Semgrep
application security
An extensible developer-friendly application security platform that scans source code to surface true and actionable security issues with AI-assisted SAST, SCA, and Secrets Detection solutions.
Teraz rekrutuje
Otwarte stanowiska
Od najnowszych. Wynagrodzenie podajemy, gdy jest w ogłoszeniu.
- Software Engineer InternProgramistaSan Francisco · Hybrydowo · $2.4K/wkSan FranciscoHybrydowo$2.4K/wk18 dni temu
- Head of Field Engineering - North AmericaSprzedażSan Francisco · Hybrydowo · $222K – $277K/yrSan FranciscoHybrydowo$222K – $277K/yr22 dni temu
- Senior Engineering Manager, GuardianZarządzanie Produktem/ProjektemHybrydowo · $230K – $288K/yr—Hybrydowo$230K – $288K/yr2 wrz 2026
- Senior Engineering Manager, Software Supply Chain SecurityZarządzanie Produktem/ProjektemHybrydowo · $197K – $288K/yr—Hybrydowo$197K – $288K/yr2 wrz 2026
- Sales Solutions Engineer - Digital NativeSprzedażOregon · Hybrydowo · $152K – $190K/yrOregonHybrydowo$152K – $190K/yr12 sie 2026
- Senior/Staff Security ResearcherBezpieczeństwoOregon · Zdalnie · $190K – $319K/yrOregonZdalnie$190K – $319K/yr24 lip 2026
- Backend EngineerProgramistaSan Francisco · Hybrydowo · $230K – $288K/yrSan FranciscoHybrydowo$230K – $288K/yr2 lut 2026
- Backend EngineerProgramistaSan Francisco · Hybrydowo · $163K – $246.5K/yrSan FranciscoHybrydowo$163K – $246.5K/yr2 lut 2026
Dynamika rekrutacji
Jak szybko firma Semgrep dodaje stanowiska i w jakim trybie pracy.
Nowe stanowiska w każdym miesiącuStanowiska opublikowane po raz pierwszy w danym miesiącu
Tryb pracy na stanowiskachUdział w otwartych stanowiskach
Klienci
Wszystkie 14 firm, które Semgrep wymienia jako klientów.
Co mówią ich klienci
Cytaty osób z firm będących klientami firmy Semgrep.
“I became an advocate of Semgrep when we found an open source package where the vulnerability actually affected us in an exploitable way, and we would have otherwise missed it as part of the sea of noise in other tools.”
“While getting an awesome scanner like Semgrep Code for our SAST was great, Reachability Analysis via Semgrep Supply Chain was the cherry on top.”
““Getting the developers aligned on a SAST product and making them use it is the hardest part of the job for an AppSec Engineer. We were able to achieve this with Semgrep Code.””
““With Semgrep, we’ve not only cut scan times dramatically, we’ve also built a more automated, scalable AppSec program that meets our developers where they work.””
““We treat engineers as partners, not just stakeholders. Semgrep helps us meet them where they are.””
Pokaż jeszcze 23 cytatyPokaż mniej
““Now, developers see exactly what the issue is, right in the pull request. They know what to fix and why without switching tools,””
“Semgrep isn’t just another scanner,” says Tschammer. “It’s part of how we build.”
“Pairing Wiz with Semgrep gave us critical context, ” says Tschammer. “We’re no longer chasing noise. We can zero in on what’s actually reachable and prioritize what truly matters.”
“Everyone — security, engineering, leadership cares about velocity,” says Tschammer . “But it has to be safe. Semgrep gives us the confidence to move fast without cutting corners.”
“Semgrep helped us strike that balance. It gives developers just enough signal at the right moment without overwhelming them.”
“We discovered Semgrep through a mix of online research and peer feedback,” recalls Máirtín O’Sullivan, Staff Product Security Engineer. “We were immediately impressed by the transparency, the customization, and how quickly we could write new rules. But the real game-changer was reachability analysis. It helped us cut through the noise and focus on what actually mattered.”
