At a Glance
- Tasks: Join the SCAnS team to enhance software security and manage supply chain risks.
- Company: Bloomberg empowers over 9,000 engineers with innovative tools for productivity and security.
- Benefits: Enjoy a dynamic work environment with opportunities for remote work and professional growth.
- Why this job: Make a real impact on software security while collaborating with diverse teams in a fast-paced industry.
- Qualifications: Experience in Python or Go, and a passion for software security and collaboration.
- Other info: Bloomberg values diversity and is committed to inclusive hiring practices.
The predicted salary is between 48000 - 72000 £ per year.
Senior Software Engineer u2013 DevX SCAnS (Developer Experience)
Location
London
Business Area
Engineering and CTO
Ref #
10043757
**Description & Requirements**
In Bloomberg, the Developer Experience (DevX) group provides services and tooling that empowers over 9,000 engineers with their productivity needs and enables them to write high quality, performant and secure code.
What goes into making Bloombergu2019s software? Where do these components come from? How will we know if any are defective? How can we protect Bloomberg from malicious actors while still benefiting from open source? These are the questions youu2019ll help us answer!
The Software Composition Analysis and Security (SCAnS) team in DevX plays a foundational role in securing Bloombergu2019s software supply chain (SSC) by enabling engineers to use open source and third party software safely, in an operationally resilient manner. Our products integrate with build and analysis systems to ensure software component metadata (as SBOMs) is available throughout the SSC to build a software inventory, affording license and vulnerability identification firm-wide. We control the ingress of components to prevent malware from entering the network, which provides us a unique opportunity to help build this inventory.
Our team is responsible for:
Providing SBOM tooling and helping integrate it into our supply chain
Working across ecosystems to adjust our tooling to produce the best quality results
Controlling and tracking the ingress of software components into the firmu2019s network
Solving the firmu2019s operational resiliency needs for software ingress and component analysis
We are looking for a Senior Software Engineer to drive these projects in the SCAnS team.
**What\’s in it for you?**
As an engineer in this growing team, you will be at the heart of Bloombergu2019s efforts to secure our software supply chain. This domain is extremely important for the firmu2019s security and operational resilience posture, and your work will be equally impactful and leveraged by all engineering teams.
With upcoming regulations around Operational Resilience such as DORA, Software Supply Chain security is a hot topic in the industry and a very dynamic space to be involved in. Our team leverages open-source software (e.g. Syft), and also influences the wider industry on standards for SBOMs and SSC. We also have home-grown solutions for specific problems (e.g. the domain of Ingress), providing a broad mix of technologies and approaches.
**We will trust you to:**
Collaborate across multiple teams to perform cross-cutting work
Work with users to understand their needs
Develop and deploy scalable solutions to meeting our supply chain needs
Identify risks with our supply chain end-to-end
**Youu2019ll need to have:**
Experience in Python or Go
Knowledge of the software development lifecycle
A passion for improving the firmu2019s security posture
A drive to partner and collaborate with users and team members alike
**Weu2019d love to see:**
Experience making upstream contributions
A history of making changes that involve multiple teams
Knowledge of software supply chains, SBOMs, and how they are used
An awareness of vulnerability, malware and licensing challenges in third party software
Bloomberg is an equal opportunity employer and we value diversity at our company. We do not discriminate on the basis of age, ancestry, color, gender identity or expression, genetic predisposition or carrier status, marital status, national or ethnic origin, race, religion or belief, sex, sexual orientation, sexual and other reproductive health decisions, parental or caring status, physical or mental disability, pregnancy or parental leave, protected veteran status, status as a victim of domestic violence, or any other classification protected by applicable law.
Bloomberg is a disability inclusive employer. Please let us know if you require any reasonable adjustments to be made for the recruitment process. If you would prefer to discuss this confidentially, please email
Senior Software Engineer u2013 DevX SCAnS (Developer Experience) employer: Bloomberg
Contact Detail:
Bloomberg Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Software Engineer u2013 DevX SCAnS (Developer Experience)
✨Tip Number 1
Familiarise yourself with the latest trends in software supply chain security. Understanding current regulations like DORA and how they impact the industry will show your commitment to the role and help you engage in meaningful conversations during interviews.
✨Tip Number 2
Network with professionals in the field of Developer Experience and software security. Attend relevant meetups or webinars, and connect with current employees at Bloomberg on platforms like LinkedIn to gain insights into their work culture and expectations.
✨Tip Number 3
Demonstrate your collaborative skills by sharing examples of past projects where you worked across teams. Highlighting your ability to partner with users and other engineers will resonate well with the team-oriented nature of the role.
✨Tip Number 4
Showcase your passion for open-source contributions. If you've made upstream contributions or have experience with tools like Syft, be sure to discuss these in your conversations, as they align closely with the team's focus on leveraging open-source software.
We think you need these skills to ace Senior Software Engineer u2013 DevX SCAnS (Developer Experience)
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the Senior Software Engineer position in the DevX SCAnS team. Familiarise yourself with concepts like SBOMs, software supply chains, and operational resilience.
Tailor Your CV: Highlight your experience in Python or Go, and any relevant projects that demonstrate your knowledge of the software development lifecycle. Make sure to include specific examples of how you've contributed to security improvements or collaborated across teams.
Craft a Compelling Cover Letter: Use your cover letter to express your passion for software security and your drive to improve the firm's security posture. Mention any experience you have with open-source contributions or working on cross-team projects, as this aligns well with the role.
Proofread and Edit: Before submitting your application, carefully proofread your CV and cover letter. Look for any spelling or grammatical errors, and ensure that your documents are clear and concise. A polished application reflects your attention to detail.
How to prepare for a job interview at Bloomberg
✨Showcase Your Technical Skills
Be prepared to discuss your experience with Python or Go in detail. Bring examples of projects you've worked on, especially those that relate to software supply chains or security. This will demonstrate your technical proficiency and relevance to the role.
✨Understand the Software Development Lifecycle
Familiarise yourself with the software development lifecycle and be ready to explain how you have applied this knowledge in past roles. Highlight any specific experiences where you improved processes or contributed to operational resilience.
✨Emphasise Collaboration
Since the role involves working across multiple teams, share examples of how you've successfully collaborated with others in previous positions. Discuss any cross-team projects you've led or contributed to, showcasing your ability to partner effectively.
✨Stay Informed on Industry Trends
Research current trends in software supply chain security, including regulations like DORA. Being knowledgeable about these topics will not only impress your interviewers but also show your passion for improving security postures within organisations.