Sonar

Senior Platform Engineer

Austin, Texas, United States

Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Enterprise Software, CybersecurityIndustries

Platform Engineer at Sonar

Position Overview

  • Location Type: Hybrid
  • Employment Type: Full-time
  • Salary: Not specified

Sonar is a company focused on helping organizations build responsible, secure, and high-quality code. They build solutions that address the root causes of code issues. They have hub offices in the USA, Switzerland, the UK, Singapore, and Germany. The Engineering Experience squad accelerates developer productivity across the Sonar supply chain by providing a secure, reliable, performant, and standardized development ecosystem. Their goal is to empower teams to build and release with confidence.

What We Do

  • Source Code Management: Maintaining and securing their GitHub presence through Infrastructure as Code.
  • Continuous Integration: Managing self-hosted CI infrastructure in AWS for image creation and job execution.
  • Release Validation: Ensuring artifact integrity and quality through comprehensive release checks.
  • Release Management: Streamlining artifact promotion and release orchestration via JFrog integration.
  • Secrets Management: Providing secure authentication and authorization for CI infrastructure and tools using Hashicorp Vault.
  • Dependency Management: Automating updates and security patching with Renovate.
  • GitHub Actions Platform: Delivering a scalable, reliable self-hosted environment for GitHub Actions in AWS.
  • Developer Self-Service: Enabling developer autonomy through their internal developer portal for key operations.

The Impact You Will Have

  • As a Platform Engineer, you will be a key player in evolving Sonar’s engineering experience.
  • You will design, build, and maintain the core CI/CD pipelines and developer tooling that drive their development process.
  • You’ll work closely with engineering teams to enhance automation, security, and developer productivity.
  • You’ll advocate for best practices and optimize key developer experience metrics.

Responsibilities

  • Own and enhance their CI/CD pipelines, ensuring they are scalable, secure, and efficient.
  • Empower developers with self-service tools, reducing friction in the development process.
  • Measure and improve developer experience using data-driven insights and key performance metrics.
  • Advocate and educate, showcasing demos and best practices to keep teams informed.
  • Secure the software supply chain, ensuring industry standard compliance and reducing risks.

Requirements

  • Not specified

Application Instructions

  • Not specified

Skills

Infrastructure as Code
GitHub
AWS
CI/CD
Continuous Integration
Release Management
JFrog
Hashicorp Vault
Renovate
GitHub Actions
Automation
Security
Developer Productivity

Sonar

Tools for code quality and security

About Sonar

SonarSource provides tools aimed at improving code quality and security for software developers. Its main products include SonarLint, an IDE plugin that gives real-time feedback on code quality; SonarQube, a self-managed solution for comprehensive code analysis and reporting; and SonarCloud, a cloud-based service that offers similar features with the convenience of cloud management. SonarSource operates on a subscription-based model, allowing clients to access its tools through annual subscriptions or usage-based pricing for cloud services. The company serves over 400,000 organizations worldwide, emphasizing the importance of writing clean, maintainable, and secure code. SonarSource's goal is to promote the philosophy of "Clean Code," which enhances the efficiency of development teams and improves the security and reliability of software applications.

Vernier, SwitzerlandHeadquarters
2008Year Founded
$444.6MTotal Funding
LATE_VCCompany Stage
Enterprise Software, CybersecurityIndustries
501-1,000Employees

Benefits

Flexible Work Hours
Hybrid Work Options
Professional Development Budget

Risks

Tidelift acquisition may cause integration challenges, disrupting Sonar's operations.
Cultural challenges may affect the partnership with Adactin in Australia.
New distribution agreement with QBS Software may lead to channel conflicts.

Differentiation

SonarSource supports over 30 programming languages, offering broad compatibility for developers.
SonarLint provides real-time feedback in IDEs, enhancing code quality during development.
SonarQube and SonarCloud offer comprehensive code analysis, ensuring high standards for codebases.

Upsides

Sonar's acquisition of Tidelift enhances its open source software security capabilities.
Partnership with Adactin expands Sonar's reach in the Australian market.
Integration with AI-driven tools boosts Sonar's code quality assessment efficiency.

Land your dream remote job 3x faster with AI