutions in past roles. Highlight your experience with cloud environments and any innovative projects you've led. This will demonstrate your commitment to security and innovation.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of the Docker team. Good luck!

We think you need these skills to ace Senior Security Engineer

Security Engineering
Application Security
Infrastructure Security
Cloud Security (AWS, GCP, Azure)
Python
Golang
Authentication and Authorization (OAuth, SAML, OIDC, MFA)
Cryptography
Zero Trust Principles
AI/ML Security
Kubernetes Security
Vulnerability Management
Compliance Regulations (SOC 2, ISO 27xxx, GDPR, CCPA, FIPS)
Communication Skills
Collaboration

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Senior Security Engineer role. Highlight your experience in security engineering, especially in cloud-native environments, and showcase how your skills align with Docker's mission.

Showcase Your Expertise: Don’t hold back on detailing your hands-on experience with security technologies like OAuth, SAML, and Zero Trust principles. We want to see your depth of knowledge and how you’ve applied it in real-world scenarios.

Be Clear and Concise: When writing your application, keep it straightforward. Use clear language to explain complex security concepts, as you'll need to communicate effectively with both technical and non-technical stakeholders at Docker.

Apply Through Our Website: We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for this exciting opportunity at Docker!

How to prepare for a job interview at Docker

✨Know Your Stuff

Make sure you brush up on your knowledge of security engineering, especially in cloud-native environments. Be ready to discuss your experience with AWS, GCP, and Azure, as well as your hands-on development skills in Python or Golang. Docker will want to see that you can apply your expertise in secure architecture and threat modelling effectively.

✨Showcase Your Problem-Solving Skills

Prepare to share specific examples of how you've identified and mitigated security risks in previous roles. Highlight any experience you have with vulnerability management and how you've implemented proactive security solutions. This will demonstrate your ability to drive security initiatives that align with business goals.

✨Communicate Clearly

Since you'll be working with cross-functional teams, it's crucial to convey complex security concepts in a way that's easy to understand. Practice explaining your past projects and security strategies to both technical and non-technical audiences. This will show that you're not just a tech whiz but also a team player who can collaborate effectively.

✨Be Ready for Technical Questions

Expect to dive deep into technical discussions during the interview. Brush up on topics like authentication, authorisation, and Zero Trust principles. Familiarise yourself with compliance regulations like SOC 2 and GDPR, as these are likely to come up. Being well-prepared will help you stand out as a knowledgeable candidate.

Senior Security Engineer
Docker
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

D
  • Senior Security Engineer

    Full-Time
    43200 - 72000 ÂŁ / year (est.)
  • D

    Docker

    200-500
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>