Full-Time

Senior Platform Engineer

Developer Experience

Confirmed live in the last 24 hours

Sonar

Sonar

501-1,000 employees

Tools for code quality and security

No salary listed

Senior, Expert

No H1B Sponsorship

Austin, TX, USA

3 days in-office and 2 days work-from-home each week for those located near our office locations.

Category
DevOps & Infrastructure
Platform Engineering
Required Skills
Datadog
Bash
Kubernetes
Python
Git
Java
Gradle
Docker
AWS
Maven
Yarn
Development Operations (DevOps)
Requirements
  • Strong experience in DevOps, CI/CD, and automation in cloud environments.
  • Strong programming skills in both statically typed (e.g., Java) and dynamically typed (e.g., Python) languages, complemented by expertise in Shell scripting (e.g., Bash).
  • Deep knowledge of AWS, HashiCorp Terraform, and AWS CDK.
  • Hands-on experience with GitHub, GitHub Actions, and build tools (Maven, Gradle, NPM, Yarn, MSBuild…).
  • Expertise in containerization technologies, including Docker, Kubernetes, and EKS.
  • Strong experience in Infrastructure as Code (IaC), Configuration as Code (CaC), and Everything as Code principles.
  • Security-first mindset, with experience in securing CI/CD pipelines and secrets management.
  • Experience with monitoring and observability tools such as Datadog.
Responsibilities
  • Own and enhance our CI/CD pipelines, ensuring they are scalable, secure, and efficient.
  • Empower developers with self-service tools, reducing friction in the development process.
  • Measure and improve developer experience using data-driven insights and key performance metrics.
  • Advocate and educate, showcasing demos and best practices to keep teams informed.
  • Secure the software supply chain, ensuring industry standard compliance and reducing security risks.
  • Automate infrastructure and pipeline configurations to reduce drift and improve reliability.
  • Collaborate with teams to establish standardized deployment and release processes.
  • Scale and optimize Sonar’s AWS Infrastructure: Self-hosted runners, CI tooling, and secrets management.
  • Lead cross-team collaboration, driving initiatives that improve engineering workflows.
Desired Qualifications
  • Bonus: Experience with Sonar products and Renovate.
  • Autonomous, pragmatic, and results-driven, with a focus on execution.
  • Strong leadership and collaboration skills, driving engineering-wide initiatives.
  • Effective communicator, engaging with developers and stakeholders to drive adoption.
  • Open-minded and adaptable, comfortable navigating complexity and change.
  • Challenger of the status quo, continuously improving processes and tooling.
  • Bias toward action, prioritizing progress over perfection.

SonarSource provides tools that help improve code quality and security for software developers. Their main products include SonarLint, an IDE plugin that gives real-time feedback on code quality while developers are coding; SonarQube, a self-managed solution that analyzes code and generates reports to help organizations maintain high coding standards; and SonarCloud, a cloud-based service that offers similar features to SonarQube but is managed online. SonarSource operates on a subscription model, allowing clients to pay for access to these tools, which supports ongoing product development and customer service. The company stands out from competitors by promoting the philosophy of "Clean Code," which focuses on writing code that is easy to read, maintain, and secure. Their goal is to help developers and organizations create reliable software by ensuring high-quality code.

Company Size

501-1,000

Company Stage

Late Stage VC

Total Funding

$457.1M

Headquarters

Vernier, Switzerland

Founded

2008

Simplify Jobs

Simplify's Take

What believers are saying

  • Sonar's strategic partnership with Adactin expands its market presence in Australia.
  • Acquisitions like AutoCodeRover enhance Sonar's AI-driven code analysis capabilities.
  • Sonar's subscription model ensures steady revenue and continuous product development.

What critics are saying

  • Integration challenges from acquiring Structure101 may affect Sonar's solution delivery.
  • Rapid market expansion could strain Sonar's resources and impact quality standards.
  • Reliance on AI-generated code may introduce quality and security issues.

What makes Sonar unique

  • SonarSource supports over 30 programming languages, offering broad compatibility for developers.
  • Their acquisition of Tidelift enhances open source software security and supply chain management.
  • Sonar's tools integrate AI agents, improving code quality and developer efficiency.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Flexible Work Hours

Hybrid Work Options

Professional Development Budget

Growth & Insights and Company News

Headcount

6 month growth

-1%

1 year growth

-1%

2 year growth

-2%
Startupticker
Mar 27th, 2025
Executive Changes To Fuel Global Growth

Six experienced executives have entered the startup arena, taking on C-suite roles where they will apply their expertise to drive growth both in Switzerland and internationally. These companies specialize in cutting-edge solutions, including tracking technology for 3D spaces, digital health innovations, and tools for improving code quality and security.Sensoryx has appointed Alberto Calatroni to the position of Chief Technology Officer (CTO). The Swiss startup develops and licenses motion tracking infrastructure for spatial computing, extended reality (XR), simulated reality and motion capture. Their patent-protected technology seamlessly integrates optical, ultrasonic, and inertial sensors to deliver unmatched precision and interactivity. This power-efficient technology works with any modern head-mounted display (HMD) without requiring hardware modifications. With Alberto, the company has added an expert in motion tracking to its team

VentureBeat
Mar 14th, 2025
The Risks Of Ai-Generated Code Are Real — Here’S How Enterprises Can Manage The Risk

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn MoreNot that long ago, humans wrote almost all application code. But that’s no longer the case: The use of AI tools to write code has expanded dramatically. Some experts, such as Anthropic CEO Dario Amodei, expect that AI will write 90% of all code within the next 6 months.Against that backdrop, what is the impact for enterprises? Code development practices have traditionally involved various levels of control, oversight and governance to help ensure quality, compliance and security. With AI-developed code, do organizations have the same assurances? Even more importantly, perhaps, organizations must know which models generated their AI code.Understanding where code comes from is not a new challenge for enterprises. That’s where source code analysis (SCA) tools fit in

SonarSource
Feb 20th, 2025
Sonar Acquires AutoCodeRover to Supercharge Developers with AI Agents

Acquisition to amplify the impact of developers and AI agents together to build better, faster

Startupticker
Jan 3rd, 2025
Sonar To Acquire Tidelift To Reduce Risk From Open Source Software

Geneva-based Sonar has signed a definitive agreement to acquire Tidelift, a provider of software supply chain security solutions that help organizations manage the risk of open source software. The acquisition will extend Sonar’s scope of coverage to include open source libraries, in addition to code written by developers and AI.With more than 90% of software built using open source components, evaluating open source risks is critical to the sustainability and security of organizations’ applications. Tidelift helps improve the health and security of open source by paying the maintainers behind thousands of the world’s most-relied-upon open source projects to follow industry-leading secure software development practices. Paid open source maintainers are 55% more likely to implement critical security and maintenance practices than unpaid maintainers. Sonar analyzes all code, regardless of who writes it—an internal team or genAI—resulting in more secure, reliable, and maintainable software. Rooted in the open source community, Sonar’s solutions support over 30 programming languages, frameworks, and infrastructure technologies

SonarSource
Dec 19th, 2024
Sonar to Acquire Tidelift to Reduce Risk From Open Source Software

Code quality and security leader to address code-level issues in software supply chain in addition to first-party and AI-generated code