““With Semgrep, I trust that a critical finding will be relevant to us. It saves time and helps our developers focus on the issues that actually matter.””
“Semgrep Supply Chain has helped reduce the noise by 95%”
“The goal was not to ‘add another tool,’ but to implement high-quality, scalable security automation that fits naturally into how developers work.”
“Semgrep empowers our developers with real-time security insights, cutting remediation time by 50% while seamlessly integrating into our workflow.”
“Semgrep lets us treat security and code quality as first-class priorities. The combination of customizable CI/CD configurations, custom rules, and finding policies gives us a SAST program that actually fits our codebase.”
““Semgrep did not just help us find issues. It helped us build the security program we always intended to have.””
““Semgrep gave us the context we needed to make good decisions.””
““Being able to answer leadership quickly with confidence and evidence is exactly the capability we set out to build.””
““It felt like having another reviewer on the PRs, not a blocker but a partner.””
““Semgrep helped us understand our environment in a way we simply could not before.””
““Semgrep felt practical. It fit how our engineers already worked.””
““Our goal was not to bolt on security. It was to build a foundation that would support ICE for years to come.””
““We’ve seen measurable improvements in remediation time because findings are clearer, more actionable, and easier to prioritize. Developers now view the tool as part of their natural workflow rather than an external gate.””
““With Semgrep, that experience changed dramatically. The introduction of features like Assistant, which combines auto-triage noise filtering with clear remediation recommendations, has made findings far more actionable.””
““Onboarding Semgrep was straightforward, with quick integration into our pipelines. A pleasant surprise was the low barrier to writing custom rules, which gave the team early wins and built confidence in the program.””
““What drew me in early on was Semgrep's simplicity, transparency, and power, plus the sense that this was a company that truly cared, backed by a passionate community, compared to traditional security tools that often felt like black boxes.””
““Striking the right balance between speed and risk management requires more than just better tooling. It demands ongoing communication, empathy, and a culture where security is seen as an enabler rather than a blocker.””
Premiery i partnerstwa w AI
Co firma Semgrep wprowadziła na rynek i z kim współpracuje w zakresie AI.
- PremieraSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.
- PremieraMultimodalMultimodal combines AI reasoning with rule-based analysis for detection, triage, and remediation.
- PremieraSemgrep GuardianSemgrep Guardian scans and fixes AI-generated code the moment it's written.
- PremieraSemgrep WorkflowsSemgrep Workflows builds and deploys security pipelines that combine static analysis with AI at scale.
Poszukiwane umiejętności
Najczęstsze w otwartych ogłoszeniach.
Stos technologiczny
- Bezpieczeństwo
- OneTrust
- Biblioteki
- Bootstrap
- CDN
- jsDelivr
- Marketing
- VWO
- Marketo
- Analityka
- Google Tag Manager
- Google Analytics 4
Dane firmy
- Założona
- 2017
- Branża
- application security
- Sektor (NAICS)
- Informacja i komunikacja
- Podobna firma
- checkmarx
- Strona internetowa
- semgrep.dev
- Kariera
- semgrep.dev/about/careers
Stanowiska według lokalizacji
Gdzie rekrutuje firma Semgrep. Wybierz miasto, aby zobaczyć stanowiska.
Pytania o firmę Semgrep
- Czy firma Semgrep obecnie rekrutuje?
- Tak. Firma Semgrep ma 9 otwartych stanowisk. Najwięcej jest w zespołach: Product/Project Management (2), Sales (2) i Developer (1).
- Gdzie rekrutuje firma Semgrep?
- Firma Semgrep rekrutuje w miastach: Oregon, United States i San Francisco. Najwięcej otwartych stanowisk: Oregon, United States.
- Czy firma Semgrep oferuje pracę zdalną lub hybrydową?
- 29% otwartych stanowisk to praca hybrydowa, a 43% – zdalna.
- Kim są klienci firmy Semgrep?
- Firma Semgrep wymienia 14 klientów, w tym: Lyft, Cribl, Tide, SoSafe i Copper.