Senior Software Engineer - Libraries Platform
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
The role:
At Chainguard, we think the best platform work is invisible: the libraries just appear, the builds just work, and the CVEs quietly regret their life choices.
Chainguard’s Libraries organization is building the secure, reliable factory that continuously builds, verifies, and serves open-source libraries to our customers and internal teams across multiple ecosystems. You’ll join as a Senior Software Engineer on the Libraries Platform team, leading the architecture and implementation of the platform that powers this factory: the services, APIs, and automation that make our libraries reproducible, trustworthy, and always up to date.
This is an infrastructure-centric, platform role. You’ll work on shared services, build and packaging pipelines, and a package index that serves external customers and internal ecosystem teams. You’ll help invent and operate the platform that:
- Serves packages to customers at scale
- Automates CVE remediation and verification workflows
- Powers AI-driven package builds
- Provides shared services across language ecosystems (Java, JavaScript, Python/AI/ML and beyond)
What you’ll do:
- Lead the design and implementation of core components of the Libraries Platform including the services, pipelines, and package index that power secure, reproducible build, test, and distribution workflows for libraries across multiple ecosystems (Java, JavaScript, Python/AI/ML).
- Design and maintain automation for artifact creation, updates, and verification, including vulnerability scanning, remediation workflows, SBOM and provenance generation, and policy enforcement across our library catalog.
- Build toward novel patch generation. Develop and validate automation that generates security fixes — including AI-assisted patching — rather than only applying upstream patches, with the testing and verification needed to trust the result.
- Build and operate shared platform services such as package indexes, registry mirrors, metadata services, and orchestration tooling that serve both external customers and internal ecosystem teams.
- Develop internal developer tools and CLIs (often in Go) that improve how we build, test, and ship libraries at scale, including integration with build systems and CI/CD for multiple ecosystems.
- Drive reliability, scalability, and observability for the Libraries platform: define SLOs, build monitoring and alerting, and lead incident response and post-incident improvements.
- Solve complex dependency and build issues in production environments, from toolchain and compiler problems to CI/CD flakiness and registry/package index edge cases.
- Partner closely with ecosystem teams (Java, JavaScript, Python/AI/ML), Platform, Delivery, Sustaining, and Security to ensure the platform meets reliability, security, and product requirements.
- Mentor and unblock other engineers through design reviews, documentation, and hands-on debugging, helping to “code culture” into how we build and run our libraries platform.
What we’re looking for:
- 5+ years designing, building, and operating infrastructure for language ecosystems or developer platforms, such as build systems, package registries, or CI/CD for widely used libraries or services.
- Strong proficiency in Go (Golang) or strong readiness to ramp quickly.
- Proven track record building and owning developer tooling and automation (plugins, CLIs, code generators, or custom pipelines) that improve how engineers build and ship software at scale.
- Strong background in CI/CD, cloud-native infrastructure, and IaC: containers (Docker/OCI, Kubernetes), public cloud (GCP, AWS, Azure), and tools like Terraform and GitHub Actions/Argo/Tekton (or equivalents).
- Demonstrated ability to debug and resolve complex toolchain, compiler, packaging, and infrastructure failures in production, and to drive those issues to root cause and lasting fixes.
- Comfortable working across SRE / platform / DevOps style responsibilities, including reliability, observability, and performance tuning for critical services and pipelines.
- Excellent communication in a remote, distributed environment, with a bias toward documentation, clarity, and collaboration across product, infra, and security teams.
- An ownership mindset: you set technical direction, own critical outcomes, and are comfortable in an early, high-impact area where engineers help shape both the roadmap and the culture.
Nice to have:
- Open source contributions in ecosystem tooling, libraries, or packaging (Java, JavaScript, Python/ML, or related infra).
- Experience with software supply chain security: SLSA, SBOMs, sigstore, provenance, attestations, or secure-by-default packaging practices.
- Background with Linux distributions, packaging, and reproducible build systems (e.g., Alpine, Wolfi, Debian Bazel, CMake, Ninja).
- Prior experience in SRE, platform engineering, or DevOps roles where you owned infrastructure for developer productivity, CI/CD, or large language-ecosystem codebases.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at Make-A-Wish
Senior Sales Engineering Leader (Enterprise) - Chainguard
Make-A-Wish
United StatesChapter Revenue Advisor (CRA)
Make-A-Wish
United StatesSales Engineer / Pre-Sales Engineer (Germany)
Make-A-Wish
GermanySenior Sales Engineering Leader (EMEA) - Chainguard
Make-A-Wish
United KingdomExplore Top Companies in this Space
DonorsChoose
Nonprofit / Education / Philanthropy
GiveDirectly
Non-Profit / Social Impact / Philanthropy Tech
Inatai Foundation
Philanthropy / Non-Profit Organization
Galápagos Conservancy
Philanthropy / Non-Profit Organization / Environmental Conservation
Make-A-Wish
View Company ProfileMake-A-Wish is a premier, enterprise-grade philanthropic organization engineered to orchestrate massive-scale wish fulfillment and pediatric psychosocial interventions. Operating as a highly integrated global charitable ecosystem, the organization eliminates the operational friction of traditional localized charity networks by seamlessly mobilizing medical professionals, corporate sponsors, and community volunteers through a centralized coordination infrastructure. Moving beyond rigid, fragmented non-profit operations, Make-A-Wish deploys sophisticated logistical frameworks to dynamically deliver life-changing experiences for children battling critical illnesses. Under the hood, their advanced resource allocation architecture actively manages donor logistics, volunteer deployment, and complex travel workflows across dozens of international chapters. What sets Make-A-Wish apart is its uncompromising dedication to frictionless philanthropic execution; by bridging the gap between vast community resources and highly personalized patient outcomes, the foundation empowers global networks to radically accelerate hope and emotional resilience without the bureaucratic overhead of conventional charity administration.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.
