We use cookies to improve your experience and measure how our site is used. Learn more.
Docker has been one of the most loved brands in developer tooling, trusted by more than 20 million monthly users and over 20 billion container image pulls. From solo founders to the world's largest companies, developers rely on Docker to build, share, and run their applications across our suite of products including Docker Desktop, Docker Hub, and Docker Scout.
We are a globally distributed, remote-first team building the tools that define how software gets built and delivered. As AI agents redefine software development, Docker is at the center of that shift, providing the sandboxed environments, verified images, and secure infrastructure that make autonomous workflows trustworthy by default.
_______________________________________________________________________
As a Senior Security Engineer embedded in the Desktop engineering team, you will own the security posture of a complex, cross-platform product that sits at the intersection of identity, OCI runtimes, and Linux kernel internals. You will be the team's primary security voice, reviewing features and code before they ship, partnering with our central security organization, and serving as the first line of triage for reported vulnerabilities.
This is a hands-on engineering role for someone who thinks in threat models and communicates clearly with both product engineers and security specialists alike.
You will onboard into the team and get hands-on with the Docker Desktop codebase, architecture, and development workflow. You will meet your counterparts in the central security organization and learn how vulnerability reports are currently handled. The goal is to listen, ask questions, and build a clear picture of the product's current security posture, not to change anything yet.
You will be an active participant in design and code reviews, bringing a security lens to features in flight. You will have taken ownership of the vulnerability intake process, handling your first end-to-end triage cycles with minimal guidance. You will have a working relationship with the engineers on the team and a growing sense of where the most meaningful security investments should be made.
You will be the team's trusted authority on product security. You will have driven meaningful improvements to how the team approaches security across the development lifecycle, whether that's better threat modeling practices, improved auth flows, stronger container isolation defaults, or reduced time-to-remediation for reported issues. you will be a known presence in the broader security organization, and your work will be directly visible in the security and resilience of a product used by millions of developers every day.
Canada: CA$271,150 – CA$434,000 + equity
United States: $194,150 – $312,950 + equity
EU: €113,860 – €186,780 + equity
______________________________________________________________________
______________________________________________________________________
Docker is proud to be an equal opportunity employer. We are committed to building a team that reflects a broad range of backgrounds, experiences, and perspectives. We believe diverse teams build better products, make better decisions, and better serve our global community.
USD 194,150 - 312,950
Annually
Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Disability Insurance
Mental Health Benefits
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Employee Assistance Program
401(k) / Retirement Plan
Equity / RSUs
Financial Planning
Unlimited PTO
Paid Holidays
Company Shutdown Days
Sick Days
Home Office Stipend
Internet Stipend
Coworking Allowance
Parental Leave
Learning & Development Budget
Conference Attendance
Defined Career Pathways
Team Events & Social Budget
Employee Resource Groups
Entrepreneurship Encouraged
Docker is a fully remote company, so most work happens from home rather than an office. Openings are still region-anchored: current roles are based in the United States, Canada, the United Kingdom, and the wider EMEA region, so check the specific posting for its eligible country. Docker also keeps optional office hubs in Paris and Seattle for anyone who wants occasional in-person collaboration.
Remote-first is built into how Docker operates, not a temporary policy. Communication is Slack and Zoom first, schedules are flexible, and teams lean on async workflows to collaborate across time zones. To help people recharge rather than burn out, Docker gives quarterly company-wide "Whaleness Days," alongside virtual social events, team bonding, and a recurring "Lunch Roulette."
Health coverage is a highlight, with company-paid medical premiums plus dental, vision, life, and disability insurance, a 401(k), parental leave, and equity as RSUs. Time off is generous, including unlimited PTO, paid holidays, and company shutdown days. For remote work specifically, Docker provides a home-office setup budget, a monthly technology and internet stipend, and a learning and development allowance for training.
Docker does not publish standardized salary bands publicly, so the exact range for a role is confirmed with your recruiter during the process. Offers reflect the role, its level, and your location, and total compensation pairs base salary with equity as RSUs and the benefits package above.
Docker runs on five virtues: Developer Obsession, Humble Confidence, Bias for Considered Action, Open Collaboration, and Outcome Driven. The culture emphasizes autonomy, transparency, and real impact, so people who are self-directed, developer-empathetic, and comfortable owning outcomes in an async setting tend to do well. Docker also supports employee resource groups spanning Underrepresented Genders, DEIB, Mental Health, Caregivers, and Neurodivergent communities.
Docker emphasizes inclusive hiring and a well-supported onboarding, and new hires describe a smooth start with a dedicated onboarding team, a home-office budget from day one, and training allowances. One important safety note from Docker: the company only contacts applicants from official @docker.com email addresses. Messages from lookalike domains such as @dockercareers.com are fraudulent, so never share personal information with them.
Bereavement Leave
Flexible Schedule
Company Equipment
Company Offsites / Retreats