Code Security Developer Advocate

Geneva / Annecy / Bochum / Remote

SonarSource

Accelerate Clean Code for developers and teams to enable clear, readable, understandable, maintainable, portable, reliable and secure code standards across your organization.

View company page

Sonar’s industry-leading solution enables developers and development teams to write clean code and remediate existing code organically, so they can focus on the work they love and maximize the value they generate for businesses. Its open source and commercial solutions – SonarLint, SonarCloud, and SonarQube – support 29 programming languages. Trusted by more than 300,000 organizations globally, Sonar is considered integral to delivering better software.
Sonar’s Marketing team is looking for a passionate Code Security Developer Advocate to play an essential role in growing and educating its fast-growing community.
Sonar’s code security analyzer is designed to fulfill the need of every developer: spotting tricky security issues as fast as possible while generating very little noise. Cross-Site Scripting (XSS), Injection Flaws, and Broken Authentication are some examples of those security issues.
The impact you can have 
As a Developer Advocate, you join a team of talented engineers to further the clean code mission by reaching and educating developers across their preferred forums. As the public voice and face of Sonar, you are the thought leader for clean code in your community, helping fellow developers write better, more secure code.

On a daily basis, you will

  • Engage and build mindshare with developers across different programming languages’ communities
  • Strengthen collaboration with communities, forums, and projects by establishing integrations or other modes of deep alignment
  • Create compelling technical content delivered as blogs, ebooks, podcasts, webinars, videos, and articles
  • Develop unique demos in conjunction with vendors and partners in the ecosystem
  • Host meetups, orchestrate workshops, and speak at conferences and events
  • Promote and drive attendance for company-hosted developer events and webinars
  • Establish relationships and reach with technology communities and organizations such as OWASP, OpenSSF, MITRE, SANS, Black Hat, DEFCON, etc
  • Work closely with the code security analyzer team, take part in the technical discussions, and have an impact on the team's short and long-term objectives
  • Partner with community managers, sales engineers, and product marketers to advocate for clean code in diverse forums
  • Collaborate with community managers and other advocates to enhance ecosystem engagement
  • Leverage social media presence to amplify Sonar brand within the developer community

The skills you will demonstrate

  • Mastering code security basics, including knowing most common vulnerabilities, how to locate vulnerabilities in the code, how to exploit basic vulnerabilities
  • Prior experience presenting code security related subjects to technical audiences
  • Experience in technical writing in blogs, articles, or tutorials about code security
  • Fluency in source code quality: tests (unit and functional), CI/CD
  • Proven results of scaling community presence for emerging solution categories
  • Track record of success getting speaking abstracts accepted into technical conferences
  • Growing following on social media platforms including Twitter, GitHub, Medium, YouTube, LinkedIn
  • Exceptional communication skills with technical audiences
  • Collaboration DNA

Qualification you will have

  • 10+ years as a technologist in one or more of the following roles: developer advocate, evangelist, security architect, developer, AppSec engineer, code security researcher
  • Computer science or equivalent degree
Why you will love it here
• Safe work culture - we value respect, kindness, and the right to fail.• Flexible hours - we schedule our days in order to be effective at work, while also being able to enjoy life’s important moments.• Great people - we value people skills as much as technical skills and strive to keep things friendly and laid back. Still, that does not prevent us to be passionate leaders in our domains. Our 300+ SonarSourcers from 33 different nationalities can relate!• Work-life balance - keeping a healthy work-life balance is important. This is why we have a hybrid work policy and some people prefer working some days from home.• Always keep learning - in an ever-changing industry, learning new skills is a must, and we're happy to help our team to acquire them.
What we do
Sonar was started by a team of developers that wanted to change the way code is built in an agile development process. The company was created to develop the open-source tool SonarQube, which is now the standard in code quality management with over 350,000 instances deployed today. Every day we are focused on solving developers’ next big problem.
Who we are
At Sonar we believe in people, excellence, and delivery. We’re a team of problem solvers and overachievers who seek out others who are also passionate and relentless in their respective missions. We want to work with people who are ready to fasten their seat belts and be part of an incredible ride. We work hard not because we’re told to, but because we genuinely love what we do and do what we love. If there’s one main message we want you to remember about us, it’s that we push others to be best in class at whatever they do: choose your battle, innovate, take risks, and lead change. Join us; we’ll be smarter and stronger together.
If this sounds like you, apply now!

Tags: Agile Application security CI/CD Computer Science Exploit GitHub Open Source OWASP SANS Scripting SonarQube Vulnerabilities XSS

Perks/benefits: Conferences Flex hours Team events

Regions: Remote/Anywhere Europe
Job stats:  18  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.