Senior/Staff Software Development Engineer - macOS Endpoint

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of BeyondTrust

BeyondTrust

1001 - 5000 employees

Founded 1985

🔒 Cybersecurity

💰 Private Equity Round on 2021-05

Cybersecurity

BeyondTrust is a company that specializes in providing cybersecurity solutions. They focus on offering products and services that protect organizations from internal and external threats, and their solutions often involve privileged access management to secure and manage the identities and credentials of users accessing critical systems and data.

📋 Description

• Design, build, and own our Endpoint Security client: process execution, file, and signal events, plus the synchronous authorization events where you allow or deny inline. You'll block operations by returning a deny verdict before the event completes, not by logging after the fact, and you'll build the userspace agent that installs and drives the extension. • Own the enforcement decision path: event capture from Endpoint Security, policy evaluation, and deny decisions applied within Apple's authorization deadline so a slow verdict never stalls the system or gets auto-allowed. • Drive down enforce-mode latency on the authorization path as we scale across large fleets. That means process enrichment, code-signature and hash caching with eviction under heavy process-churn, and process-ancestry resolution. • Extend enforcement across network and content control: a Network Extension content filter for socket- and flow-level policy, tied to the same identity and process context as your Endpoint Security decisions. Much of this integration is greenfield, and it sits at the center of the role. • Harden portability and stability across macOS versions and both Apple Silicon and Intel, so enforcement loads and behaves correctly on the OS versions customers actually run. You'll deal with Endpoint Security event and capability drift across releases, System Extension activation and approval flows, TCC and entitlement requirements, and graceful degradation when a capability isn't available. • Partner with the Linux and Windows enforcement engineers and the policy-backend team on the shared plane: policy semantics, cross-stack conformance, event schema, the common Rust agent. You'll represent macOS in cross-org architecture reviews. • Read requirements to find gaps and risks, propose simplifications, and explain tradeoffs to technical and non-technical stakeholders. • Raise the engineering bar. You'll take end-to-end ownership from design through production, and you'll carry extra weight where a bug means a wrong security decision or a hung endpoint across the fleet, not just a crash of one process. • Mentor senior and mid-level engineers on macOS systems and Endpoint Security craft

🎯 Requirements

• Deep macOS system internals - the Endpoint Security framework, System and Network Extensions, the code-signing and notarization model, launchd and XPC, TCC and entitlements - backed by production systems programming in C, C++, Objective-C, Swift, or Rust. • Hands-on work with Endpoint Security for enforcement, with real comfort on the synchronous authorization path: handling AUTH events within Apple's deadline, reasoning about the allow/deny verdict model, and keeping the client off the path that hangs or gets killed. Experience building a System Extension end to end transfers directly. • The macOS deployment reality: System Extension activation and user approval, MDM-managed deployment, entitlement provisioning, code signing, and notarization, plus the operational cost of shipping this to a large managed fleet. • The macOS isolation and security model - the App Sandbox, TCC, SIP, and how they intersect with endpoint security tooling. • Debugging and performance tooling: lldb, Instruments, dtrace, the unified logging system (log / Console), and spindump for hang analysis. • 8+ years in systems-level software engineering, with real depth in macOS system software. • Demonstrated AI-first development. We build this platform through agentic tooling. AI-driven design exploration, code generation, adversarial plan review, and automated pre-merge quality gates are how work ships here, not a side experiment. You use Claude Code or a comparable tool as a core part of your daily workflow, and you can speak concretely to how it raises both your velocity and your rigor. That matters most in correctness- and security-critical enforcement code, where you have to know exactly when to stop and verify by hand. • A working grasp of systems design patterns and their tradeoffs at the OS-enforcement boundary. • Full-lifecycle experience, including product release, in an agile environment. • A track record of technical leadership on complex, ambiguous initiatives that span teams.

🏖️ Benefits

• Health insurance • Retirement plans • Paid time off • Flexible work arrangements • Professional development • Bonuses

Apply Now

Similar Jobs

🔥 15 hours ago

Speer

11 - 50

🤝 B2B

🔧 Hardware

🔌 API

Full Stack Developer at Speer Technologies responsible for building scalable web and mobile applications. Collaborating with a team of engineers in a startup environment based in Toronto.

🕒 Yesterday

THRILLWORKS

51 - 200

🤝 B2B

☁️ SaaS

🛍️ eCommerce

Software Engineer responsible for integrating two new hardware devices into existing Flutter application. Focus on BLE communication and security while collaborating across teams for performance optimization.

🕒 Yesterday

Friendlier

51 - 200

🤝 B2B

🛍️ eCommerce

☁️ SaaS

Lead Software Developer overseeing a small team delivering engaging user experiences and software solutions at Friendlier. Focused on collaboration, coding standards, and strategic development.

🇨🇦 Canada – Remote

💵 $100k - $115k / year

💰 Seed Round on 2023-12

⏰ Full Time

🟠 Senior

🧑‍💻 Full-stack Engineer

🕒 Yesterday

Laivly

51 - 200

🤖 Artificial Intelligence

☁️ SaaS

🏢 Enterprise

Senior Full Stack Software Developer working with AI technologies to build automation tools in a fast-paced environment. Collaborating with experts to enhance products and improve customer service.

🕒 3 days ago

KOHO

201 - 500

💳 Fintech

🛍️ eCommerce

🏦 Banking

Senior Purple Team Engineer role at KOHO developing incident response readiness and deception engineering strategies. Actively responsible for cybersecurity incident management and training across the organization.