Senior Software Engineer, Platform Security (remote From Bulgaria)

Smartsheet Smartsheet · Seattle · Bulgaria · Engineering - Developers

Senior Software Engineer focused on platform security for a SaaS product. The role involves designing, building, and maintaining security features, secure services, and automating security controls. A key aspect is the strategic application and championing of AI tools to improve project execution, system design, quality, and debugging, as well as building AI features that solve customer problems with measurable business impact. The role also requires experience with secure coding practices, cloud security, and mentoring junior engineers.

What you'd actually do

  1. Develop Secure Product Features
  2. Build Scalable and Secure Services
  3. Integrate Security into SDLC
  4. Automate Security Controls
  5. Strategically Apply AI Tools

Skills

Required

  • 5+ years of progressive software development experience
  • at least 3 years focused on building security features or secure applications
  • Expert-level proficiency in at least one major programming language such as Java, Kotlin, Go, or Python
  • proven history of building scalable and secure applications
  • Deep experience with cloud technologies (AWS, Azure, etc.)
  • securing cloud-native applications
  • developing, documenting, and supporting secure REST APIs
  • Strong understanding of common security vulnerabilities (e.g., OWASP Top 10) and mitigation techniques
  • Experience with containerization and orchestration technologies (Kubernetes) in a secure development context
  • Proficiency with modern security tools and practices, including static application security testing (SAST), dynamic application security testing (DAST), and software composition analysis (SCA)
  • critical thinker with a proven ability to troubleshoot complex security-related problems in high-pressure production environments
  • Excellent verbal and written communication skills
  • collaborative spirit
  • 1 year professional experience leveraging AI-based workflows to author, maintain, review, deploy, and maintain code
  • 1+ years building AI features that incorporate generative AI or agentic workflows to solve customer problems with measurable business impact
  • Legally eligible to work in Bulgaria on an ongoing basis
  • Fluency in English

Nice to have

  • Advanced industry certifications such as CSSLP, OSCP, or cloud-specific security certifications

What the JD emphasized

  • security features
  • secure applications
  • secure-by-design solutions
  • secure coding practices
  • secure applications
  • secure development context
  • AI tools
  • AI features
  • generative AI
  • agentic workflows
  • measurable business impact