Infrastructure Security Engineer

Sonar · Genève

SonarSource, a leader in AI-driven code review and verification, seeks a Senior Infrastructure Security Engineer in Geneva. The role focuses on securing identity platforms, endpoints, and IT services through automation and AI, supporting the company’s global growth and agent-centric development vision.

SonarSource is shaping the future of agent-centric software development and is at the forefront of AI-powered code verification. The company integrates with leading AI tools to help Fortune 100 enterprises build secure software, and sees code verification as essential to the Agent-Centric Development Cycle. With global hubs and over $400M in revenue, SonarSource is growing rapidly and building the foundation for the AI software revolution.

Responsibilities

  • Contribute to designing, implementing, and managing security controls and automation across identity systems, endpoints, and core IT services.
  • Own key components of the identity provider and access automation stack, including SSO, SCIM, group-based access, and JIT access, ensuring secure and timely access with strong controls and audit trails.
  • Develop and maintain security monitoring, alerting, and SIEM integrations to provide real-time visibility into identity, endpoint, and SaaS-related risks.
  • Collaborate with IT Operations, Information Security, and Infrastructure Engineering to embed security controls into daily operations.
  • Utilize and promote AI tools to enhance security operations, such as for alert triage, runbook execution, knowledge retrieval, and reporting.
  • Help define and refine metrics for security control reliability and effectiveness using SLIs/SLOs, error budgets, and dashboards.

Requirements

  • 4–7 years of hands-on experience in security engineering, security operations, or similar roles within modern, fast-paced environments.
  • Experience managing IdPs and IAM systems at scale (e.g., Okta, Azure AD), including SSO, MFA, lifecycle management, and least-privilege access policies.
  • Proven background with SIEM and observability platforms (e.g., ELK/EFK, Splunk, Datadog), including rule creation, tuning, dashboard development, and handling large-scale log ingestion.
  • Strong skills in IaC and configuration management tools (e.g., Terraform, CloudFormation, Ansible) and programming/scripting languages (e.g., Python, Go) for automating security and operational tasks.
  • Experience implementing security controls as code, including vulnerability scanning, configuration baselines, secret management (e.g., HashiCorp Vault), key rotation, and certificate management.
  • Demonstrated involvement in incident response, root cause analysis, and post-incident actions in collaboration with IT Ops, Security, and Engineering teams.
  • Familiarity with using modern AI tools (e.g., LLM-based assistants, automation frameworks) in daily workflows for analysis, content creation, and process automation.

Nice to have

  • Experience with automated user provisioning and deprovisioning, including SCIM, HRIS integrations, and role-based or group-based access models.
  • Ability to assess when AI is appropriate in security and operations, balancing efficiency with risk and control.

What the company offers

  • Opportunity to work at the cutting edge of AI in software development and security operations.
  • Work within a global organization with hubs in Austin, Bochum, Dubai, Geneva, London, Singapore, Tokyo, and Washington D.C.
  • Join a company with over $400M in revenue, profitability, and rapid growth.

About the company

SonarSource values diversity, equity, and inclusion and is committed to creating a welcoming and inclusive workplace. The company operates with a CODE mindset: Committed to customers and community, Obsessed with quality, Deliberate in decisions, and Effective as one team.

  • Committed to customers and community
  • Obsessed with quality
  • Deliberate in decisions
  • Effective as one team
  • Dedicated to diversity, equity, and inclusion

How to apply

Documents to submit:

  • CV

Auf Firmen-Website bewerben

Ähnliche Stellen

Quelle: öffentlich zugängliche Karriereseite des Arbeitgebers. Batchly ist nicht der Arbeitgeber und steht nicht notwendigerweise in einem Vertragsverhältnis mit dem Unternehmen.