Semgrep
application security
An extensible developer-friendly application security platform that scans source code to surface true and actionable security issues with AI-assisted SAST, SCA, and Secrets Detection solutions.
Stellt gerade ein
Stellt Semgrep ein?
Ja. Stand 1. Oktober 2026 hat Semgrep 9 offene Stellen auf Metaintro. 2 davon wurden in den letzten 30 Tagen veröffentlicht.
Offene Stellen
Neueste zuerst. Gehalt, sofern in der Anzeige angegeben.
- Software Engineer InternEntwicklerSan Francisco · Hybrid · $2.4K/wkSan FranciscoHybrid$2.4K/wkvor 18 Tagen
- Head of Field Engineering - North AmericaVertriebSan Francisco · Hybrid · $222K – $277K/yrSan FranciscoHybrid$222K – $277K/yrvor 22 Tagen
- Senior Engineering Manager, GuardianProdukt-/ProjektmanagementHybrid · $230K – $288K/yr—Hybrid$230K – $288K/yr2. Sept. 2026
- Senior Engineering Manager, Software Supply Chain SecurityProdukt-/ProjektmanagementHybrid · $197K – $288K/yr—Hybrid$197K – $288K/yr2. Sept. 2026
- Sales Solutions Engineer - Digital NativeVertriebOregon · Hybrid · $152K – $190K/yrOregonHybrid$152K – $190K/yr12. Aug. 2026
- Senior/Staff Security ResearcherSicherheitOregon · Remote · $190K – $319K/yrOregonRemote$190K – $319K/yr24. Juli 2026
- Backend EngineerEntwicklerSan Francisco · Hybrid · $230K – $288K/yrSan FranciscoHybrid$230K – $288K/yr2. Feb. 2026
- Backend EngineerEntwicklerSan Francisco · Hybrid · $163K – $246.5K/yrSan FranciscoHybrid$163K – $246.5K/yr2. Feb. 2026
Einstellungsmuster
Wie schnell Semgrep neue Stellen ausschreibt und mit welchem Arbeitsmodell.
Neue Stellen pro MonatStellen nach Monat der ersten Veröffentlichung
Arbeitsmodelle der StellenAnteil der offenen Stellen
Kunden
Alle 14 Unternehmen, die Semgrep als Kunden nennt.
Was ihre Kunden sagen
Zitate von Personen bei Kunden von Semgrep.
“I became an advocate of Semgrep when we found an open source package where the vulnerability actually affected us in an exploitable way, and we would have otherwise missed it as part of the sea of noise in other tools.”
“While getting an awesome scanner like Semgrep Code for our SAST was great, Reachability Analysis via Semgrep Supply Chain was the cherry on top.”
““Getting the developers aligned on a SAST product and making them use it is the hardest part of the job for an AppSec Engineer. We were able to achieve this with Semgrep Code.””
““With Semgrep, we’ve not only cut scan times dramatically, we’ve also built a more automated, scalable AppSec program that meets our developers where they work.””
““We treat engineers as partners, not just stakeholders. Semgrep helps us meet them where they are.””
23 weitere Zitate anzeigenWeniger anzeigen
““Now, developers see exactly what the issue is, right in the pull request. They know what to fix and why without switching tools,””
“Semgrep isn’t just another scanner,” says Tschammer. “It’s part of how we build.”
“Pairing Wiz with Semgrep gave us critical context, ” says Tschammer. “We’re no longer chasing noise. We can zero in on what’s actually reachable and prioritize what truly matters.”
“Everyone — security, engineering, leadership cares about velocity,” says Tschammer . “But it has to be safe. Semgrep gives us the confidence to move fast without cutting corners.”
“Semgrep helped us strike that balance. It gives developers just enough signal at the right moment without overwhelming them.”
“We discovered Semgrep through a mix of online research and peer feedback,” recalls Máirtín O’Sullivan, Staff Product Security Engineer. “We were immediately impressed by the transparency, the customization, and how quickly we could write new rules. But the real game-changer was reachability analysis. It helped us cut through the noise and focus on what actually mattered.”
