Remote job
Endpoint Engineer
Job details
About this role
Role overview
Join the team responsible for the core endpoint agent that powers a workspace security platform's entire capability set. This engineer owns the agent's lifecycle machinery — collection, policy evaluation, enforcement, and transport — across Windows, macOS, or Linux, with success measured by what customers only notice when it breaks: installs, updates, offline behavior, and resource footprint.
Responsibilities
- Build and own components of a single lightweight endpoint agent spanning Windows, macOS, or Linux, including collection, enrichment, policy evaluation, enforcement, IPC, local storage, and cloud transport. - Deliver features end to end: design, implementation, tests, telemetry, staged rollout, and post-release monitoring. - Own agent lifecycle engineering: packaging and installers (MSI, PKG, DEB/RPM), enrollment, configuration delivery, safe staged self-update, rollback, and clean uninstall. - Enforce strict CPU, memory, disk, and network budgets, catch performance regressions in CI, and treat stability as non-negotiable. - Implement offline and degraded-mode behavior: local queueing, backpressure, policy caching, retry semantics, and connectivity edge cases. - Build diagnostics, log collection, health reporting, and support tooling so field issues can be root-caused remotely.
Requirements
- 5+ years building production software in C/C++ or Swift, including native desktop or endpoint work. - Working knowledge of operating system internals and system APIs on at least one of Windows, macOS, or Linux. - Experience with unattended software on machines you do not control: versioning, upgrades, backward compatibility, and failure recovery. - Solid grasp of concurrency, memory management, and empirical performance measurement. - Debugging discipline — reproduce, instrument, and prove root cause rather than guess at fixes. - Comfort with build systems, cross-platform CI/CD, test automation (CMake or Bazel, GitHub Actions), and scripting in Python.
Nice to have
- Prior endpoint security experience (EDR, DLP, EPP, MDM, insider risk) or systems-monitoring agents. - Exposure to kernel extensions and drivers, eBPF, ETW, or the macOS Endpoint Security Framework. - Enterprise deployment tooling such as Intune, Jamf, SCCM, or Ansible. - Code signing, Apple notarization, or driver attestation pipelines.
Benefits and work setup
- Distributed workplace with remote hiring across North America and an in-office option in San Francisco. - Meaningful equity on top of salary. - 90% employer coverage of medical, dental, and vision premiums; 75% for dependents. - Flexible PTO, 12 weeks paid parental leave for birth, adoption, or foster placements, and a $100 monthly lifestyle account. - $500 home office stipend for remote hires.