Przejdź do głównej treści

Semgrep

application security

An extensible developer-friendly application security platform that scans source code to surface true and actionable security issues with AI-assisted SAST, SCA, and Secrets Detection solutions.

Teraz rekrutuje

9otwartych stanowisk−14%względem poprzedniego tygodnia

Otwarte stanowiska

Od najnowszych. Wynagrodzenie podajemy, gdy jest w ogłoszeniu.

Dynamika rekrutacji

Jak szybko firma Semgrep dodaje stanowiska i w jakim trybie pracy.

Nowe stanowiska w każdym miesiącuStanowiska opublikowane po raz pierwszy w danym miesiącu

5
0
2
0
lipiecsierpieńwrzesieńpaździernik
październik: 0 nowych stanowisk.

Tryb pracy na stanowiskachUdział w otwartych stanowiskach

29%
43%
29%
HybrydowoZdalnieNie podano
72% stanowisk to praca hybrydowa lub zdalna.

Klienci

Wszystkie 14 firm, które Semgrep wymienia jako klientów.

Klienci, którzy teraz rekrutują6

Studia przypadków8

Co mówią ich klienci

Cytaty osób z firm będących klientami firmy Semgrep.

“I became an advocate of Semgrep when we found an open source package where the vulnerability actually affected us in an exploitable way, and we would have otherwise missed it as part of the sea of noise in other tools.”

Rob Picard · Security Lead · Vanta

“While getting an awesome scanner like Semgrep Code for our SAST was great, Reachability Analysis via Semgrep Supply Chain was the cherry on top.”

Aleksandr Krasnov · Staff Security Engineer · Thinkific

““Getting the developers aligned on a SAST product and making them use it is the hardest part of the job for an AppSec Engineer. We were able to achieve this with Semgrep Code.””

Aleksandr Krasnov · Staff Security Engineer · Thinkific

““With Semgrep, we’ve not only cut scan times dramatically, we’ve also built a more automated, scalable AppSec program that meets our developers where they work.””

Mubasher Chaudhary · Application Security Engineer · SoSafe

““We treat engineers as partners, not just stakeholders. Semgrep helps us meet them where they are.””

SoSafe
Pokaż jeszcze 23 cytaty

““Now, developers see exactly what the issue is, right in the pull request. They know what to fix and why without switching tools,””

Mubasher Chaudhary · SoSafe

“Semgrep isn’t just another scanner,” says Tschammer. “It’s part of how we build.”

Tschammer · Synthesia

“Pairing Wiz with Semgrep gave us critical context, ” says Tschammer. “We’re no longer chasing noise. We can zero in on what’s actually reachable and prioritize what truly matters.”

Tschammer · Synthesia

“Everyone — security, engineering, leadership cares about velocity,” says Tschammer . “But it has to be safe. Semgrep gives us the confidence to move fast without cutting corners.”

Tschammer · Synthesia

“Semgrep helped us strike that balance. It gives developers just enough signal at the right moment without overwhelming them.”

O’Sullivan · Synthesia

“We discovered Semgrep through a mix of online research and peer feedback,” recalls Máirtín O’Sullivan, Staff Product Security Engineer. “We were immediately impressed by the transparency, the customization, and how quickly we could write new rules. But the real game-changer was reachability analysis. It helped us cut through the noise and focus on what actually mattered.”

Máirtín O’Sullivan · Staff Product Security Engineer · Synthesia

““With Semgrep, I trust that a critical finding will be relevant to us. It saves time and helps our developers focus on the issues that actually matter.””

Minh Nghiem · Senior Security Engineer · Homebase

“Semgrep Supply Chain has helped reduce the noise by 95%”

Khanh Le-Do · Security Software Engineer · Lyft

“The goal was not to ‘add another tool,’ but to implement high-quality, scalable security automation that fits naturally into how developers work.”

Yoni Weintrob · Chief Information Security Officer · Sola Security

“Semgrep empowers our developers with real-time security insights, cutting remediation time by 50% while seamlessly integrating into our workflow.”

