3 hours ago
Base Salary
$215k - $260k/yr
Responsibilities
- Implement Linux kernel security enhancements, configuration hardening, CVE triage, vulnerability mitigations, and backported upstream fixes.
- Enforce mandatory access controls, secure the boot path, and establish CI guardrails and fuzzing coverage.
- Research vulnerabilities across kernel, driver, and OS components and conduct security-focused code reviews.
- Develop and use tools for kernel security auditing, fuzzing, static analysis, and dynamic analysis.
- Audit and harden Cloud Hypervisor device models and vhost-user datapaths while reducing privilege and contributing upstream fixes.
- Advance confidential computing primitives including AMD SEV-SNP and Intel TDX.
- Support security incident response, containment, recovery, debugging, and root-cause analysis for kernel and OS compromises.
- Balance security improvements with the performance requirements of high-performance AI infrastructure.
- Provide technical guidance and mentorship to junior engineers and collaborate across engineering and security teams.
Requirements
- Bachelor’s degree in Computer Science, Computer Engineering, or a related field.
- At least 5 years of relevant industry experience, including at least 3 years focused on low-level operating systems or kernel security.
- Deep knowledge of Linux kernel internals, including memory management, process scheduling, system calls, and I/O subsystems.
- Understanding of kernel vulnerabilities, exploitation techniques, CVE remediation, and automation.
- Experience with Linux kernel security mitigations such as ASLR, DEP/NX, SMEP/SMAP, KASLR, namespaces, cgroups, and LSMs.
- Strong secure coding background and security-focused code review experience, particularly in C.
- Proficiency with kernel debugging and security analysis tools such as GDB, crash, kgdb, valgrind, address sanitizers, and fuzzers.
- Familiarity with hardware-assisted security features including Intel SGX, AMD SEV, and ARM TrustZone.
- Ability to pass a background check.
- Preferred qualifications include kernel security open-source contributions, hypervisor security experience, HSM or TPM experience, and kernel-level offensive security or penetration-testing experience.
Benefits
- Competitive compensation, bonus, equity packages, and Restricted Stock Units.
- Paid time off, paid holidays, leave programs, and paid parental leave.
- Comprehensive health, dental, and vision insurance, plus HSA contributions.
- Paid life insurance and short-term and long-term disability coverage.
- Professional development, tuition reimbursement, and mental health and wellness support.
- Commuter benefits, a cell phone stipend, daily meal allowance, and location-specific perks.
- 401(k) retirement plan with company match up to 4% of salary.
- Volunteer time off and global travel insurance with emergency assistance.
- Full-time position.
About Crusoe
Crusoe builds and operates GPU-powered data centers and an AI cloud platform for enterprises running large-scale AI training and inference. It vertically integrates energy supply with compute, using stranded and renewable power to reduce emissions and costs, and sells capacity via cloud services and managed infrastructure. Founded in 2018 and headquartered in Denver, the company is privately held.
