Sonatype is the software supply chain security company. We provide the world’s best end-to-end software supply chain security solution, combining the only proactive protection against malicious open source, the only enterprise grade SBOM management and the leading open source dependency management platform. This empowers enterprises to create and maintain secure, quality, and innovative software at scale.
As founders of Nexus Repository and stewards of Maven Central, the world’s largest repository of Java open-source software, we are software pioneers and our open source expertise is unmatched. We empower innovation with an unparalleled commitment to build faster, safer software and harness AI and data intelligence to mitigate risk, maximize efficiencies, and drive powerful software development.More than 2,000 organizations, including 70% of the Fortune 100 and 15 million software developers, rely on Sonatype to optimize their software supply chains.
- At Sonatype, we empower developers with best-in-class tools to build secure, high-quality software at scale. Our mission is to create a world where software is always secure and developers can innovate without fear. Trusted by thousands of organizations, including Fortune 500 companies, we are pioneers in software supply chain management, open-source security, and DevSecOps.
- We're looking for a Senior Devops Engineer to help us shape the future of secure software development. If you love solving complex problems, working with cutting-edge technologies, and mentoring engineering teams, we’d love to hear from you.
What You’ll Do
- As a Senior Devops Engineer, you will play a critical role in designing, developing, and scaling Sonatype’s core products. You’ll work across the stack—building powerful backend services, intuitive frontend experiences, and robust cloud-native applications. You'll also provide technical leadership and mentorship, influencing engineering best practices across the team.
Key Responsibilities
- You are an engineer who has 4+ years of experience running high availability systems and supporting infrastructure in customer-facing production environments.
- You are motivated by the opportunity to define repeatable practices for service delivery- via modular, reusable automation and a developer platform that enables self-service delivery of services. You will also participate in the governance controls that reduce risk and promote standardization across the organization.
- You will be a member of the Sonatype Developer Experience team, which has a wide range of responsibilities to drive service delivery excellence for Sonatype products and services that are customer-facing and customer-adjacent.
- You will refine a set of high level enablement practices - for instance, design review, service launch coordination, production readiness assessment, service level objective definition / review, incident management, and cost awareness- to support delivery teams at various phases of their service lifecycle and maturity.
- You will collaborate closely with Sonatype delivery teams to define product specific metrics and remediations through system analysis, testing, and fault troubleshooting.
What We’re Looking For
- We’re seeking an experienced engineer who thrives in an agile, collaborative environment and enjoys tackling technical challenges.
Minimum Qualifications
- Proficiency with a high-level programming language (eg: Python, Go), bash scripting and linux
- Proficiency in modern technical operating practices
- System architecture & design experience
- Continuous integration / continuous delivery (Jenkins, FluxCD and GitHub Actions)
- Infrastructure as Code (Terraform)
- Cloud services (AWS) and Kubernetes
- SRE principles & practices
- Experience with specific AWS offerings, including many of:
- ECS/EKS/ECR
- EC2, S3, RDS, VPCs
- IAM Policy Docs, Policies, Roles, and Instance Profiles
- Cloudwatch Logs
- Docker Containers and orchestration (ECS, EKS)
- Terraform and the use of Terraform modules
- Kubernetes cluster concepts and design
- Experience improving service observability: monitoring agents, metrics, logging and dashboards. Knowledge of OpenTelemetry and Prometheus and observability platforms similar to DataDog, Splunk, Dynatrace or Observe
- Comfortable participating in an on-call rotation with teammates to respond and triage production issue escalations during off-hours
At Sonatype, we value diversity and inclusivity. We offer perks such as parental leave, diversity and inclusion working groups, and flexible working practices to allow our employees to show up as their whole selves. We are an equal-opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. If you have a disability or special need that requires accommodation, please do not hesitate to let us know.