Anyone, anywhere in the world can apply.
The role is explicitly listed as globally remote worldwide across Canonical's distributed team in 75+ countries.
Applies on the original listing · via Jobicy
Who can apply
Read straight from the listing, so you know before you spend time on it.
Anyone, anywhere in the world can apply.
The role is explicitly listed as globally remote worldwide across Canonical's distributed team in 75+ countries.
Over 1,200 colleagues work distributed across 75+ countries worldwide.
- Async-first
- The listing doesn't promise async-first working.
- Contractor / B2B
- No mention of hiring international contractors or invoicing.
- Global stipend
- No home office or equipment budget mentioned.
- Annual retreat
- Colleagues travel internationally two to four times per year for week-long team sprints.
Read from the listing automatically. Always confirm the details with the company before you accept an offer.
About the role
Canonical is hiring security-focused software engineers across product engineering teams to champion product security through practices such as threat modeling, architecture reviews, fuzzing, and vulnerability response. In this role, you will develop security features, harden Linux systems, audit code, and contribute fixes to Ubuntu and upstream open source ecosystems while maintaining long-term security across diverse programming languages and platforms.
What you'll do
- Define, implement, and document new security features and hardening automation for Ubuntu
- Analyze, audit, fix, and test vulnerabilities across open source software and upstream projects
- Guide and mentor engineering teams on security best practices and Secure Software Development Lifecycle (SSDLC)
- Integrate new security testing and static analysis tools into infrastructure and CI/CD pipelines
- Work on security certifications and compliance requirements such as FIPS, Common Criteria, and CIS benchmarks
What you bring
- Undergraduate degree in Computer Science, STEM, or an equivalent track record
- Proficiency in one or more languages such as C, C++, Python, Go, Rust, Java, Ruby, PHP, or JavaScript/TypeScript
- Thorough understanding of common security vulnerability classes and remediation strategies
- Practical experience with Linux environments, ideally Debian or Ubuntu
- Familiarity with open source development tools, methodologies, and SSDLC practices
About Canonical
Canonical is the publisher of Ubuntu, the open-source platform driving public cloud, AI, data science, and IoT innovations globally. Founded in 2004, the company operates as a globally distributed, remote-first organization with team members in over 75 countries.
View Canonical profile & open roles →