The Docker Sandboxes team is building the runtime that lets AI coding agents run safely on a developer’s machine: disposable, isolated microVM sandboxes that each get their own Docker daemon, filesystem, and network.
This is the core of Docker’s sbx product: developers can give an agent the autonomy it needs to get real work done without it ever touching the host, and tear the whole environment down when it’s finished.
The successful candidate is a technical, product-minded engineer with deep experience building secure, isolated runtime environments (sandboxes, containers, or VMs) and a track record of shipping and owning that kind of infrastructure in production at scale. They think naturally about isolation and security boundaries, understand the tradeoffs involved in running untrusted or semi-trusted workloads safely, and can reason confidently about a system that spans multiple surface areas.
They can drive clarity and consensus on hard, ambiguous problems that cross team and component boundaries, raise the bar for engineering quality wherever they work, thrive in a remote-first environment, communicate clearly across time zones, work with our users, while bringing curiosity and craftsmanship to hard problems.