This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Lead Engineer to own and evolve the Checkmarx application security scanning platform at enterprise scale. This role blends Site Reliability Engineering (SRE), platform automation, and DevSecOps enablement, ensuring Checkmarx remains highly available, scalable, secure, and deeply integrated into CI/CD pipelines. The Lead Engineer will act as the technical authority for Checkmarx, driving reliability, performance, automation, upgrades, and cloud/container modernization while partnering with Application Security, DevOps, and Engineering teams.
Job Responsibility:
Own end‑to‑end reliability, availability, and performance of the Checkmarx SAST platform across non‑prod, prod, and BCP environments
Define and manage SLIs, SLOs, error budgets, and operational KPIs for scanning throughput, queue latency, and platform health
Lead incident response, root cause analysis (RCA), and permanent remediation for platform outages or scan failures
Design and implement automation for provisioning, configuration, scaling, upgrades, and maintenance of Checkmarx components
Build Infrastructure as Code (IaC) using tools such as Terraform, Ansible, or equivalent
Automate routine operational tasks (engine lifecycle, scan queue tuning, data retention, index maintenance, backups)
Reduce toil by converting manual operational work into resilient, self‑healing automation
Own and enhance Checkmarx integrations with CI/CD platforms (GitHub, Jenkins, Azure DevOps, Harness, etc.)
Ensure seamless developer experience with pipeline‑based security scanning and fast feedback loops
Partner with Application Security teams to improve scan performance, false‑positive reduction, and adoption
Implement and maintain full‑stack observability (metrics, logs, alerts, dashboards) using tools such as Splunk, Prometheus, Grafana, AppDynamics, etc.
Build actionable alerts to detect scan backlog growth, engine saturation, DB/storage issues, and platform degradation
Drive proactive monitoring rather than reactive firefighting
Lead platform upgrades, hotfixes, and vendor‑recommended lifecycle management
Drive containerization and cloud‑readiness initiatives for Checkmarx components where applicable
Improve resiliency through active‑active / DR strategies, backup validation, and BCP testing
Evaluate new Checkmarx features, plugins, and security scanning enhancements
Serve as SME and technical escalation point for Checkmarx across the enterprise
Mentor engineers and promote SRE best practices, automation standards, and operational excellence
Produce clear architecture, runbooks, and operational documentation
Influence roadmap decisions with data‑driven insights and engineering rigor
Requirements:
5+ years of Systems Engineering, Technology Architecture experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
5+ years of experience in Platform Engineering, SRE, DevOps, or Systems Engineering roles
Hands‑on experience with Checkmarx (SAST) or similar AppSec scanning tools (e.g., Fortify, Veracode, SonarQube)
Strong experience with Windows-based systems, networking, storage, and performance tuning
Solid understanding of CI/CD pipelines and DevSecOps practices