Sonar

Senior Platform Engineer – Developer Experience

Austin, Texas, United States

Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Software Development, BiotechnologyIndustries

Platform Engineer

Employment Type: Employee / Full-Time

Why You Should Apply:

At Sonar, we are a team of brilliant, motivated, and driven professionals dedicated to helping organizations build responsible, secure, high-quality code quickly and systematically. We create solutions that address problems at their source – the source code. Our dynamic culture spans the globe, with hub offices in the USA, Switzerland, the UK, Singapore, and Germany. We believe in fostering an environment where team members are proud of the product they work on, love what they do, and feel energized by their peers. With deep roots in the open-source community, our mission is to provide solutions that deliver Clean Code.

The Engineering Experience squad is focused on accelerating developer productivity across Sonar's supply chain by providing a secure, reliable, performant, and standardized development ecosystem. Our goal is to empower teams to build and release with confidence, allowing them to concentrate on delivering exceptional products.

What We Do:

We own and operate the critical infrastructure that powers Sonar's development lifecycle, including:

  • Source Code Management: Maintaining and securing our GitHub presence through Infrastructure as Code.
  • Continuous Integration: Managing self-hosted CI infrastructure in AWS for image creation and job execution.
  • Release Validation: Ensuring artifact integrity and quality through comprehensive release checks.
  • Release Management: Streamlining artifact promotion and release orchestration via JFrog integration.
  • Secrets Management: Providing secure authentication and authorization for CI infrastructure and tools using HashiCorp Vault.
  • Dependency Management: Automating updates and security patching with Renovate.
  • GitHub Actions Platform: Delivering a scalable, reliable self-hosted environment for GitHub Actions in AWS.
  • Developer Self-Service: Enabling developer autonomy through our internal developer portal for key operations.

The Impact You Will Have:

As a Platform Engineer, you will be instrumental in evolving Sonar’s engineering experience. You will design, build, and maintain the core CI/CD pipelines and developer tooling that drive our development process. You’ll collaborate closely with engineering teams to enhance automation, security, and developer productivity, while championing best practices and optimizing key developer experience metrics.

On a Daily Basis, You Will:

  • Own and enhance our CI/CD pipelines, ensuring they are scalable, secure, and efficient.
  • Empower developers with self-service tools, reducing friction in the development process.
  • Measure and improve developer experience using data-driven insights and key performance metrics.
  • Advocate and educate, showcasing demos and best practices to keep teams informed.
  • Secure the software supply chain, ensuring industry-standard compliance and reducing security risks.
  • Automate infrastructure and pipeline configurations to reduce drift and improve reliability.
  • Collaborate with teams to establish standardized deployment and release processes.
  • Scale and optimize Sonar’s AWS Infrastructure: Self-hosted runners, CI tooling, and secrets management.
  • Lead cross-team collaboration, driving initiatives that improve engineering workflows.

Technical Skills You Will Demonstrate:

  • Strong experience in DevOps, CI/CD, and automation in cloud environments.
  • Strong programming skills in both statically typed (e.g., Java) and dynamically typed (e.g., Python) languages, complemented by expertise in Shell scripting (e.g., Bash).
  • Deep knowledge of AWS, HashiCorp Terraform, and AWS CDK.
  • Hands-on experience with GitHub, GitHub Actions, and build tools (Maven, Gradle, NPM, Yarn, MSBuild…).
  • Expertise in containerization technologies, including Docker, Kubernetes, and EKS.
  • Strong experience in Infrastructure as Code (IaC), Configuration as Code (CaC), and related practices.

Skills

Platform Engineering
Developer Experience
Infrastructure as Code
CI/CD
AWS
GitHub Actions
JFrog
Hashicorp Vault
Renovate
Source Code Management
Release Management
Secrets Management
Dependency Management

Sonar

Tools for code quality and security

About Sonar

SonarSource provides tools aimed at improving code quality and security for software developers. Its main products include SonarLint, an IDE plugin that gives real-time feedback on code quality; SonarQube, a self-managed solution for comprehensive code analysis and reporting; and SonarCloud, a cloud-based service that offers similar features with the convenience of cloud management. SonarSource operates on a subscription-based model, allowing clients to access its tools through annual subscriptions or usage-based pricing for cloud services. The company serves over 400,000 organizations worldwide, emphasizing the importance of writing clean, maintainable, and secure code. SonarSource's goal is to promote the philosophy of "Clean Code," which enhances the efficiency of development teams and improves the security and reliability of software applications.

Vernier, SwitzerlandHeadquarters
2008Year Founded
$444.6MTotal Funding
LATE_VCCompany Stage
Enterprise Software, CybersecurityIndustries
501-1,000Employees

Benefits

Flexible Work Hours
Hybrid Work Options
Professional Development Budget

Risks

Tidelift acquisition may cause integration challenges, disrupting Sonar's operations.
Cultural challenges may affect the partnership with Adactin in Australia.
New distribution agreement with QBS Software may lead to channel conflicts.

Differentiation

SonarSource supports over 30 programming languages, offering broad compatibility for developers.
SonarLint provides real-time feedback in IDEs, enhancing code quality during development.
SonarQube and SonarCloud offer comprehensive code analysis, ensuring high standards for codebases.

Upsides

Sonar's acquisition of Tidelift enhances its open source software security capabilities.
Partnership with Adactin expands Sonar's reach in the Australian market.
Integration with AI-driven tools boosts Sonar's code quality assessment efficiency.

Land your dream remote job 3x faster with AI