> Markdown version of [/jobs/ext/2288863-senior-confidential-computing-software-engineer-kubernetes-virtualization](https://www.wearedevelopers.com/jobs/ext/2288863-senior-confidential-computing-software-engineer-kubernetes-virtualization). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Confidential Computing Software Engineer (Kubernetes & Virtualization) - **Company:** Advanced Micro Devices, Inc. - **Location:** Austin, TX, United States - **Experience:** Expert - **Salary:** $140,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Systems Engineering, Bash Shell, Configuration Management, Software Debugging, Linux, Firmware, Hypervisor, Python (Programming Language), Kernel-Based Virtual Machine, Open Source Technology, OpenShift, Quick EMUlator (QEMU), E2e Testing, Software Engineering, System Programming, Virtual Machines, Virtualization Technology, Cloud Platform System, Kubernetes, Golang - **Published:** August 29, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88176260/1 ## About the Role The ideal candidate is a hands-on systems engineer who can move comfortably between architecture, implementation, debug, test, and upstream review. They should be able to reason deeply about confidential VM behavior in KubeVirt-based environments, including guest-owner trust boundaries, firmware and hypervisor interactions, attestation evidence, policy enforcement, secret handling, and the practical integration work required to expose AMD SEV-SNP capabilities through open source virtualization stacks. This person communicates clearly with maintainers, OS vendor partners, and internal stakeholders; identifies practical gaps in evolving upstream projects; and converts ambiguous platform enablement needs into accepted designs, working code, reliable tests, and clear technical guidance., * Systems software development experience in Rust, Go, Python, and Bash for Linux, virtualization, or cloud-native infrastructure projects. * Technical proficiency with Kubernetes, Linux, KVM, QEMU, libvirt, guest firmware, VM lifecycle management, and debugging across host, guest, hypervisor, and containers. * Hands-on experience with KubeVirt, OpenShift Virtualization, Red Hat OpenShift Virtualization, or comparable open source virtualization environments. * Experience with confidential computing technologies such as AMD SEV-SNP, SEV, SEV-ES, confidential VMs, confidential containers, trusted execution environments, or guest-owner trust models. * Working knowledge of attestation concepts and components, including attestation evidence, VCEK handling, policy configuration, and secret-release workflows. * Track record contributing code, tests, documentation, design proposals, or reviews to upstream open source projects. * Experience developing CI, end-to-end tests, hardware-backed validation, demos, or technical guides for virtualization or platform enablement features. * Experience collaborating with OS vendors, software partners, ISVs, customers, or upstream engineering teams on deployment guidance, proof-of-concept enablement, or production-readiness. * Understanding of x86 or AMD EPYC architecture concepts relevant to confidential VM placement and performance, including memory encryption, NUMA topology, cache hierarchy, CPU pinning, SMT placement, and device locality. ACADEMIC CREDENTIALS: * Bachelor's or Master's degree in Computer or Electrical Engineering or equivalent ## Description AMD's SW Ecosystem Security Engineering Team is seeking a software engineer to deliver confidential computing enablement for AMD EPYC platforms, with primary emphasis on Kubernetes and KubeVirt-based confidential virtual machine support. The role focuses on making AMD SEV-SNP capabilities usable through open source virtualization and confidential computing stacks such as KubeVirt, OpenShift Virtualization, Kata Containers, Confidential Containers, VirTEE, Trustee, and related attestation components. The developer will work across host, guest, hypervisor, orchestration, and container runtime layers to help turn AMD platform security features into production-ready software, validation, documentation, and partner-facing enablement. Success in this role requires strong systems software fundamentals, open source execution, and the ability to collaborate with upstream communities, OS vendors, and internal AMD stakeholders on technically rigorous solutions for confidential VMs, confidential containers, and AMD EPYC platform enablement., * Develop and upstream AMD SEV-SNP enablement for KubeVirt, including confidential VM configuration, libvirt/QEMU integration, guest launch flows, node feature discovery, and end-to-end validation. * Implement confidential VM and attestation functionality across KubeVirt, VirTEE, Trustee, and related components, including secure workload launch, policy enforcement, evidence handling, and secret-release flows. * Support confidential container enablement where it intersects with VM-based trusted execution environments, including Kata Containers and Confidential Containers integration points. * Debug integration issues across Linux, KVM, QEMU, libvirt, KubeVirt, guest firmware, attestation services, container runtimes, and platform configuration. * Create and maintain CI coverage, hardware-backed validation, functional tests, interoperability tests, and demonstrations for AMD confidential computing features. * Collaborate with upstream maintainers, OS vendors, partner teams, and internal AMD stakeholders through design reviews, community discussions, roadmap alignment, and technical issue resolution. * Develop AMD EPYC platform-aware, such as Kubernetes, enablement where NUMA locality, cache hierarchy, CCD/CCX organization, SMT placement, CPU pinning, or device locality affect confidential VM performance, placement, or deployment predictability. * Produce technical documentation, planning material, usage guidance, and proof-of-concept support for confidential VM deployment and related confidential computing workflows., AMD may use Artificial Intelligence to help screen, assess or select applicants for this position. AMD's "Responsible AI Policy" is available here. ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Playing Pong on a shoulder press machine](https://www.wearedevelopers.com/videos/100140-playing-pong-on-a-shoulder-press-machine) - [An alternative approach to digital sovereignty: Confidential Computing](https://www.wearedevelopers.com/videos/100043-an-alternative-approach-to-digital-sovereignty-confidential-computing) - [Your Kubernetes Node Is Not a Server: Rethinking the OS Layer](https://www.wearedevelopers.com/videos/100315-your-kubernetes-node-is-not-a-server-rethinking-the-os-layer) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)