Staff Software Development Engineer – Linux Endpoint
Core
Linux kernel authority for the runtime enforcement layer of an Identity Security Platform, deciding in-kernel whether to permit or deny actions by identities or AI agents on Linux endpoints.
Role type
Staff Software Development Engineer (Linux Kernel & eBPF)
Builds
eBPF enforcement programs, BPF LSM hooks, and userspace agents for real-time security policy enforcement across Linux fleets.
Domain
Cybersecurity, Linux Kernel, eBPF, Systems Programming
Deliverable
production ML models | product features | infrastructure
Required skills
Linux kernel internals (scheduling, memory management, networking, syscalls, LSM), eBPF development (verifier fluency, Rust/aya), BTF/CO-RE, container runtime internals (namespaces, cgroups, seccomp), kernel debugging/performance tooling, AI-driven development workflows
Preferred skills
Experience with libbpf, BCC, Cilium eBPF, cross-org architecture reviews, mentoring senior engineers
Technologies
Rust, aya, aya-ebpf, libbpf, C, eBPF, BTF, LSM, cgroups, namespaces, Kubernetes, perf, ftrace, bpftrace, gdb, kgdb
Responsibilities
Design and own eBPF programs and BPF LSM hooks for synchronous kernel enforcement; manage the kernel/userspace enforcement boundary including event capture and policy evaluation; optimize syscall hot path latency under heavy fork/exec pressure; extend enforcement into containers and namespaces; ensure portability across kernel versions and distributions; partner on shared policy semantics and the common Rust agent; provide technical leadership and mentorship.
Seniority
Staff, hands-on IC with technical leadership
