About the role
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.
C++/Rust Software Engineer (Senior)
Join Black Duck's Static Analysis team and help advance industry-leading application security technology. In this role, you will enhance our static analysis engine by expanding vulnerability coverage, deepening analysis capabilities, and improving scalability and performance in cloud-native environments. You will also help integrate static analysis into AI-driven development workflows, enabling intelligent security automation and AI-assisted vulnerability detection and remediation.
The ideal candidate is passionate about software security and quality, has experience in static analysis, compilers, or programming language technologies, and enjoys solving complex engineering problems at scale.
Responsibilities
Design and develop scalable static analysis solutions for large-scale cloud environments. Enhance and maintain core analysis infrastructure to improve performance, reliability, and scalability. Develop new analysis algorithms, techniques, and security detection capabilities to expand vulnerability coverage and accuracy. Research emerging software security vulnerabilities and create, test, and optimize detection rules in Rust. Integrate static analysis into AI-assisted development workflows, enabling automated security insights, triage, and remediation. Collaborate with security researchers, language experts, and product teams to advance state-of-the-art application security technology.
Key Qualifications
5+ years of professional software development experience in C/C++ and/or Rust MS or PhD in Computer Science, Software Engineering, Programming Languages, Static Analysis, Compilers, or a related field; equivalent industry experience considered Strong experience developing on Linux/UNIX platforms Deep understanding of programming language theory, compiler design, parsers, abstract syntax trees (ASTs), and language analysis frameworks Experience with static analysis, dataflow analysis, control-flow analysis, taint analysis, symbolic execution, or related program analysis techniques Experience designing scalable, high-performance systems and cloud-native services Knowledge of AI-assisted software development workflows and an interest in applying static analysis to AI-powered code generation, review, and remediation workflows Strong problem-solving, debugging, and analytical skills with the ability to work on complex technical challenges Excellent written and verbal communication skills and a collaborative mindset
Preferred Qualifications
Experience building commercial or open-source static application security testing (SAST) products Contributions to programming language, compiler, developer tooling, or security-related open-source projects Familiarity with common software security weaknesses (e.g., CWE, OWASP Top 10, secure coding practices) Experience researching software vulnerabilities and developing techniques to detect security defects Experience developing analysis rules, checkers, or vulnerability detection engines Familiarity with modern languages such as Java, C#, JavaScript/TypeScript, Python, Go, Kotlin, or others
Pay Range: $110,600 CAD - $145,000 CAD
Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.
Not the right fit? Search for Software Engineer 3 jobs in Calgary, Alberta, Canada
About Black Duck
Black Duck® offers the most comprehensive, powerful, and trusted portfolio of application security solutions in the industry. We have an unmatched track record of helping organizations around the world secure their software quickly, integrate security efficiently in their development environments, and safely innovate with new technologies. As the recognized leaders, experts, and innovators in software security, Black Duck has everything you need to build trust in your software. Learn more at www.blackduck.com.
Build trust in your software.
Similar Jobs
About the role
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.
C++/Rust Software Engineer (Senior)
Join Black Duck's Static Analysis team and help advance industry-leading application security technology. In this role, you will enhance our static analysis engine by expanding vulnerability coverage, deepening analysis capabilities, and improving scalability and performance in cloud-native environments. You will also help integrate static analysis into AI-driven development workflows, enabling intelligent security automation and AI-assisted vulnerability detection and remediation.
The ideal candidate is passionate about software security and quality, has experience in static analysis, compilers, or programming language technologies, and enjoys solving complex engineering problems at scale.
Responsibilities
Design and develop scalable static analysis solutions for large-scale cloud environments. Enhance and maintain core analysis infrastructure to improve performance, reliability, and scalability. Develop new analysis algorithms, techniques, and security detection capabilities to expand vulnerability coverage and accuracy. Research emerging software security vulnerabilities and create, test, and optimize detection rules in Rust. Integrate static analysis into AI-assisted development workflows, enabling automated security insights, triage, and remediation. Collaborate with security researchers, language experts, and product teams to advance state-of-the-art application security technology.
Key Qualifications
5+ years of professional software development experience in C/C++ and/or Rust MS or PhD in Computer Science, Software Engineering, Programming Languages, Static Analysis, Compilers, or a related field; equivalent industry experience considered Strong experience developing on Linux/UNIX platforms Deep understanding of programming language theory, compiler design, parsers, abstract syntax trees (ASTs), and language analysis frameworks Experience with static analysis, dataflow analysis, control-flow analysis, taint analysis, symbolic execution, or related program analysis techniques Experience designing scalable, high-performance systems and cloud-native services Knowledge of AI-assisted software development workflows and an interest in applying static analysis to AI-powered code generation, review, and remediation workflows Strong problem-solving, debugging, and analytical skills with the ability to work on complex technical challenges Excellent written and verbal communication skills and a collaborative mindset
Preferred Qualifications
Experience building commercial or open-source static application security testing (SAST) products Contributions to programming language, compiler, developer tooling, or security-related open-source projects Familiarity with common software security weaknesses (e.g., CWE, OWASP Top 10, secure coding practices) Experience researching software vulnerabilities and developing techniques to detect security defects Experience developing analysis rules, checkers, or vulnerability detection engines Familiarity with modern languages such as Java, C#, JavaScript/TypeScript, Python, Go, Kotlin, or others
Pay Range: $110,600 CAD - $145,000 CAD
Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.
Not the right fit? Search for Software Engineer 3 jobs in Calgary, Alberta, Canada
About Black Duck
Black Duck® offers the most comprehensive, powerful, and trusted portfolio of application security solutions in the industry. We have an unmatched track record of helping organizations around the world secure their software quickly, integrate security efficiently in their development environments, and safely innovate with new technologies. As the recognized leaders, experts, and innovators in software security, Black Duck has everything you need to build trust in your software. Learn more at www.blackduck.com.
Build trust in your software.