““With Semgrep, I trust that a critical finding will be relevant to us. It saves time and helps our developers focus on the issues that actually matter.””
“Semgrep Supply Chain has helped reduce the noise by 95%”
“The goal was not to ‘add another tool,’ but to implement high-quality, scalable security automation that fits naturally into how developers work.”
“Semgrep empowers our developers with real-time security insights, cutting remediation time by 50% while seamlessly integrating into our workflow.”
“Semgrep lets us treat security and code quality as first-class priorities. The combination of customizable CI/CD configurations, custom rules, and finding policies gives us a SAST program that actually fits our codebase.”
““Semgrep did not just help us find issues. It helped us build the security program we always intended to have.””
““Semgrep gave us the context we needed to make good decisions.””
““Being able to answer leadership quickly with confidence and evidence is exactly the capability we set out to build.””
““It felt like having another reviewer on the PRs, not a blocker but a partner.””
““Semgrep helped us understand our environment in a way we simply could not before.””
““Semgrep felt practical. It fit how our engineers already worked.””
““Our goal was not to bolt on security. It was to build a foundation that would support ICE for years to come.””
““We’ve seen measurable improvements in remediation time because findings are clearer, more actionable, and easier to prioritize. Developers now view the tool as part of their natural workflow rather than an external gate.””
““With Semgrep, that experience changed dramatically. The introduction of features like Assistant, which combines auto-triage noise filtering with clear remediation recommendations, has made findings far more actionable.””
““Onboarding Semgrep was straightforward, with quick integration into our pipelines. A pleasant surprise was the low barrier to writing custom rules, which gave the team early wins and built confidence in the program.””
““What drew me in early on was Semgrep's simplicity, transparency, and power, plus the sense that this was a company that truly cared, backed by a passionate community, compared to traditional security tools that often felt like black boxes.””
““Striking the right balance between speed and risk management requires more than just better tooling. It demands ongoing communication, empathy, and a culture where security is seen as an enabler rather than a blocker.””
KI-Produktstarts und Partner
Was Semgrep auf den Markt gebracht hat und mit wem es bei KI zusammenarbeitet.
- ProduktstartSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.
- ProduktstartMultimodalMultimodal combines AI reasoning with rule-based analysis for detection, triage, and remediation.
- ProduktstartSemgrep GuardianSemgrep Guardian scans and fixes AI-generated code the moment it's written.
- ProduktstartSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.
Gefragte Fähigkeiten
Am häufigsten in offenen Stellenanzeigen.
Tech-Stack
- Sicherheit
- OneTrust
- Bibliotheken
- Bootstrap
- CDN
- jsDelivr
- Marketing
- VWO
- Marketo
- Analysen
- Google Tag Manager
- Google Analytics 4
Unternehmensdaten
- Gegründet
- 2017
- Branche
- application security
- Branche (NAICS)
- Information und Kommunikation
- Vergleichbares Unternehmen
- checkmarx
- Webseite
- semgrep.dev
- Karriere
- semgrep.dev/about/careers
Stellen nach Standort
Wo Semgrep einstellt. Wählen Sie eine Stadt, um die Stellen dort zu sehen.
Fragen zu Semgrep
- Stellt Semgrep ein?
- Ja. Stand 1. Oktober 2026 hat Semgrep 9 offene Stellen auf Metaintro. 2 davon wurden in den letzten 30 Tagen veröffentlicht. Die meisten entfallen auf Product/Project Management (2), Sales (2) und Developer (1).
- Wo stellt Semgrep ein?
- Semgrep stellt in Oregon, United States und San Francisco ein, die meisten offenen Stellen gibt es in Oregon, United States.
- Bietet Semgrep Remote- oder Hybridarbeit an?
- 29 % der offenen Stellen sind hybrid und 43 % remote.
- Wer sind die Kunden von Semgrep?
- Semgrep nennt 14 Kunden, darunter Lyft, Cribl, Vanta, Tide und SoSafe.