> Markdown version of [/jobs/ext/2001967-software-engineer-sandboxes-virtualization](https://www.wearedevelopers.com/jobs/ext/2001967-software-engineer-sandboxes-virtualization). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Software Engineer, Sandboxes & Virtualization - **Company:** Coreweave, Inc. - **Location:** United States - **Experience:** Expert - **Salary:** $139,000.0 - $242,000.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Bash Shell, C++ (Programming Language), Cloud Engineering, Profiling, Linux Kernel, Performance Tuning, Software Architecture, Quick EMUlator (QEMU), Virtualization Technology, Rust (Programming Language), Kubernetes, Optimization Algorithms, Hardware Infrastructure - **Published:** August 9, 2026 - **Apply:** https://www.dice.com/job-detail/f9e048ea-04d1-40f7-916b-d7226d23d25d ## About the Role * 3+ years of experience in systems, platform, infrastructure, or production engineering at scale. * Strong hands-on experience with Kubernetes, container orchestration, and cloud-native architectures, including controllers, operators, or scheduling extensions. * Experience designing, implementing, or operating secure execution environments (container runtimes, sandboxed workloads, or virtualized systems). * Practical experience with lightweight virtualization and sandboxing technologies (e.g., Kata Containers, gVisor, KubeVirt, QEMU). * Experience supporting GPU-accelerated workloads in multi-tenant environments, including GPU scheduling, isolation, device passthrough, mediated devices, or virtualization. * Proficient in systems-oriented programming (Go, C/C++, Rust, Bash) with strong Linux internals knowledge. * Skilled at diagnosing and resolving complex performance, reliability, or isolation issues across containers, VMs, and infrastructure. * Experienced in profiling, benchmarking, and tuning performance across runtime, virtualization, and GPU stacks. Preferred: * Experience building systems for safely executing untrusted or sensitive workloads in shared environments. * Familiarity with GPU drivers and low-level virtualization or I/O optimization techniques. * Experience defining threat models and implementing runtime security policies in multi-tenant systems. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. * You love building high-performance systems that operate reliably under extreme scale and demand. * You're curious about the intersection of security, virtualization, Kubernetes, and GPU infrastructure. * You're an expert in reasoning about trade-offs between isolation, performance, and operability. ## Description As a GPU & Runtime Systems Engineer, you will design, build, and evolve secure sandboxed runtime environments for Kubernetes workloads, focusing on runtime isolation, performance, and security. You will integrate container runtimes, lightweight VMs, and virtualization technologies to support GPU-accelerated workloads in multi-tenant environments. Day-to-day, you'll develop GPU-aware sandboxing and scheduling strategies, optimize containerization and I/O performance for latency-sensitive workloads, and influence architectural decisions across Linux internals, container runtimes, virtualization layers, and GPU drivers. Some of what you'll work on: * Design and implement secure execution environments for containerized and virtualized workloads. * Build GPU-aware scheduling, isolation, and resource management strategies for multi-tenant workloads. * Optimize container, VM, and I/O performance across GPU-accelerated workloads. * Conduct profiling, benchmarking, and performance tuning for runtime, virtualization, and GPU stacks. * Contribute to architectural decisions across Linux internals, container runtimes, virtualization layers, and GPU drivers. * Collaborate with security, platform, and infrastructure teams to define and implement runtime isolation and performance standards. ## Related Videos - [Running Secure Life Science Research at Scale using Hybrid GPU HPC and Kubernetes 🧬](https://www.wearedevelopers.com/videos/100355-running-secure-life-science-research-at-scale-using-hybrid-gpu-hpc-and-kubernetes) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Profiling Symfony & PHP apps with Blackfire](https://www.wearedevelopers.com/videos/265-profiling-symfony-php-apps-with-blackfire) - [Instant KAI Sandboxes with vCluster: Multi-Tenant, Multi-Scheduler GPU Sharing](https://www.wearedevelopers.com/videos/100333-instant-kai-sandboxes-with-vcluster-multi-tenant-multi-scheduler-gpu-sharing) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) ## Related Articles - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [What Makes WeAreDevelopers World Congress Different From Every Other Tech Event?](https://www.wearedevelopers.com/magazine/701-what-makes-wearedevelopers-world-congress-different-from-every-other-tech-event) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)