Senior Product Security Engineer, Secure Design – Kernel and Virtualization

🕒 il y a 2 mois

🇺🇸 États-Unis – Télétravail

💵 $140 000 - $175 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

infoinfo

👻 Score fantôme 15%

infoinfo

🗣️🇺🇸🇬🇧 Anglais requis

Assembly

Rust

Go

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of DigitalOcean

DigitalOcean

1001 - 5000 employés

Fondée en 2011

☁️ SaaS

SaaS • Cloud Computing

DigitalOcean est un fournisseur d'infrastructure cloud qui propose une suite de produits et services permettant aux développeurs de créer, déployer et faire évoluer des applications. Leur plateforme offre des didacticiels complets, des documents de référence et des supports documentaires pour aider les utilisateurs à gérer efficacement leurs ressources en utilisant leurs outils API et CLI. Avec des fonctionnalités telles que Droplets (machines virtuelles), des bases de données gérées, Kubernetes et un marketplace pour les applications tierces, DigitalOcean met l'accent sur la simplicité et les performances. Ils s'adressent à la fois aux développeurs individuels et aux grandes organisations à la recherche de solutions cloud faciles à mettre en œuvre et à gérer.

Description

• Propose and implement mitigations and defense-in-depth to threats discovered through threat modeling the virtualization stack (90%) • Provide deep technical expertise in systems architecture, kernel security features and network architecture to build out a threat model for our virtualization stack • Identify the trade-offs of different solutions and recommend the efficient design to achieve both functional goals and security requirements • Collaborate with development teams to implement remediations and defense in-depth to protect DigitalOcean’s customers’ workloads • Cultivate and promote a security culture (10%) • Mentor software engineering teams in security best practices • Help oversee our vulnerability management program

🎯 Exigences

• Deep familiarity with at least one kernel security feature (ex: AppArmor, SELinux, Landlock, etc.) • Capable of assessing and understanding the performance implications of code changes to virtualization stacks (especially in Qemu and KVM) • A record of partnering with internal engineering teams to tackle security problems across an entire stack with empathy and creativity • Ability to clearly communicate security topics and vulnerability classes (e.g. memory corruption, privilege escalation, TOCTOU, etc) and provide actionable direction to product teams • Working knowledge of modern development concepts (virtualized environments, containerization, continuous integration + delivery) • 5+ years of writing systems level code (embedded systems, kernel, assembly or similar) • Experience guiding software teams on secure architecture design • Written code for an embedded system (raspberry pi, arduino, etc) • Experience building or reviewing threat models and ability to craft malicious user, attacker, and abuse/misuse cases • An understanding of patches and mitigations for hardware side-channel attacks • Familiarity with object-oriented and functional programming concepts, particularly with languages such as Go, Rust, or C

🏖️ Avantages

• Competitive salary • Flexible work hours • Paid time off • Professional development opportunities • Employee Assistance Program • Local Employee Meetups • Education reimbursement • Access to LinkedIn Learning courses • Equity compensation options

Postuler Maintenant

Emplois Similaires

🕒 il y a 2 mois

Coalfire

1001 - 5000

💼 Conseil

🏥 Santé

📦 Logistique

OT cybersecurity consultant assessing industrial control environments for Coalfire’s cybersecurity clients. Delivering maturity reports, remediation roadmaps, and executive security guidance.

🇺🇸 États-Unis – Télétravail

💵 $105 000 - $148 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

infoinfo

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Cyber Security

IoT

🕒 il y a 2 mois

LanceDB

11 - 50

🤖 Intelligence artificielle

🏢 Entreprise

☁️ SaaS

Senior Security Engineer managing security tooling for LanceDB platform. Driving results to enhance security posture in collaboration with engineering teams.

🇺🇸 États-Unis – Télétravail

💵 $180 000 - $250 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

SCAN

1001 - 5000

🏥 Santé

⚕️ Assurance santé

👥 B2C

AI Security Engineer focusing on AI adoption and cybersecurity compliance within healthcare. Evaluating AI vendors, guiding implementation, and managing AI-related security risks.

🗣️🇺🇸🇬🇧 Anglais requis

Azure

Cyber Security

🕒 il y a 2 mois

Charlie Health

501 - 1000

🏥 Santé

⚕️ Assurance santé

🧘 Bien-être

Senior Corporate Security Engineer designing and operating security systems while partnering with IT Engineering and Compliance teams at Charlie Health.

🇺🇸 États-Unis – Télétravail

💵 $180 000 - $240 000 / an

💰 Seed Round en 2020-06

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 2 mois

Charlie Health

501 - 1000

🏥 Santé

⚕️ Assurance santé

🧘 Bien-être

Senior Corporate Security Engineer designing technical security systems for AI tools and corporate environments. Partnering cross-functionally to manage cybersecurity in a regulated healthcare environment.

🇺🇸 États-Unis – Télétravail

💵 $180 000 - $240 000 / an

💰 Seed Round en 2020-06

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis