Information Security Specialist

Sonar

Not Interested
Bookmark
Report This Job

profile Job Location:

Austin, TX - USA

profile Monthly Salary: Not Disclosed
Posted on: 18 hours ago
Vacancies: 1 Vacancy

Job Summary

Who is Sonar

Sonar helps prevent code quality and code security issues from reaching production amplifies developers productivity in concert with AI assistants and improves the developer experience with streamlined workflows. Sonar analyzes all code regardless of who writes it your internal team genAI or third parties resulting in more secure reliable and maintainable applications. Rooted in the open source community Sonars solutions support over 30 programming languages frameworks and infrastructure technologies. Today Sonar is used by 7M developers and 400K organizations worldwide including the DoD Microsoft NASA MasterCard Siemens and T-Mobile.

We believe in developing great products that are supported by great internal teams and a strong culture. We are highly committed to and obsessed with the company users each other and our open source community. We have high standards and hold each other accountable for acting with positivity dedication thoughtfulness empathy and passion daily.

We are deliberate with our decisions with high clarity of intention. At the same time we feel extreme urgency and move forward quickly.

And lastly we are highly effective and operationally efficient. We operate collectively as One Team to accomplish our goals.

At Sonar CODE is more than just an acronym its a mindset that defines daily operations.

Why You Should Apply:

At Sonar were a group of brilliant motivated and driven professionals working hard to help supercharge developers to build better faster. Sonar helps to continuously improve code quality and code security while reducing developer toil. This means that developers can focus on doing more of what they love and less of what they dont. Our solutions dont just solve symptoms of problems we help fix issues at the source for all code whether its developer-written AI-generated or from third parties.

We have a dynamic culture with employees worldwide and hub offices in the USA Switzerland the UK Singapore and Germany. Team members should be able to come to work every day work on a product they are proud of love what they do and feel energized by their peers. With our roots deep in the open source community were all about the mission: supercharge developers to build better faster.

The Impact You Will Have:

The primary goal of the Information Security team is to build trust with our rapidly growing customer base by ensuring the Sonar organization meets a high level of security to protect our customers. As a member of the Information Security team you will be based in Sonars Austin office providing security support to engineering senior management and when needed the incident management team. Your positive contributions will significantly impact the growth of the business through Sonars collective intelligence mindset.

What You Will Do Daily:

  • Security Intake Management: Monitor the security queues and dashboards to categorize incoming security requests by severity and escalate high-priority threats to senior staff.
  • Remediation Follow-up: Reach out to Engineering Business and Technology teams to manage security findings and update/verify as needed.
  • Security Monitoring: Support monitoring and assignment of actions for security tooling.
  • User Access Reviews: Conduct least privilege reviews by comparing current user permissions against HR records to ensure access remains aligned with the employees role.
  • Security Documentation: Draft or update simple Standard Operating Procedures (SOPs) for common security tasks to ensure the teams knowledge base remains current as the tech stack evolves.
  • Process Automation: Learn and leverage AI tools to automate repetitive tasks streamline reporting and produce security metrics.
  • Campaign Management: Launch and manage campaigns to employees such as specialized training phishing standards updates etc.

The Experience You Will Need:

  • Customer Obsession: While security is what we do our customers and internal users are key to our success. We strive for solutions that enable speed without sacrificing security.
  • Infrastructure Fundamentals: A clear understanding of basic security principles and how security fits into organizations
  • Incident Triage: Ability to differentiate between true security threats and common noise (false positives) within a monitoring queue.
  • Vulnerability Lifecycle Management: Basic knowledge of how a vulnerability moves from discovery (e.g. a pentest finding) to remediation and final verification.
  • Logical Troubleshooting: A systematic approach to investigating how and why events occur.
  • Technical Communication: The ability to explain security requirements to non-security peers in a professional and collaborative manner.
  • Foundational Networking: Familiarity with the OSI Model TCP/IP and how data flows through firewalls and proxies in a hybrid work environment.
  • Administrative Diligence: Strong organizational skills for tracking multiple long-term remediation projects without letting smaller alerts slip through the cracks.

Why You Will Love It Here:

  • Our culture and mission set us apart. We have a dynamic work culture that values respect and kindness and embraces the right to fail (and get right back up again!).
  • Great people make a great company. We value people skills as much as technical skills and strive to keep things friendly while still being passionate leaders in our domains.
  • We have a flexible work policy that includes 3 days in-office and 2 days work-from-home each week for those located near our office locations; some locations such as Dubai India Japan and Australia operate fully remotely.
  • We have a growth mindset. We love learning and believe continuous education is critical to our an ever-changing industry new skills are necessary and were happy to help our team acquire them.
  • As the leader in our field our products and services are as strong as our internal team members.
  • We embrace transparency with regular meetings cascading messages and updates on the growth and success of our organization.

Benefits of Working with Sonar:

  • Flexible comprehensive employee benefit package.
  • We encourage usage of our robust time-off allocations. You will receive 23 days of PTO per calendar year (on a pro-rated basis depending on your employment start date) with additional time provided for sickness life events and holidays
  • .We offer an exciting 401(k) plan that has a 4% match fully vested on day one of participation.
  • Fully paid parking in the heart of downtown Austin Texas.
  • Global workforce with employees in 20 countries representing 35 unique nationalities.
  • We have an annual kick-off somewhere in the world where we meet to build relationships and goals for the company.
  • Monthly catered events and team events
We Value Diversity Equity and Inclusion:

At Sonar we believe that our diversity is our strength. We are a global company that values and respects different backgrounds perspectives and cultures.

We are committed to fostering a diverse and inclusive work environment where everyone feels valued and empowered to contribute their best. We are proud to be an equal opportunity employer and welcome all qualified applicants regardless of race color religion gender gender identity or expression sexual orientation national origin genetics disability age or veteran status.

All offers of employment at Sonar are contingent upon the precise results of a comprehensive background check and reference verification conducted before the start date.

We do not currently support visa candidates in the US.

Applications that are submitted through agencies or third party recruiters will not be considered.
We may use artificial intelligence (AI) tools to support parts of the hiring process such as reviewing applications analyzing resumes or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed please contact us.

Required Experience:

IC

Who is SonarSonar helps prevent code quality and code security issues from reaching production amplifies developers productivity in concert with AI assistants and improves the developer experience with streamlined workflows. Sonar analyzes all code regardless of who writes it your internal team gen...
View more view more

Key Skills

  • Economics
  • Conveyancing Paralegal
  • Corporate Risk Management
  • Ftp
  • ITIL
  • Airlines

About Company

Company Logo

Bad code is risky business. AI-generated or written by humans, Sonar ensures top-tier code quality & security. Protect your organization from bugs and vulnerabilities that jeopardize customer trust, damage your reputation, and undermine developer experience.

View Profile View Profile