← Back to jobs

Remote job

Principal Linux Security Engineer

Other Full-time Permanent Worldwide

Job details

Not specified Salary
Worldwide Eligibility
Principal Experience
Full-time Employment

About this role

Role overview This is a senior engineering role focused on operating system security at the platform layer. The position centers on hardening Linux-based distributions, packaging security content for downstream consumers, and building tooling that makes secure baselines faster to deliver. It suits a practitioner who thinks about Linux internals as a security surface, not an application security generalist.

Responsibilities - Author and curate security metadata such as CSAF, VEX, and traditional advisories, packaging them into updateinfo and scanner-ready feeds. - Build and maintain compliance content including STIG and DISA profiles, extend OpenSCAP capabilities, and produce Ansible automation that applies hardened baselines. - Design proactive OS-level protections using build flags, Linux Kernel Runtime Guard (LKRG), and SELinux policy, balancing strong security with day-to-day usability. - Develop internal tooling and integrate AI-assisted workflows to accelerate build, test, and release cycles for security content. - Triage CVEs, score them using the CVSS calculator with defensible reasoning, and determine affectedness by analyzing build configuration, dependencies, and backports.

Requirements - At least four years of hands-on experience securing Linux systems at the operating system layer. - At least two years of experience building Linux packages, including RPM or equivalent packaging workflows. - Working knowledge of how CVEs are scored and how build-time and configuration decisions change a package's affectedness. - Practical experience with compliance frameworks such as STIG or DISA benchmarks and automation tools like Ansible and OpenSCAP. - Familiarity with security features such as SELinux and kernel hardening mechanisms, including LKRG.

Nice to have - Experience producing or consuming machine-readable security formats like CSAF or VEX. - Comfort with AI-assisted development and testing pipelines. - Background supporting HPC, AI/ML, defense, or other regulated workloads.

Benefits and work setup - Medical, dental, and vision insurance. - Flexible paid time off. - Employee stock options. - Fully remote with no required travel for most positions.

Detected Oct 6, 2026
Last verified Oct 6, 2026

Hidden Jobs Access

Unlock application links

Read the full job details for free. An active Hidden Jobs Access subscription is required to open the original application link.

Weekly

FREE $6.99/week after trial
  • Original application links
  • Daily or weekly job alerts
  • Premium filters and CV matching
  • Cancel anytime before day 7

Monthly

$35.99 $17.99 /month
  • 35% cheaper than weekly
  • Original application links
  • Daily or weekly job alerts
  • Premium filters and CV matching

Lifetime

$99.99 $49.99 /forever
  • One-time payment
  • Original application links
  • Daily or weekly job alerts
  • Premium filters and CV matching
Hidden Jobs gives subscribers direct access to original application links
Offer ends in 00:00:00 Your profile-fit rate expires at midnight