Associate Security Researcher
hace 6 meses
Sonatype is the software supply chain management company. We're on a mission to change how the world innovates by making software development easier. From running the world's largest repository of Java open-source components (Maven Central) to inventing componentized software development and then software supply chain management to creating the only solution that stops malicious open-source malware in its tracks, we're constantly leading the industry while helping thousands of customers manage open source every day.
Already used by 15 million developers, we have lofty goals for our technology to be in the hands of every engineering team. And we need you to do that. Join us
Sonatype’s mission is to enable organizations to better manage their software supply chain. We offer a series of products and services including the Sonatype Nexus Repository and Sonatype Lifecycle.
The Security Researcher will investigate and analyze vulnerabilities in open-source software.
Sonatype is looking for a passionate, driven and talented Security Researcher to provide high quality security data from researching software vulnerabilities. This high-quality security data ensures that our customers are getting maximum value out of our products making them feel like they are part of the Sonatype family. If you are a positive-thinker and problem-solver and believe that customer success and company success go hand-in-hand, this is a great job for you. This position will provide a valuable learning opportunity with great potential to grow your newly started career in cyber-security. Enjoy your job as you work in a fast-paced, flexible, and fun environment, with talented, diverse, and forward-thinking individuals.
**Responsibilities**:
- Review, isolate, analyze, and reverse engineer vulnerabilities in open-source software.
- Document attack capabilities.
- Provide detection and remediation guidance.
- Aid in ideas and prototypes for new tooling.
- Collaborate with other team members toward shared product goals.
- Improve Sonatype products by providing valuable security data.
- Work with technology and business team members to define and refine requirements in an agile development environment
**Required Qualifications**:
- Bachelor of Science Degree in Computer Science, Cybersecurity, Engineering, or related field; or at least 4 years of related work experience in lieu of a degree
- Basic knowledge of Java, C#, or JavaScript.
**Desired Qualifications**:
- Excellent oral and written communication skills.
- Excellent organizational skills and detail oriented.
- Ability to work independently and as part of a team
We support our remote employee experience. While we have offices in Fulton MD, Tyson's Corner VA, London UK, and Sydney AUS, we are remote first and always have been. We use a number of communication tools to connect across the company, keep information flowing day to day, and meet face-to-face on a targeted basis at organization and team meetups.
Thousands of organizations and millions of developers use our software. If you have a passion for improving how the world develops software, Sonatype is the right place for you.
At Sonatype, we value diversity and inclusivity. We offer perks such as parental leave, diversity and inclusion working groups, and flexible working practices to allow our employees to show up as their whole selves. We are an equal-opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. If you have a disability or special need that requires accommodation, please do not hesitate to let us know.
LI-Remote
-
Security Researcher
hace 7 meses
Desde casa, Colombia Sonatype A tiempo completoSonatype is the software supply chain management company. We're on a mission to change how the world innovates by making software development easier. From running the world's largest repository of Java open-source components (Maven Central) to inventing componentized software development and then software supply chain management to creating the only solution...
-
Cloud Azure Security Engineer
hace 7 meses
Desde casa, Colombia Formula.Monks A tiempo completo**Position Overview**: **Responsibilities**: Develop and maintain security control policies and procedures for cloud environments, ensuring alignment with industry standards, regulatory requirements, and organizational objectives. Collaborate with stakeholders to understand business requirements and translate them into actionable security controls and...
-
Security Engineer
hace 6 meses
Desde casa, Colombia Caseware A tiempo completoCaseware is one of Canada's original Fintech companies, having led the global audit and accounting software industry for over 30 years, with more than 500,000 users across 130 countries and available in 16 different languages. While you might not have heard of us (yet) over 36,000 accounting and audit professionals list Caseware as a skill on their LinkedIn...
-
QA Associate
hace 6 meses
Desde casa, Colombia Fusemachines A tiempo completo**About Fusemachines** Fusemachines is a leading AI strategy, talent, and education services provider. Founded by Sameer Maskey Ph.D., Adjunct Associate Professor at Columbia University, Fusemachines has a core mission of democratizing AI. With a presence in 4 countries (Nepal, United States, Canada, and Dominican Republic and more than 350 full-time...
-
Especialista Cloud
hace 7 meses
Desde casa, Colombia TIVIT A tiempo completoEn estos momentos nos encontramos en búsqueda de un talento para cumplir el rol de **Especialista Cloud.** **Requisitos**: - Profesional en Ingeniería de Sistemas, electrónica, Telecomunicaciones o afines. - Certificaciones en: - Microsoft Certified Professional - MCP - Azure Security Engineer Associate - Azure DevOps Engineer Expert - Azure Solutions...
-
Mid/senior Cloud Network Engineer
hace 7 meses
Desde casa, Colombia Provectus A tiempo completo**Provectus** is a leading technology company dedicated to empowering businesses through cutting-edge solutions and digital innovation. With a strong focus on leveraging emerging technologies and data-driven strategies, we help our clients achieve their goals and stay ahead in today's dynamic market. **Responsibilities**: - Design, implement, and manage...
-
Sr. Systems Analyst
hace 2 días
Desde casa, Colombia Sierra Space A tiempo completoDo you have an eye for detail and a passion for developing innovation solutions? Join our team! As a Sr. Systems Analyst, you will be using your skills and expertise to assist in the analysis, development, and configuration of our existing software and systems that address business requirements and processes. You'll be responsible for evaluating the...
-
Sr. Aws DevOps Engineer- Kubernetes Expertise
hace 7 meses
Desde casa, Colombia Cloudelligent A tiempo completo**Position Title**: Sr. AWS DevOps Engineer - Kubernetes Expertise **Job Timings**: 8am-5pm Central Time (US) **Location**: Colombia (Work From Home) About Cloudelligent Cloudelligent is Cloud-native consultancy and AWS Advanced consulting partner! We specialize in providing bespoke cloud solutions to the SMB & enterprise segments as well as the public...
-
Senior DevOps Engineer
hace 7 meses
Desde casa, Colombia Fusemachines A tiempo completo**About Fusemachines** Fusemachines is a leading AI strategy, talent, and education services provider. Founded by Sameer Maskey Ph.D., Adjunct Associate Professor at Columbia University, Fusemachines has a core mission of democratizing AI. With a presence in 4 countries (Nepal, the United States, Canada, and the Dominican Republic and more than 400...
-
Business Development Associate
hace 7 meses
Desde casa, Colombia CertiK A tiempo completo**About the Company** One of the fastest-growing and most trusted companies in blockchain security, CertiK is a true market leader. To date, CertiK has worked with over 3,200 Enterprise clients, secured over $310 billion worth of digital assets, and has detected over 60,000 vulnerabilities in blockchain code. Our clients include leading projects such as...
-
Senior Software Engineer
hace 7 meses
Desde casa, Colombia TerraPay A tiempo completo**About TerraPay** Global money movement, simplified! - Powering global payments across 7.5 billion bank accounts, 6 billion cards, and 2.1 billion wallets - 121 banking partnerships, 210+ send countries, 140+ receive countries. TerraPay is the pulse of global payments innovation. We're the bridge that connects people and businesses worldwide, empowering...
-
Azure Cloud Infrastructure Engineer
hace 7 meses
Desde casa, Colombia J.S. Held A tiempo completoThe Company **Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work?** J.S. Held is a global consulting firm providing technical, scientific, and financial expertise across all assets and value at risk. Our professionals serve as trusted advisors to organizations...