
Senior Manager, Governance and Trust
Overview
At Chainguard we solve one of software’s most challenging trust issues: how do you make open source code truly trustworthy? As Senior Manager of Governance & Trust (G&T) you’ll build upon groundbreaking work in this space to build a truly innovative function that sets an example for other tech startups to follow.
Job Description
Chainguard is the secure foundation for software development and deployment. By providing guarded open source software, built from source and updated continuously, Chainguard helps organizations eliminate threats in their software supply chains. Founded by the industry's leading experts on open source software, security and cloud native development, Chainguard has built the largest library of open source software that is secure by default.
Responsibilities
- - Develop and execute a modern strategy for governance, risk, and compliance that empowers the company’s go-to-market strategy and ambitions
- - Build and retain a top-tier team of subject matter experts and technicians that can effectively support and advise world-class Engineering and Product Security functions
- - Level up our governance, risk management, and assurance activities through practical implementation of automation and AI capabilities
- - Lead G&T with an ''automation first'' mindset, and be unreasonably dissatisfied with any control that requires manual, periodic assurance
- - Deliver a category-leading customer experience around trust and security
- - Collaborate with Sales, Marketing, and other security functions to build or strengthen the tools, processes, and documentation necessary to wow new customers and delight existing ones
Required Skills
- - Can-do attitude and a focus on progress over perfection - a role model leader that develops and coaches junior staff
- - Strong understanding of modern public cloud and SaaS-based infrastructure, and assurance automation and evidence collection using cloud APIs
- - Experience implementing and operating FAIR-based risk management programs
- - Excellent knowledge of frameworks like NIST 800-53 and the ISO 27000 family
- - Fluency in regulatory frameworks like NIS2 and CRA as well as programs like FedRAMP and IRAP will also important
- - Level 999 Wizard skills for Google sheets, slides, docs, dashboards, etc.
- - Proven track record managing cross-functional initiatives in fast-paced environments (startup or growth-stage preferred)
- - Outstanding executive presence, as this job interacts extensively with customers, partners, and Chainguard executives
- - Excellent written and verbal communication skills, with the ability to translate between technical and business audiences
Benefits
- - Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual destination summits, and a monthly stipend for coworking spaces, phone and internet costs
- - Our Approach to Equity: Receive stock options upon hire and promotion. Plus, you can participate in secondary offerings and have 10 years to exercise your options
- - 100% Covered Health Insurance: We cover 100% of your health, vision and dental insurance premiums for you and your dependents
- - ∞ Flexible Time Off: Take the time you need – to do our best work, we need to recharge and reset
- - 18 Weeks Paid Parental Leave: We offer 18 weeks for birthing parents and 12 weeks for non-birthing parents, with the option to use it all at once or throughout your child''s first year
About the company
Chainguard believes engineering teams should move at the speed of innovation with confidence that every line of code is secure. The company protects open source software from what can go wrong, enabling teams to focus on building what matters. Securing the open source supply chain is Chainguard’s mission. Teams are often told they must choose between speed, security, and scalability when building on open source—achieving all three is seen as impossible. Chainguard’s co-founders rejected that trade-off. With decades of experience building foundational projects like Kubernetes, Sigstore, and Distroless, they recognized that these priorities are not in conflict but part of the same system.
All Job Openings at Chainguard