Avatar for Black Duck Software
Black Duck Software
Actively Hiring
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • Top Investors
    This company has received a significant amount of investment from top investors
  • +1

Software Engineer 3 (C++/Rust)

  • $110k – $145k
  • |
  • |5 years of exp
  • |Full Time
Posted: 2 weeks ago• Recruiter recently active
Job Location
Remote Work Policy

In office

Visa Sponsorship

Not Available

RelocationAllowed
Skills
C++
Scalable Systems
Linux
Unix
Static Analysis
Rust
Parsers
Compiler Design
Programming Language Theory
Symbolic Execution
Taint Analysis
ASTs
Cloud-Native Services
High-Performance Systems
Dataflow Analysis
AI-Assisted Software Development Workflows
Abstract Syntax Trees
Language Analysis Frameworks
Control-Flow Analysis
Program Analysis Techniques

About the job

Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.

C++/Rust Software Engineer (Senior)

Join Black Duck's Static Analysis team and help advance industry-leading application security technology. In this role, you will enhance our static analysis engine by expanding vulnerability coverage, deepening analysis capabilities, and improving scalability and performance in cloud-native environments. You will also help integrate static analysis into AI-driven development workflows, enabling intelligent security automation and AI-assisted vulnerability detection and remediation.

The ideal candidate is passionate about software security and quality, has experience in static analysis, compilers, or programming language technologies, and enjoys solving complex engineering problems at scale.

Responsibilities

• Design and develop scalable static analysis solutions for large-scale cloud environments.

• Enhance and maintain core analysis infrastructure to improve performance, reliability, and scalability.

• Develop new analysis algorithms, techniques, and security detection capabilities to expand vulnerability coverage and accuracy.

• Research emerging software security vulnerabilities and create, test, and optimize detection rules in Rust.

• Integrate static analysis into AI-assisted development workflows, enabling automated security insights, triage, and remediation.

• Collaborate with security researchers, language experts, and product teams to advance state-of-the-art application security technology.

Key Qualifications

• 5+ years of professional software development experience in C/C++ and/or Rust

• MS or PhD in Computer Science, Software Engineering, Programming Languages, Static Analysis, Compilers, or a related field; equivalent industry experience considered

• Strong experience developing on Linux/UNIX platforms

• Deep understanding of programming language theory, compiler design, parsers, abstract syntax trees (ASTs), and language analysis frameworks

• Experience with static analysis, dataflow analysis, control-flow analysis, taint analysis, symbolic execution, or related program analysis techniques

• Experience designing scalable, high-performance systems and cloud-native services

• Knowledge of AI-assisted software development workflows and an interest in applying static analysis to AI-powered code generation, review, and remediation workflows

• Strong problem-solving, debugging, and analytical skills with the ability to work on complex technical challenges

• Excellent written and verbal communication skills and a collaborative mindset

Preferred Qualifications

• Experience building commercial or open-source static application security testing (SAST) products

• Contributions to programming language, compiler, developer tooling, or security-related open-source projects

• Familiarity with common software security weaknesses (e.g., CWE, OWASP Top 10, secure coding practices)

• Experience researching software vulnerabilities and developing techniques to detect security defects

• Experience developing analysis rules, checkers, or vulnerability detection engines

• Familiarity with modern languages such as Java, C#, JavaScript/TypeScript, Python, Go, Kotlin, or others

Pay Range

$110,600—$145,000 CAD

Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.

About the company

Black Duck Software company logo

Black Duck Software

Actively Hiring
5000+ Employees
Company Size
5000+
Company Type
Software Development
Company Type
Information Security
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • Top Investors
    This company has received a significant amount of investment from top investors
  • Valuation $500M+
    This company has a valuation of $500M or more
Learn more about Black Duck Software image

Funding

AMOUNT RAISED
$75.5M
FUNDED OVER
8 rounds
Rounds
U
$5000000
Unknown - May 2015+7

Similar Jobs

FOSSA company logo
FOSSA
Effortlessly comply with open source licenses
Altinity company logo
Altinity
The leading service and software provider for ClickHouse
Pulsora company logo
Pulsora
The all-in-one platform for enterprise sustainability management
Pulsora company logo
Pulsora
The all-in-one platform for enterprise sustainability management
Deaimer company logo
Deaimer
Human intelligence for better AI