Semgrep

Semgrep is a code scanning platform for finding first and third-party security vulnerabilities in your code base.

Staff Security Advocate

Security EngineerSecurity EngineerFull TimeRemoteTeam 51-200Since 2017H1B No SponsorCompany SiteLinkedIn

Location

Arizona + 20 moreAll locations: Arizona, California, Colorado, Connecticut, District of Columbia, Florida, Illinois, Nebraska, New Jersey, New York, North Carolina, Oregon, Maryland, Massachusetts, Michigan, Missouri, Tennessee, Texas, Virginia, Washington, Wisconsin

Posted

111 days ago

Salary

$147.5K - $199.5K / year

Professional Certificate8 yrs expEnglishCloudJavaJava ScriptPythonGo

Job Description

• Partner with security researchers to investigate emerging security trends and patterns, transforming complex findings into easily understandable and actionable insights that resonate with security and developer audiences. • Build and maintain credibility as a trusted security voice by publishing original research, proof-of-concepts, and detailed analysis. • Amplify discoveries and messages through compelling story narratives and real-world demonstrations. • Address critical security education gaps within developer and security ecosystems. • Produce high-impact technical content including conference presentations, in-depth blog posts, video tutorials, and short-form community engagement on social channels and forums. • Establish Semgrep as the go-to solution for secure coding by engaging authentically with security practitioners and software development teams wherever they are. • Lead technical workshops and hands-on training sessions that demonstrate practical security risks and remediation using Semgrep tools. • Cultivate relationships with other influencers within DevSecOps and AppSec communities to expand your reach and gather intelligence. • Support internal teammates to be the best version of themselves by sharing your knowledge and best practices across functions. • Serve as the voice of the community within Semgrep, translating user pain points and opportunities into product enhancement opportunities. • Support engineering and product teams to beta test and provide comprehensive user experience feedback.

Job Requirements

  • 8+ years of hands-on keyboard experience identifying, analyzing, and remediating security vulnerabilities across web applications, cloud infrastructure, and APIs.
  • Proven track record of security research contributions such as CVE discoveries, security advisories, or published research.
  • Deep understanding of OWASP Top 10, secure coding practices, and common vulnerability classes as well as application security testing methodologies (SAST, DAST, IAST) with familiarity of strengths and limitations.
  • Strong programming skills in multiple languages commonly used in enterprise development (Python, JavaScript, Java, Go, etc.).
  • Experience with modern development workflows and methodologies including CI/CD pipelines, containerization, infrastructure as code, cloud deployment, and generative AI.
  • Exceptional written and verbal communication abilities with a portfolio of technical content delivered to technical audiences.
  • Proven public speaking experience at industry conferences, meetups, or similar events.
  • Previous developer relations role such as a developer advocate, technical evangelist, or similar public-facing community position.

Benefits

  • Comprehensive health plans
  • Generous vacation time
  • 401k
  • Learning stipends
  • Equity

Related Categories

Related Job Pages

More Security Engineer Jobs

Capture Manager – Transportation Security

Smiths Group plc

Pioneers of progress: Engineering a better future.

Security Engineer111 days ago
Full TimeRemoteTeam 10,001+Since 1851H1B No Sponsor

Capture Manager leading TSA program business development

Maryland
$84K - $126K / year

IT Security Lead

Guidehouse

Solving big problems, building trust in society, and empowering our clients to shape the future.

Security Engineer111 days ago
Full TimeRemoteTeam 10,001+Since 2018H1B Sponsor

IT Security Lead overseeing cybersecurity strategies for healthcare technology implementations

Cyber SecurityOracle
United States
$130K - $216K / year

Payment Security & Compliance Program Manager

Coupa Software

Spend is the fuel to help your company deliver performance, profitability, and purpose!

Security Engineer111 days ago
Full TimeRemoteTeam 1,001-5,000Since 2006H1B Sponsor

Payment Security & Compliance Program Manager leading compliance for Coupa's payment frameworks

AWSAzureCloudServiceNowSwift
United States
$83K - $108K / year
Security Engineer111 days ago
Full TimeRemoteTeam 501-1,000Since 1998H1B Sponsor

Incident Responder monitoring security attacks across Mozilla’s products and services

AWSAzureBigQueryCloudGoogle Cloud PlatformHerokuSplunk
United States