Full-Time
Confirmed live in the last 24 hours
Conducts supply chain risk audits and reporting
$100k/yr
Junior, Mid
Remote in USA
Chainguard specializes in managing risks in supply chains, particularly for businesses that rely on software. They conduct audits to identify risks and provide detailed reports with recommendations for improvement. Their unique offering includes a curated base container image distro, which helps businesses securely transition their software. Chainguard also provides supply chain observability services, allowing companies to track their software's origins and dependencies.
Company Size
201-500
Company Stage
Series D
Total Funding
$612M
Headquarters
Kirkland, Washington
Founded
2021
Help us improve and share your feedback! Did you find this helpful?
Equity/stock options
Unlimited Paid Time Off
Remote Work Options
Home Office Stipend
Health Insurance
Wellness Program
New Python language libraries with end-to-end integrity help organizations build software safer andmore efficientlyKIRKLAND, Wash., May 14, 2025 /PRNewswire/ -- Chainguard , the secure foundation for software development and deployment, today announced Chainguard Libraries for Python , an index of malware-resistant Python dependencies built securely from source on SLSA L2 infrastructure. By securely building every library and all of its dependencies from source, Chainguard Libraries for Python provides application security teams with confidence that malware has not been inserted during the build and distribution of libraries in the Python ecosystem, closing a significant gap in the threat landscape. To start, Chainguard has built nearly 10,000 of the most popular projects and will continuously grow its inventory of Python libraries to become the safe source for all open source.The growing threat of malware in the Python ecosystemToday, more than half of the world's developers rely on Python, a programming language that has become the foundation of modern AI and machine learning applications. As the popularity of Python has surged, so has the frequency and severity of supply chain attacks against the ecosystem. Notable malware attacks against popular Python packages like Ultralytics and PyTorch TorchTriton have shaken the community and demonstrated the risk of relying on traditional mechanisms (e.g., public registries like PyPI) for language library consumption. These public registries do minimal vetting of hosted artifacts, and they do not provide assurance that the distributed library matches its source code, exposing enterprises to supply chain attacks
Chainguard launches malware-resistant dependencies for Python.
Chainguard, Inc. is excited to announce Dockerfile Converter, Chainguard's new open source tool that allows developers to quickly and easily modify their Dockerfiles to start unlocking the benefits of zero-CVE minimal Chainguard Containers.
Chainguard, a supply chain security startup, raised $356 million in a Series D round at a $3.5 billion valuation. Led by ex-Google Cloud engineer Dan Lorenc, the funding will expand Chainguard's offerings beyond container protection to include virtual machines and language-specific libraries, enhancing security for open-source code. Lorenc emphasized the importance of proactive fundraising to address overlooked vulnerabilities in widely used software components.
GeekWire’s startup coverage documents the Pacific Northwest entrepreneurial scene. Sign up for our weekly startup newsletter , and check out the GeekWire funding tracker and venture capital directory .Chainguard hosts two company-wide retreats per year, including this one in Nashville. (Chainguard Photo)Chainguard has more than 350 employees, just raised $356 million at a valuation of $3.5 billion — and has zero physical offices.The 4-year-old cybersecurity company is a case study in scaling an early stage startup without investing in office space.“For us, I think it’s practical,” said CEO and co-founder Dan Lorenc.Chainguard is an outlier among its peers. Just 5% of U.S. companies are fully remote, according to a Q4 report from Flex Index, and many employers have brought workers back to the office after the pandemic-fueled shift to remote work.Lorenc said one of the biggest benefits of being fully remote is access to talent.“We can hire people wherever they are,” Lorenc said. “For what we do, there’s a lot of niche knowledge we need for different types of open source and different programming languages and different ecosystems — being able to tap into that talent wherever it is, is hugely beneficial for us.”The hiring advantage is touted by other companies with flexible work policies, including Seattle-based real estate giant Zillow Group.Chainguard CEO Dan Lorenc