Experienced Security Tools Engineer – Static Code Analysis, Lund
Are you ready to be part of a Platform Engineering team that provides 900 developers with an Internal Developer Platform (IDP) that helps secure AXIS OS, the embedded Linux distribution that powers our products? This is an area where Axis is actively expanding, with continued investment that reflects its strategic importance to our product portfolio.
As part of our security tooling sub-team, you will play a key role in static code analysis, today centered on Coverity, and help AXIS OS developers use it to find and fix vulnerabilities before they ship. The long-term ambition is to grow this into a broader static code analysis ecosystem over time. If you are passionate about application security and static analysis and are looking for the possibility to work with like-minded professionals, then this can be the perfect opportunity for you!
Your future team
You will be part of a growing Platform Engineering team, divided into small, highly collaborative, and autonomous sub-teams. You will join our security tooling sub-team, responsible for the security-related tooling including vulnerability scanning and management, supply chain evaluation, and static code analysis. The IDP is built with a mix of open-source software, internally developed tools, and vendor licensed software. We’re active in several open-source communities and you’re encouraged to contribute to and engage with them.
You and your teammates own the sub-team backlog, and you are responsible for the evolution of your area of responsibility. You are encouraged to explore new ideas and technologies, and your teammates will be available for feedback and support. We are great at what we do, and we are sure you will be inspired by our drive to always improve and learn more. The tools you will work on are used by AXIS OS developers every day and you will be challenged and learn much from working close with them to improve how the work, day to day.
Our culture is characterized by openness, trust, and collaboration. Work/life balance and hanging out with your teammates at common fikas, lunches, and other social activities are important to us and our success. Like the rest of Axis, we don’t let ourselves get stuck in rigid processes. Rather, we rely on the Axis Act As One spirit and work closely to achieve our shared goals.
What will you do as a security tools engineer?
You will join our security tooling sub-team. Your initial focus will be on strengthening our work with Coverity, our static code analysis service, while also taking part in the sub-team’s broader work. You will work in close collaboration with AXIS OS developers to understand their needs and pain points and how static analysis can support them in their daily work, as well as support the use of Coverity for compliance purposes.