Senior Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Sonar · 13 hours ago

Senior Security Engineer

Sonar is a company that helps prevent code quality and security issues while improving developer productivity through AI. The Senior Security Engineer will provide expertise to ensure the security of Sonar products, collaborate with engineering teams to design secure solutions, and manage security incidents.

Cyber SecurityDeveloper ToolsOpen SourceSoftware
badNo H1Bnote

Responsibilities

Secure by design: Collaborate with product engineering teams to design and implement secure solutions
Secure by design: Review product architectures and cloud solutions, to ensure integration of security requirements
Offensive security: Conduct internal and external security reviews, pen testing, and red team exercises. Procure, design, and implement offensive security tooling
Offensive security: Manage external pen testing services and certifications
Projects and Initiatives: Develop and implement security solutions through the strategic security plan including procurement, and implement new security tools or features
Resolve security Issues: Investigate and resolve security issues detected in products and internal systems
Resolve security Issues: Investigate and manage customer security concerns
Security Incidents: Act as a security SME for security incidents
Threat Management: Review threat intelligence findings and analyse threat landscapes

Qualification

Cloud architecturesApplication security assessmentsPen testingThreat modelingVulnerability managementAWSCoding/scriptingSoft skills

Required

In-depth experience with cloud architectures, primarily AWS
In-depth experience with application security assessments including code assessments and authN and authZ
Extensive experience with pen testing, red team engagements and bug bounty programs
Experience with assessing and securing AI, Agentic AI features
Experience with vulnerability investigation and management
Experience with threat modeling using frameworks like STRIDE
Experience with cloud network and firewall policy management
Some experience with coding, vibe-coding and scripting such as python, bash

Preferred

Familiarity with Azure and GCP platforms, and Google Workspace

Benefits

Flexible comprehensive employee benefit package.
23 days of PTO per calendar year (on a pro-rated basis depending on your employment start date), with additional time provided for sickness, life events and holidays.
401(k) plan that has a 4% match, fully vested on day one of participation.
Generous discretionary Company Growth Bonus, paid annually.
Fully paid parking in the heart of downtown Austin, Texas.
Monthly catered events, and team events.

Company

Sonar provides open-source and commercial code analyzers to help developers manage code quality.

Funding

Current Stage
Late Stage
Total Funding
$457M
Key Investors
Insight Partners
2022-04-26Series B· $412M
2016-11-29Series Unknown· $45M

Leadership Team

leader-logo
Nathan Jones
VP, Public Sector
linkedin
leader-logo
Lynne Doherty
President Field Operations
linkedin
Company data provided by crunchbase