Jakub Kneppo · Application Security Principal · Copper

“Semgrep lets us treat security and code quality as first-class priorities. The combination of customizable CI/CD configurations, custom rules, and finding policies gives us a SAST program that actually fits our codebase.”

Zach Rayburn · Staff Product Security Engineer · Cribl

““Semgrep did not just help us find issues. It helped us build the security program we always intended to have.””

Neil · ICE Services

““Semgrep gave us the context we needed to make good decisions.””

Greg · ICE Services

““Being able to answer leadership quickly with confidence and evidence is exactly the capability we set out to build.””

Neil · ICE Services

““It felt like having another reviewer on the PRs, not a blocker but a partner.””

Greg Parfitt · ICE Services

““Semgrep helped us understand our environment in a way we simply could not before.””

Neil · ICE Services

““Semgrep felt practical. It fit how our engineers already worked.””

Greg Parfitt · the Application Security Lead · ICE Services

““Our goal was not to bolt on security. It was to build a foundation that would support ICE for years to come.””

Neil Johnson · VP of Security · ICE Services

““We’ve seen measurable improvements in remediation time because findings are clearer, more actionable, and easier to prioritize. Developers now view the tool as part of their natural workflow rather than an external gate.””

Adrian Puente Zubiaur · Principal Security Engineer

““With Semgrep, that experience changed dramatically. The introduction of features like Assistant, which combines auto-triage noise filtering with clear remediation recommendations, has made findings far more actionable.””

Adrian Puente Zubiaur · Principal Security Engineer

““Onboarding Semgrep was straightforward, with quick integration into our pipelines. A pleasant surprise was the low barrier to writing custom rules, which gave the team early wins and built confidence in the program.””

Adrian Puente Zubiaur · Principal Security Engineer

““What drew me in early on was Semgrep's simplicity, transparency, and power, plus the sense that this was a company that truly cared, backed by a passionate community, compared to traditional security tools that often felt like black boxes.””

Adrian Puente Zubiaur · Principal Security Engineer

““Striking the right balance between speed and risk management requires more than just better tooling. It demands ongoing communication, empathy, and a culture where security is seen as an enabler rather than a blocker.””

Adrian Puente Zubiaur · Principal Security Engineer

Premiery i partnerstwa w AI

Co firma Semgrep wprowadziła na rynek i z kim współpracuje w zakresie AI.

  • PremieraSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.
  • PremieraMultimodalMultimodal combines AI reasoning with rule-based analysis for detection, triage, and remediation.
  • PremieraSemgrep GuardianSemgrep Guardian scans and fixes AI-generated code the moment it's written.
  • PremieraSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.

Poszukiwane umiejętności

Najczęstsze w otwartych ogłoszeniach.

Stos technologiczny

Bezpieczeństwo
OneTrust
Biblioteki
Bootstrap
CDN
jsDelivr
Marketing
VWO
Marketo
Analityka
Google Tag Manager
Google Analytics 4

Dane firmy

Założona
2017
Branża
application security
Sektor (NAICS)
Informacja i komunikacja
Podobna firma
checkmarx
Strona internetowa
semgrep.dev

Stanowiska według lokalizacji

Gdzie rekrutuje firma Semgrep. Wybierz miasto, aby zobaczyć stanowiska.

Pytania o firmę Semgrep

Czy firma Semgrep obecnie rekrutuje?
Tak. Firma Semgrep ma 9 otwartych stanowisk. Najwięcej jest w zespołach: Product/Project Management (2), Sales (2) i Developer (1).
Gdzie rekrutuje firma Semgrep?
Firma Semgrep rekrutuje w miastach: Oregon, United States i San Francisco. Najwięcej otwartych stanowisk: Oregon, United States.
Czy firma Semgrep oferuje pracę zdalną lub hybrydową?
29% otwartych stanowisk to praca hybrydowa, a 43% – zdalna.
Kim są klienci firmy Semgrep?
Firma Semgrep wymienia 14 klientów, w tym: Lyft, Cribl, Tide, SoSafe i Copper.
Powrót do nawigacji