BeyondTrust

Staff Software Development Engineer – Linux Endpoint

BeyondTrust
Apply
2 months ago
Remote, United States or Remote, CanadaStaff+H1B sponsor history

Responsibilities

  • Design, build, and own eBPF programs and BPF LSM hooks that synchronously enforce security policy in the Linux kernel.
  • Build and maintain the userspace agent that loads and drives kernel enforcement programs.
  • Own kernel/userspace enforcement, including ring-buffer event capture, userspace policy evaluation, and hash-keyed deny caches in the kernel.
  • Reduce enforce-mode latency on the syscall hot path through process enrichment, binary-hash caching and eviction, and process-ancestry resolution.
  • Extend policy enforcement to containers, namespaces, cgroups, and Kubernetes workloads with container-aware kernel events.
  • Improve portability across Linux kernel versions and distributions using BTF-driven offset discovery, LSM detection, tracepoint compatibility, and graceful fallback.
  • Partner with macOS and Windows enforcement engineers and the policy-backend team on shared policy semantics, event schemas, conformance, and the Rust agent.
  • Represent Linux in cross-organization architecture reviews and identify gaps, risks, and simplifications in requirements.
  • Own work end to end from design through production and prioritize correctness in security-critical kernel code.
  • Mentor engineers on Linux systems and eBPF engineering.

Requirements

  • Deep Linux kernel knowledge covering scheduling, memory management, networking, syscalls, and the LSM framework, with production systems programming in C, Rust, or both.
  • Hands-on eBPF security-enforcement experience, including verifier behavior, BPF_PROG_LOAD, stack limits, bounded loops, helper differences, and programs that work across kernel versions.
  • Experience with BTF, CO-RE, task_struct layout drift, LSM configuration availability, and tracepoint ABI differences.
  • Understanding of container runtime internals, namespaces, cgroups, seccomp, and their interaction with kernel security tooling.
  • Experience with perf, ftrace, bpftrace, gdb, kgdb, and crash-dump analysis.
  • At least 8 years of systems-level software engineering experience with substantial Linux kernel development and eBPF depth.
  • Experience using AI-assisted development tools such as Claude Code or a comparable tool as part of daily engineering work, with the judgment to verify security-critical code manually.
  • Working knowledge of systems design patterns and tradeoffs at the kernel/userspace boundary.
  • Full-lifecycle software experience, including product release, in an agile environment.
  • A record of technical leadership on complex, ambiguous, cross-team initiatives.
  • Ability to mentor senior and mid-level engineers and communicate technical tradeoffs to technical and non-technical stakeholders.

Categories

H1B sponsorship

H1B sponsor history

Sponsorship for this role is unconfirmed.

BeyondTrust’s past filings provide context. They do not guarantee sponsorship for a current opening.

H1B petition approvals by fiscal year

  • FY 20254

    0 initial/new employment approvals · 2 changes of employer

Counts are petitions, including continuing employment and amendments, rather than unique hires. Source: USCIS

Job fields receiving H1B certifications

  • Software Developers1 · 33%
  • Information Technology Project Managers1 · 33%
  • Database Architects1 · 33%

Job fields come from government occupation codes, rather than internal departments. Counts are certified Labor Condition Applications, not visa approvals or unique hires. Withdrawn and denied cases are excluded.

Source: US Department of Labor

Matched government employer: BEYONDTRUST CORPORATION

BeyondTrust

About BeyondTrust

1,001-5,000 employees

BeyondTrust is the global cybersecurity leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders. BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.

Contact me