Назад
Company hidden
2 дня назад

Senior Linux Engineer, Privileged Access (Cybersecurity)

Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Linux Engineer, Privileged Access (Cybersecurity) (Rust/C/.NET): Building secure Linux endpoint privilege-management capabilities that control privileged execution, process authorization, and elevation across enterprise endpoints with an accent on Linux internals, PAM modules, kernel-facing APIs, and long-running privileged services. Focus on designing least-privilege enforcement, preventing authorization race conditions, hardening systemd services, and troubleshooting authentication, permissions, and security-boundary failures.

Location: Remote, US; hybrid schedule available for candidates in the Chicago, IL or El Dorado Hills, CA metro areas.

Company

hirify.global develops cybersecurity software and a zero-knowledge, zero-trust privileged access management platform used by organizations and individuals worldwide.

What you will do

  • Design, develop, and maintain Linux endpoint privilege-management capabilities across Rust, C, and .NET components.
  • Build kernel-facing agent functionality using fanotify, proc, namespaces, capabilities, and process-identity interfaces.
  • Develop native PAM modules, privilege-elevation workflows, and long-running privileged services with Rust, Tokio, MQTT, TLS, and asynchronous programming.
  • Develop .NET 8 orchestration and session-management capabilities for process authentication, access controls, ephemeral accounts, and session monitoring.
  • Diagnose low-level Linux execution and security issues involving authentication races, permissions, SELinux, AppArmor, and system services.
  • Build systemd services, RPM and DEB packages, installation workflows, service hardening, and operational diagnostics while collaborating with PAM, endpoint, QA, and platform engineers.

Requirements

  • 7+ years of professional software or systems engineering experience with significant hands-on Linux systems programming.
  • Deep knowledge of Linux processes, security boundaries, capabilities, namespaces, process execution, and kernel-facing interfaces.
  • Strong C and Rust experience, including native Linux development, memory management, ownership, concurrency, asynchronous programming, and daemon design.
  • Experience with Linux PAM, PAM configuration, authentication, authorization, privilege elevation, process trust, or least-privilege controls.
  • Working proficiency with C# and .NET in Linux environments, plus experience with systemd, journalctl, SELinux and/or AppArmor, and RPM/DEB packaging.
  • Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience; ability to use AI-assisted tools for development, debugging, testing, analysis, and documentation.

Nice to have

  • Experience with MQTT, Linux desktop session technologies, TLS, PKI, code signing, or certificate-based authentication.
  • Experience supporting RHEL and Ubuntu, building software for x86 and ARM, or working with endpoint security and privileged access management products.
  • Familiarity with Avalonia, Linux desktop UI frameworks, Windows or macOS endpoint security, and just-in-time elevation workflows.

Culture & Benefits

  • 100% remote work with a hybrid option in selected US metro areas.
  • Medical, dental, and vision insurance, including domestic partnerships.
  • Employer-paid life insurance and voluntary short- and long-term disability insurance.
  • 401(k) Roth and traditional plans, generous paid time off, and paid bereavement and jury duty leave.
  • Above-market annual bonuses and an inclusive equal-opportunity workplace.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →