SonarSource, a leader in AI-driven code review and verification, seeks a Senior Infrastructure Security Engineer in Geneva. The role focuses on securing identity platforms, endpoints, and IT services through automation and AI, supporting the company’s global growth and agent-centric development vision.
SonarSource is shaping the future of agent-centric software development and is at the forefront of AI-powered code verification. The company integrates with leading AI tools to help Fortune 100 enterprises build secure software, and sees code verification as essential to the Agent-Centric Development Cycle. With global hubs and over $400M in revenue, SonarSource is growing rapidly and building the foundation for the AI software revolution.
Responsibilities
- Contribute to designing, implementing, and managing security controls and automation across identity systems, endpoints, and core IT services.
- Own key components of the identity provider and access automation stack, including SSO, SCIM, group-based access, and JIT access, ensuring secure and timely access with strong controls and audit trails.
- Develop and maintain security monitoring, alerting, and SIEM integrations to provide real-time visibility into identity, endpoint, and SaaS-related risks.
- Collaborate with IT Operations, Information Security, and Infrastructure Engineering to embed security controls into daily operations.
- Utilize and promote AI tools to enhance security operations, such as for alert triage, runbook execution, knowledge retrieval, and reporting.
- Help define and refine metrics for security control reliability and effectiveness using SLIs/SLOs, error budgets, and dashboards.
Requirements
- 4–7 years of hands-on experience in security engineering, security operations, or similar roles within modern, fast-paced environments.
- Experience managing IdPs and IAM systems at scale (e.g., Okta, Azure AD), including SSO, MFA, lifecycle management, and least-privilege access policies.
- Proven background with SIEM and observability platforms (e.g., ELK/EFK, Splunk, Datadog), including rule creation, tuning, dashboard development, and handling large-scale log ingestion.
- Strong skills in IaC and configuration management tools (e.g., Terraform, CloudFormation, Ansible) and programming/scripting languages (e.g., Python, Go) for automating security and operational tasks.
- Experience implementing security controls as code, including vulnerability scanning, configuration baselines, secret management (e.g., HashiCorp Vault), key rotation, and certificate management.
- Demonstrated involvement in incident response, root cause analysis, and post-incident actions in collaboration with IT Ops, Security, and Engineering teams.
- Familiarity with using modern AI tools (e.g., LLM-based assistants, automation frameworks) in daily workflows for analysis, content creation, and process automation.
Nice to have
- Experience with automated user provisioning and deprovisioning, including SCIM, HRIS integrations, and role-based or group-based access models.
- Ability to assess when AI is appropriate in security and operations, balancing efficiency with risk and control.
What the company offers
- Opportunity to work at the cutting edge of AI in software development and security operations.
- Work within a global organization with hubs in Austin, Bochum, Dubai, Geneva, London, Singapore, Tokyo, and Washington D.C.
- Join a company with over $400M in revenue, profitability, and rapid growth.
About the company
SonarSource values diversity, equity, and inclusion and is committed to creating a welcoming and inclusive workplace. The company operates with a CODE mindset: Committed to customers and community, Obsessed with quality, Deliberate in decisions, and Effective as one team.
- Committed to customers and community
- Obsessed with quality
- Deliberate in decisions
- Effective as one team
- Dedicated to diversity, equity, and inclusion
How to apply
Documents to submit:
Quelle: öffentlich zugängliche Karriereseite des Arbeitgebers. Batchly ist nicht der Arbeitgeber und steht nicht notwendigerweise in einem Vertragsverhältnis mit dem Unternehmen.