Sonatype is the software supply chain security company. We provide the world’s best end-to-end software supply chain security solution, combining the only proactive protection against malicious open source, the only enterprise grade SBOM management and the leading open source dependency management platform. This empowers enterprises to create and maintain secure, quality, and innovative software at scale.
As founders of Nexus Repository and stewards of Maven Central, the world’s largest repository of Java open-source software, we are software pioneers and our open source expertise is unmatched. We empower innovation with an unparalleled commitment to build faster, safer software and harness AI and data intelligence to mitigate risk, maximize efficiencies, and drive powerful software development.
More than 2,000 organizations, including 70% of the Fortune 100 and 15 million software developers, rely on Sonatype to optimize their software supply chains.
About the Role
As an agentic-first Senior Software Engineer, you will design, build, and ship agentic-first features within Nexus Repository Manager. You'll own meaningful pieces of the product end-to-end, and long-running multi-agent development workflows will be your primary mode of work — you'll spend most of your time directing and verifying agents rather than hand-typing code. You'll partner with Staff and Principal engineers to deliver capabilities that help enterprises secure their software supply chains at massive scale.
Why You Will Want to Apply
* Multi-agent Orchestration in Practice: Hands-on experience running and composing multiple agents (e.g., Claude Code, Codex, Cursor background agents, or equivalents) — including MCP tools, custom prompts/skills, shared context, and eval loops that keep output trustworthy.
* Verification-first Mindset: You've internalized that the new leverage point is human judgment over machine generation. You write and maintain evals, test harnesses, and review workflows that let you confidently ship code you didn't personally type.
* Drawn to Leading-edge Practice: You're energized by being early in a new way of building software, tracking what's happening on the frontier, and bringing new techniques back to your team.
* Product Engineering Mindset: You think in terms of customer outcomes, not just tickets, and can make sensible product trade-offs in partnership with PM and design.
* Focused on What Matters: You want to build mission-critical products that drive revenue and transform how customers build software.
* Senior-level Engineering Skills: 4+ years of professional software development, including meaningful experience shipping and operating production services.
* Solid Technical Foundation: Strong experience with Java and at least one major cloud (AWS / Azure / GCP). Comfortable working in distributed systems — APIs, databases, queues, and the failure modes that come with them.
* Exposure to DevSecOps & Supply Chain Security: Familiarity with concepts like SBOMs, SCA, vulnerability management, dependency hygiene, and artifact/package ecosystems — or strong interest in going deep here.
* Deeply Curious: You push agentic tools to their limits — probing where they work, where they break, and how to make them better. You're energized by being early in a fundamentally new way of building software.
At Sonatype, we value diversity and inclusivity. We offer perks such as parental leave, diversity and inclusion working groups, and flexible working practices to allow our employees to show up as their whole selves. We are an equal-opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. If you have a disability or special need that requires accommodation, please do not hesitate to let us know.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.