Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!
Lead Software Engineer (CLM / Machine & AI Identity)
Qualys is looking for a hands-on Lead Software Engineer to help evolve CertView CLM into a unified machine, workload, and AI-agent identity platform. You will lead design and delivery of scalable cloud-security services handling 100M+ transactions and terabytes of data daily, with focus areas including SPIFFE/SPIRE, ephemeral certificates, Kubernetes/service-mesh identity, managed cloud identities, and AI-agent governance.
What You’ll Do
- Lead architecture and development of next-generation CLM platform components
- Build high-scale identity ingestion and processing pipelines for short-lived credentials and workload identities.
- Drive roadmap delivery across ACME v2, SPIFFE/SPIRE integration, Kubernetes/service-mesh discovery.
- Collaborate with Product, SRE, Security, VMDR, and TotalCloud teams to ship resilient, production-ready features.
- Mentor engineers on design, performance, distributed systems, and secure coding for PKI/identity systems.
Core Qualifications
- 8+ years of hands-on SaaS engineering experience in cloud environments.
- Strong Java/Spring Boot expertise; solid fundamentals in distributed systems and scalable API design.
- Experience with event-driven systems (Kafka/JMS), caching (Redis/Memcached), and RDBMS (Oracle preferred).
- Familiarity with Docker, Kubernetes, Jenkins, and CI/CD.
- Bachelor’s degree or higher in Computer Science (or related field).
Strongly Preferred Domain Experience (Any 2+)
- PKI/CLM (X.509, CSR workflows, CA integrations, CRL/OCSP, HSM-backed signing)
- ACME v2 / cert-manager
- SPIFFE/SPIRE and workload identity models
- Cloud managed identity (AWS/Azure/GCP) and OIDC federation
- Service mesh & mTLS
- Kubernetes controllers/operators and CRDs
- NHI and AI-agent security concepts and platforms
Nice to Have
- Post-quantum migration exposure
- CNCF/IETF contributions (SPIRE, cert-manager, OPA, WIMSE/ACME)
- Go or Rust experience for collectors/plugins/sidecars
Skills Required
- 8+ years of hands-on SaaS engineering experience in cloud environments
- Strong Java/Spring Boot expertise
- Fundamentals in distributed systems and scalable API design
- Experience with event-driven systems like Kafka/JMS
- Caching experience (Redis/Memcached)
- RDBMS experience (Oracle preferred)
- Familiarity with Docker and Kubernetes
- Bachelor's degree or higher in Computer Science or related field
Qualys Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Qualys and has not been reviewed or approved by Qualys.
-
Affordable Benefits — Benefits costs are widely viewed as low for employees and dependents, with healthcare often described as almost fully paid for. Feedback suggests this affordability helps offset perceptions of lower base pay in some roles.
-
Healthcare Strength — Healthcare offerings are broad, including multiple medical plan options, dental and vision coverage, mental health support, and disability insurance. Benefits are described as “pretty amazing” or “great,” reinforcing perceived quality and coverage depth.
-
Equity Value & Accessibility — Equity participation is accessible through company stock plans and an employee stock purchase plan. Compensation packages commonly include equity alongside salary and bonus, which some consider a meaningful part of total rewards.
Qualys Insights
What We Do
Qualys, Inc. (NASDAQ: QLYS) is a pioneer and leading provider of disruptive cloud-based security, compliance and IT solutions with more than 10,000 subscription customers worldwide, including a majority of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and automate their security and compliance solutions onto a single platform for greater agility, better business outcomes, and substantial cost savings. The Qualys Cloud Platform leverages a single agent to continuously deliver critical security intelligence while enabling enterprises to automate the full spectrum of vulnerability detection, compliance, and protection for IT systems, workloads and web applications across on premises, endpoints, servers, public and private clouds, containers, and mobile devices. Founded in 1999 as one of the first SaaS security companies, Qualys has strategic partnerships and seamlessly integrates its vulnerability management capabilities into security offerings from cloud service providers, including Amazon Web Services, the Google Cloud Platform and Microsoft Azure, along with a number of leading managed service providers and global consulting organizations. For more information, please visit http://www.qualys.com






